<?xml version="1.0" encoding="UTF-8"?><rss version="2.0" xmlns:media="http://search.yahoo.com/mrss/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>NerdBite: Security</title><description>Breaches, vulnerabilities, privacy and staying safe online.</description><link>https://www.nerdbite.com/</link><language>en-gb</language><lastBuildDate>Sun, 20 Sep 2026 06:32:14 GMT</lastBuildDate><managingEditor>editor@nerdbite.com (NerdBite)</managingEditor><webMaster>editor@nerdbite.com (NerdBite)</webMaster><copyright>Copyright 2026 NerdBite</copyright><ttl>60</ttl><atom:link href="https://www.nerdbite.com/security/rss.xml" rel="self" type="application/rss+xml"/><item><title>Government unveils misogyny taskforce - but what will it actually do?</title><link>https://www.nerdbite.com/government-unveils-misogyny-taskforce-but-what-will-it-actually-do/</link><guid isPermaLink="true">https://www.nerdbite.com/government-unveils-misogyny-taskforce-but-what-will-it-actually-do/</guid><description>A new group will &apos;discuss&apos; online abuse, workplaces and communities - just don&apos;t expect new laws, funding or deadlines just yet.</description><pubDate>Sun, 20 Sep 2026 06:32:14 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/government-unveils-misogyny-taskforce-but-what-will-it-actually-do.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/government-unveils-misogyny-taskforce-but-what-will-it-actually-do.jpg"/><category>Security</category></item><item><title>Critical flaw lets sandboxed code break out of vm2 and run commands on the host</title><link>https://www.nerdbite.com/critical-flaw-lets-sandboxed-code-break-out-of-vm2-and-run-commands/</link><guid isPermaLink="true">https://www.nerdbite.com/critical-flaw-lets-sandboxed-code-break-out-of-vm2-and-run-commands/</guid><description>A maximum-severity bug in the vm2 sandboxing library sounds terrifying — but only a specific slice of Node.js apps actually leave the door open.</description><pubDate>Sun, 20 Sep 2026 06:31:49 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/critical-flaw-lets-sandboxed-code-break-out-of-vm2-and-run-commands.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/critical-flaw-lets-sandboxed-code-break-out-of-vm2-and-run-commands.jpg"/><category>Security</category></item><item><title>Linux kernel bug CVE-2025-39964 is being actively exploited — but details are thin on the ground</title><link>https://www.nerdbite.com/linux-kernel-bug-cve-2025-39964-is-being-actively-exploited-but/</link><guid isPermaLink="true">https://www.nerdbite.com/linux-kernel-bug-cve-2025-39964-is-being-actively-exploited-but/</guid><description>CISA says the flaw is confirmed as exploited in the wild and has given US federal agencies days to patch, yet the public record says almost nothing about what the bug does or who it hits.</description><pubDate>Sun, 20 Sep 2026 06:31:18 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/linux-kernel-bug-cve-2025-39964-is-being-actively-exploited-but.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/linux-kernel-bug-cve-2025-39964-is-being-actively-exploited-but.jpg"/><category>Security</category></item><item><title>GrapheneOS claims Android 17 breaks a 10-year AOSP habit - here&apos;s what&apos;s actually confirmed</title><link>https://www.nerdbite.com/grapheneos-claims-android-17-breaks-a-10-year-aosp-habit-here-s-what/</link><guid isPermaLink="true">https://www.nerdbite.com/grapheneos-claims-android-17-breaks-a-10-year-aosp-habit-here-s-what/</guid><description>The privacy-focused Android fork says Google shipped new APIs without open-sourcing them first, but the evidence so far is one project&apos;s word against Google&apos;s silence.</description><pubDate>Sat, 19 Sep 2026 06:33:12 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/grapheneos-claims-android-17-breaks-a-10-year-aosp-habit-here-s-what.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/grapheneos-claims-android-17-breaks-a-10-year-aosp-habit-here-s-what.jpg"/><category>Security</category></item><item><title>The red team&apos;s own toolkit has a hole in it: critical bug found in Covenant C2 framework</title><link>https://www.nerdbite.com/the-red-team-s-own-toolkit-has-a-hole-in-it-critical-bug-found-in/</link><guid isPermaLink="true">https://www.nerdbite.com/the-red-team-s-own-toolkit-has-a-hole-in-it-critical-bug-found-in/</guid><description>A missing login check in the open-source Covenant framework lets anyone on the network mint themselves a valid access token - but only a narrow slice of users, mostly penetration testers, actually run the thing.</description><pubDate>Sat, 19 Sep 2026 06:31:58 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/the-red-team-s-own-toolkit-has-a-hole-in-it-critical-bug-found-in.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/the-red-team-s-own-toolkit-has-a-hole-in-it-critical-bug-found-in.jpg"/><category>Security</category></item><item><title>Researchers chained a forum bug into OpenAI account takeover - and it&apos;s already fixed</title><link>https://www.nerdbite.com/researchers-chained-a-forum-bug-into-openai-account-takeover-and-it-s/</link><guid isPermaLink="true">https://www.nerdbite.com/researchers-chained-a-forum-bug-into-openai-account-takeover-and-it-s/</guid><description>Security firm Hacktron says it hijacked ChatGPT and Codex accounts via OpenAI&apos;s own help forum, but the hole was patched months ago and OpenAI paid up for the tip-off.</description><pubDate>Fri, 18 Sep 2026 06:33:28 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/researchers-chained-a-forum-bug-into-openai-account-takeover-and-it-s.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/researchers-chained-a-forum-bug-into-openai-account-takeover-and-it-s.jpg"/><category>Security</category></item><item><title>Ghostscript&apos;s JPEG 2000 code gets a 9.8-rated fix - but check before you panic</title><link>https://www.nerdbite.com/ghostscript-s-jpeg-2000-code-gets-a-9-8-rated-fix-but-check-before/</link><guid isPermaLink="true">https://www.nerdbite.com/ghostscript-s-jpeg-2000-code-gets-a-9-8-rated-fix-but-check-before/</guid><description>A newly published flaw in the venerable PDF/PostScript engine sounds terrifying on paper, so here&apos;s what&apos;s actually confirmed versus what&apos;s just a number.</description><pubDate>Fri, 18 Sep 2026 06:32:00 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/ghostscript-s-jpeg-2000-code-gets-a-9-8-rated-fix-but-check-before.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/ghostscript-s-jpeg-2000-code-gets-a-9-8-rated-fix-but-check-before.jpg"/><category>Security</category></item><item><title>MikroTik RouterOS flaw added to US &apos;actively exploited&apos; list — but details are thin</title><link>https://www.nerdbite.com/mikrotik-routeros-flaw-added-to-us-actively-exploited-list-but-2/</link><guid isPermaLink="true">https://www.nerdbite.com/mikrotik-routeros-flaw-added-to-us-actively-exploited-list-but-2/</guid><description>CISA says CVE-2026-67277 is being exploited right now, yet the public record so far tells you almost nothing about how it works or who&apos;s actually being hit.</description><pubDate>Fri, 18 Sep 2026 06:31:29 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/mikrotik-routeros-flaw-added-to-us-actively-exploited-list-but-2.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/mikrotik-routeros-flaw-added-to-us-actively-exploited-list-but-2.jpg"/><category>Security</category></item><item><title>Apple patches a 9.1-rated Mac flaw that could crash your machine remotely</title><link>https://www.nerdbite.com/apple-patches-a-9-1-rated-mac-flaw-that-could-crash-your-machine/</link><guid isPermaLink="true">https://www.nerdbite.com/apple-patches-a-9-1-rated-mac-flaw-that-could-crash-your-machine/</guid><description>A newly listed &apos;critical&apos; bug sounds terrifying until you notice Apple fixed it the same day it appeared - and there&apos;s no sign anyone&apos;s actually used it.</description><pubDate>Thu, 17 Sep 2026 06:31:52 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/apple-patches-a-9-1-rated-mac-flaw-that-could-crash-your-machine.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/apple-patches-a-9-1-rated-mac-flaw-that-could-crash-your-machine.jpg"/><category>Security</category></item><item><title>Google Pixel bug flagged as &apos;actively exploited&apos; by US cyber agency — but nobody&apos;s saying how</title><link>https://www.nerdbite.com/google-pixel-bug-flagged-as-actively-exploited-by-us-cyber-agency-but/</link><guid isPermaLink="true">https://www.nerdbite.com/google-pixel-bug-flagged-as-actively-exploited-by-us-cyber-agency-but/</guid><description>CISA says a Pixel vulnerability is being exploited right now and has given US agencies days to patch it, yet the public record is almost entirely blank on what the flaw actually does.</description><pubDate>Thu, 17 Sep 2026 06:31:22 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/google-pixel-bug-flagged-as-actively-exploited-by-us-cyber-agency-but.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/google-pixel-bug-flagged-as-actively-exploited-by-us-cyber-agency-but.jpg"/><category>Security</category></item><item><title>A critical 9.9-rated bug just landed in a Totolink router - here&apos;s who should actually care</title><link>https://www.nerdbite.com/a-critical-9-9-rated-bug-just-landed-in-a-totolink-router-here-s-who/</link><guid isPermaLink="true">https://www.nerdbite.com/a-critical-9-9-rated-bug-just-landed-in-a-totolink-router-here-s-who/</guid><description>A newly published flaw in a budget router&apos;s web interface scores near the top of the CVSS scale, but the scary number hides a much narrower story.</description><pubDate>Wed, 16 Sep 2026 06:31:40 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/a-critical-9-9-rated-bug-just-landed-in-a-totolink-router-here-s-who.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/a-critical-9-9-rated-bug-just-landed-in-a-totolink-router-here-s-who.jpg"/><category>Security</category></item><item><title>GitLab flaw added to US &apos;actively exploited&apos; list — but nobody&apos;s saying what it actually does</title><link>https://www.nerdbite.com/gitlab-flaw-added-to-us-actively-exploited-list-but-nobody-s-saying/</link><guid isPermaLink="true">https://www.nerdbite.com/gitlab-flaw-added-to-us-actively-exploited-list-but-nobody-s-saying/</guid><description>CVE-2026-85706 has landed on America&apos;s must-patch list with a tight deadline, yet the public record is oddly quiet on the details.</description><pubDate>Wed, 16 Sep 2026 06:31:12 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/gitlab-flaw-added-to-us-actively-exploited-list-but-nobody-s-saying.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/gitlab-flaw-added-to-us-actively-exploited-list-but-nobody-s-saying.jpg"/><category>Security</category></item><item><title>Critical 9.9-rated bug found in Totolink router firmware - but check if it even affects you first</title><link>https://www.nerdbite.com/critical-9-9-rated-bug-found-in-totolink-router-firmware-but-check-if/</link><guid isPermaLink="true">https://www.nerdbite.com/critical-9-9-rated-bug-found-in-totolink-router-firmware-but-check-if/</guid><description>A newly listed flaw in a niche router&apos;s web interface scores near the top of the severity scale, though the real-world exposure looks a lot smaller than the number suggests.</description><pubDate>Tue, 15 Sep 2026 06:31:35 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/critical-9-9-rated-bug-found-in-totolink-router-firmware-but-check-if.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/critical-9-9-rated-bug-found-in-totolink-router-firmware-but-check-if.jpg"/><category>Security</category></item><item><title>Cisco Secure Email Gateway flaw added to US &apos;actively exploited&apos; list — but the how stays murky</title><link>https://www.nerdbite.com/cisco-secure-email-gateway-flaw-added-to-us-actively-exploited-list/</link><guid isPermaLink="true">https://www.nerdbite.com/cisco-secure-email-gateway-flaw-added-to-us-actively-exploited-list/</guid><description>CISA says CVE-2026-76461 is being used in real attacks and wants federal agencies patched within three days — here&apos;s what&apos;s actually confirmed and what isn&apos;t.</description><pubDate>Tue, 15 Sep 2026 06:31:12 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/cisco-secure-email-gateway-flaw-added-to-us-actively-exploited-list.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/cisco-secure-email-gateway-flaw-added-to-us-actively-exploited-list.jpg"/><category>Security</category></item><item><title>Passwords are dying on GOV.UK - but only if you opt in to passkeys</title><link>https://www.nerdbite.com/passwords-are-dying-on-gov-uk-but-only-if-you-opt-in-to-passkeys/</link><guid isPermaLink="true">https://www.nerdbite.com/passwords-are-dying-on-gov-uk-but-only-if-you-opt-in-to-passkeys/</guid><description>The government says millions can now ditch passwords for GOV.UK One Login, but it&apos;s a choice, not a mandate, and the security upside depends on your device already having biometrics set up.</description><pubDate>Mon, 14 Sep 2026 06:32:01 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/passwords-are-dying-on-gov-uk-but-only-if-you-opt-in-to-passkeys.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/passwords-are-dying-on-gov-uk-but-only-if-you-opt-in-to-passkeys.jpg"/><category>Security</category></item><item><title>WAVLINK mesh routers can be hijacked with zero login needed - here&apos;s what&apos;s actually confirmed</title><link>https://www.nerdbite.com/wavlink-mesh-routers-can-be-hijacked-with-zero-login-needed-here-s/</link><guid isPermaLink="true">https://www.nerdbite.com/wavlink-mesh-routers-can-be-hijacked-with-zero-login-needed-here-s/</guid><description>A critical flaw lets anyone on the network overwrite files and potentially seize root on two WAVLINK router models - but only if you&apos;re running old firmware with mesh mode switched on.</description><pubDate>Mon, 14 Sep 2026 06:31:43 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/wavlink-mesh-routers-can-be-hijacked-with-zero-login-needed-here-s.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/wavlink-mesh-routers-can-be-hijacked-with-zero-login-needed-here-s.jpg"/><category>Security</category></item><item><title>CISA confirms active exploitation of JFrog Artifactory flaw, but details stay vague</title><link>https://www.nerdbite.com/cisa-confirms-active-exploitation-of-jfrog-artifactory-flaw-but/</link><guid isPermaLink="true">https://www.nerdbite.com/cisa-confirms-active-exploitation-of-jfrog-artifactory-flaw-but/</guid><description>A newly catalogued bug in the popular software repository tool is being exploited right now, according to US cyber officials — though exactly how it&apos;s being abused isn&apos;t spelled out.</description><pubDate>Mon, 14 Sep 2026 06:31:16 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/cisa-confirms-active-exploitation-of-jfrog-artifactory-flaw-but.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/cisa-confirms-active-exploitation-of-jfrog-artifactory-flaw-but.jpg"/><category>Security</category></item><item><title>Critical SQL injection flaw hits niche lab management software - but who&apos;s actually running it?</title><link>https://www.nerdbite.com/critical-sql-injection-flaw-hits-niche-lab-management-software-but/</link><guid isPermaLink="true">https://www.nerdbite.com/critical-sql-injection-flaw-hits-niche-lab-management-software-but/</guid><description>A 9.8-rated vulnerability sounds terrifying until you ask how many machines are actually exposed.</description><pubDate>Sun, 13 Sep 2026 06:31:27 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/critical-sql-injection-flaw-hits-niche-lab-management-software-but.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/critical-sql-injection-flaw-hits-niche-lab-management-software-but.jpg"/><category>Security</category></item><item><title>JFrog Artifactory flaw is being actively exploited, CISA confirms — here&apos;s what&apos;s actually known</title><link>https://www.nerdbite.com/jfrog-artifactory-flaw-is-being-actively-exploited-cisa-confirms-here/</link><guid isPermaLink="true">https://www.nerdbite.com/jfrog-artifactory-flaw-is-being-actively-exploited-cisa-confirms-here/</guid><description>A vulnerability in the software repository tool used by countless dev teams has made America&apos;s most-watched exploited-bugs list, but the technical detail on how it&apos;s being abused is still thin on the ground.</description><pubDate>Sun, 13 Sep 2026 06:31:07 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/jfrog-artifactory-flaw-is-being-actively-exploited-cisa-confirms-here.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/jfrog-artifactory-flaw-is-being-actively-exploited-cisa-confirms-here.jpg"/><category>Security</category></item><item><title>Dell patches Secure Connect Gateway flaws - but is CVE-2026-79941 really &apos;critical&apos;?</title><link>https://www.nerdbite.com/dell-patches-secure-connect-gateway-flaws-but-is-cve-2026-79941/</link><guid isPermaLink="true">https://www.nerdbite.com/dell-patches-secure-connect-gateway-flaws-but-is-cve-2026-79941/</guid><description>A newly listed Dell bug is tagged critical severity despite carrying a CVSS score that normally means &apos;medium&apos; - here&apos;s what&apos;s actually confirmed.</description><pubDate>Sat, 12 Sep 2026 06:31:44 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/dell-patches-secure-connect-gateway-flaws-but-is-cve-2026-79941.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/dell-patches-secure-connect-gateway-flaws-but-is-cve-2026-79941.jpg"/><category>Security</category></item><item><title>ConnectWise ScreenConnect flaw is being actively exploited, says CISA — but details are thin</title><link>https://www.nerdbite.com/connectwise-screenconnect-flaw-is-being-actively-exploited-says-cisa/</link><guid isPermaLink="true">https://www.nerdbite.com/connectwise-screenconnect-flaw-is-being-actively-exploited-says-cisa/</guid><description>A newly catalogued bug in the popular remote-access tool has US federal agencies scrambling to patch by Monday, though who&apos;s behind the attacks and how remains unclear.</description><pubDate>Sat, 12 Sep 2026 06:31:05 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/connectwise-screenconnect-flaw-is-being-actively-exploited-says-cisa.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/connectwise-screenconnect-flaw-is-being-actively-exploited-says-cisa.jpg"/><category>Security</category></item><item><title>Netis router bug hands out the admin password to anyone who asks</title><link>https://www.nerdbite.com/netis-router-bug-hands-out-the-admin-password-to-anyone-who-asks/</link><guid isPermaLink="true">https://www.nerdbite.com/netis-router-bug-hands-out-the-admin-password-to-anyone-who-asks/</guid><description>A newly disclosed flaw in the Netis NX10 lets unauthenticated attackers read the admin password straight off the web interface - but the headline 9.8 score doesn&apos;t match what the researcher&apos;s own advisory says.</description><pubDate>Fri, 11 Sep 2026 06:31:38 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/netis-router-bug-hands-out-the-admin-password-to-anyone-who-asks.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/netis-router-bug-hands-out-the-admin-password-to-anyone-who-asks.jpg"/><category>Security</category></item><item><title>MikroTik RouterOS flaw added to US &apos;actively exploited&apos; list — but details are thin on the ground</title><link>https://www.nerdbite.com/mikrotik-routeros-flaw-added-to-us-actively-exploited-list-but/</link><guid isPermaLink="true">https://www.nerdbite.com/mikrotik-routeros-flaw-added-to-us-actively-exploited-list-but/</guid><description>CISA says CVE-2026-86060 is being used in real attacks against MikroTik routers, yet neither the agency nor NVD has published what the bug actually does.</description><pubDate>Fri, 11 Sep 2026 06:31:13 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/mikrotik-routeros-flaw-added-to-us-actively-exploited-list-but.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/mikrotik-routeros-flaw-added-to-us-actively-exploited-list-but.jpg"/><category>Security</category></item><item><title>Critical bug in Linksys RE7000 Wi-Fi extender lets attackers hijack the ping test tool</title><link>https://www.nerdbite.com/critical-bug-in-linksys-re7000-wi-fi-extender-lets-attackers-hijack/</link><guid isPermaLink="true">https://www.nerdbite.com/critical-bug-in-linksys-re7000-wi-fi-extender-lets-attackers-hijack/</guid><description>A newly catalogued flaw scores a near-maximum 9.9 for severity, but the fine print matters more than the number.</description><pubDate>Thu, 10 Sep 2026 06:31:44 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/critical-bug-in-linksys-re7000-wi-fi-extender-lets-attackers-hijack.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/critical-bug-in-linksys-re7000-wi-fi-extender-lets-attackers-hijack.jpg"/><category>Security</category></item><item><title>Citrix NetScaler flaw now on CISA&apos;s exploited list — but the details are strangely thin</title><link>https://www.nerdbite.com/citrix-netscaler-flaw-now-on-cisa-s-exploited-list-but-the-details/</link><guid isPermaLink="true">https://www.nerdbite.com/citrix-netscaler-flaw-now-on-cisa-s-exploited-list-but-the-details/</guid><description>A new NetScaler bug has made the US government&apos;s most urgent watchlist, yet nobody outside CISA seems to know exactly how it&apos;s being abused.</description><pubDate>Thu, 10 Sep 2026 06:31:18 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/citrix-netscaler-flaw-now-on-cisa-s-exploited-list-but-the-details.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/citrix-netscaler-flaw-now-on-cisa-s-exploited-list-but-the-details.jpg"/><category>Security</category></item><item><title>Charity Commission clears four charities of theft - but not of reckless chequebook habits</title><link>https://www.nerdbite.com/charity-commission-clears-four-charities-of-theft-but-not-of-reckless/</link><guid isPermaLink="true">https://www.nerdbite.com/charity-commission-clears-four-charities-of-theft-but-not-of-reckless/</guid><description>No money went missing at these four charities, the regulator says, but blank cheques and weak oversight were enough to earn a formal finding of mismanagement - and the bigger 105-charity inquiry grinds on.</description><pubDate>Wed, 09 Sep 2026 06:32:26 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/charity-commission-clears-four-charities-of-theft-but-not-of-reckless.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/charity-commission-clears-four-charities-of-theft-but-not-of-reckless.jpg"/><category>Security</category></item><item><title>Critical flaw in Advantech industrial gateways lets attackers become root over the network</title><link>https://www.nerdbite.com/critical-flaw-in-advantech-industrial-gateways-lets-attackers-become/</link><guid isPermaLink="true">https://www.nerdbite.com/critical-flaw-in-advantech-industrial-gateways-lets-attackers-become/</guid><description>A near-maximum severity score sounds terrifying, but the catch is who actually owns one of these boxes - and whether Advantech has fixed it yet.</description><pubDate>Wed, 09 Sep 2026 06:31:56 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/critical-flaw-in-advantech-industrial-gateways-lets-attackers-become.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/critical-flaw-in-advantech-industrial-gateways-lets-attackers-become.jpg"/><category>Security</category></item><item><title>CISA confirms active attacks on Adobe Commerce and Magento flaw — but details are scarce</title><link>https://www.nerdbite.com/cisa-confirms-active-attacks-on-adobe-commerce-and-magento-flaw-but/</link><guid isPermaLink="true">https://www.nerdbite.com/cisa-confirms-active-attacks-on-adobe-commerce-and-magento-flaw-but/</guid><description>A newly catalogued Adobe Commerce and Magento bug is already being exploited, says CISA, though it&apos;s telling us very little about how.</description><pubDate>Wed, 09 Sep 2026 06:31:15 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/cisa-confirms-active-attacks-on-adobe-commerce-and-magento-flaw-but.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/cisa-confirms-active-attacks-on-adobe-commerce-and-magento-flaw-but.jpg"/><category>Security</category></item><item><title>Researcher cracks a 1999 CA&apos;s 512-bit keys - but the only victim is his own VM</title><link>https://www.nerdbite.com/researcher-cracks-a-1999-ca-s-512-bit-keys-but-the-only-victim-is-his/</link><guid isPermaLink="true">https://www.nerdbite.com/researcher-cracks-a-1999-ca-s-512-bit-keys-but-the-only-victim-is-his/</guid><description>A hobby project spent 61 hours of desktop compute breaking encryption that Netscape itself gave up on in 2002 - here&apos;s why nobody today should lose sleep over it.</description><pubDate>Tue, 08 Sep 2026 06:32:42 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/researcher-cracks-a-1999-ca-s-512-bit-keys-but-the-only-victim-is-his.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/researcher-cracks-a-1999-ca-s-512-bit-keys-but-the-only-victim-is-his.jpg"/><category>Security</category></item><item><title>Critical flaw in open-source &apos;Cua&apos; AI agent server lets anyone skip the login screen</title><link>https://www.nerdbite.com/critical-flaw-in-open-source-cua-ai-agent-server-lets-anyone-skip-the/</link><guid isPermaLink="true">https://www.nerdbite.com/critical-flaw-in-open-source-cua-ai-agent-server-lets-anyone-skip-the/</guid><description>A missing environment variable is all it takes to bypass authentication entirely — but only if you&apos;ve actually installed the thing.</description><pubDate>Tue, 08 Sep 2026 06:31:35 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/critical-flaw-in-open-source-cua-ai-agent-server-lets-anyone-skip-the.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/critical-flaw-in-open-source-cua-ai-agent-server-lets-anyone-skip-the.jpg"/><category>Security</category></item><item><title>JFrog Artifactory flaw added to US &apos;actively exploited&apos; list — here&apos;s what we actually know</title><link>https://www.nerdbite.com/jfrog-artifactory-flaw-added-to-us-actively-exploited-list-here-s/</link><guid isPermaLink="true">https://www.nerdbite.com/jfrog-artifactory-flaw-added-to-us-actively-exploited-list-here-s/</guid><description>CISA says attackers are already using CVE-2026-82329 in the wild, but the public record is short on detail about how it works and who exactly is exposed.</description><pubDate>Tue, 08 Sep 2026 06:31:13 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/jfrog-artifactory-flaw-added-to-us-actively-exploited-list-here-s.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/jfrog-artifactory-flaw-added-to-us-actively-exploited-list-here-s.jpg"/><category>Security</category></item><item><title>Critical flaw in a popular Excel AI tool could let attackers read and write any file</title><link>https://www.nerdbite.com/critical-flaw-in-a-popular-excel-ai-tool-could-let-attackers-read-and/</link><guid isPermaLink="true">https://www.nerdbite.com/critical-flaw-in-a-popular-excel-ai-tool-could-let-attackers-read-and/</guid><description>A newly disclosed bug in excel-mcp-server scores a maximum-alarm 9.8 out of 10 - but the danger depends entirely on a setting most people won&apos;t have touched.</description><pubDate>Mon, 07 Sep 2026 06:31:41 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/critical-flaw-in-a-popular-excel-ai-tool-could-let-attackers-read-and.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/critical-flaw-in-a-popular-excel-ai-tool-could-let-attackers-read-and.jpg"/><category>Security</category></item><item><title>Kestra OSS flaw added to US &apos;actively exploited&apos; list — but the details are thin</title><link>https://www.nerdbite.com/kestra-oss-flaw-added-to-us-actively-exploited-list-but-the-details/</link><guid isPermaLink="true">https://www.nerdbite.com/kestra-oss-flaw-added-to-us-actively-exploited-list-but-the-details/</guid><description>CVE-2026-49869 has landed on America&apos;s known-exploited-vulnerabilities list with a three-day patch deadline for federal agencies, yet neither CISA nor NVD have published what the bug actually does.</description><pubDate>Mon, 07 Sep 2026 06:31:15 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/kestra-oss-flaw-added-to-us-actively-exploited-list-but-the-details.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/kestra-oss-flaw-added-to-us-actively-exploited-list-but-the-details.jpg"/><category>Security</category></item><item><title>Critical flaw in Taipy&apos;s web server config lets any website hijack your session, CVE says</title><link>https://www.nerdbite.com/critical-flaw-in-taipy-s-web-server-config-lets-any-website-hijack/</link><guid isPermaLink="true">https://www.nerdbite.com/critical-flaw-in-taipy-s-web-server-config-lets-any-website-hijack/</guid><description>A newly disclosed bug in the Python framework Taipy scores a near-maximum severity rating - but whether it&apos;s actually being exploited, or even patched, is still an open question.</description><pubDate>Sun, 06 Sep 2026 06:31:22 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/critical-flaw-in-taipy-s-web-server-config-lets-any-website-hijack.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/critical-flaw-in-taipy-s-web-server-config-lets-any-website-hijack.jpg"/><category>Security</category></item><item><title>US cyber agency confirms Starlette bug is being exploited, but won&apos;t say how</title><link>https://www.nerdbite.com/us-cyber-agency-confirms-starlette-bug-is-being-exploited-but-won-t/</link><guid isPermaLink="true">https://www.nerdbite.com/us-cyber-agency-confirms-starlette-bug-is-being-exploited-but-won-t/</guid><description>A vulnerability in a widely used Python web framework has made America&apos;s most-watched vulnerability list, yet the public record is oddly thin on what the bug actually does.</description><pubDate>Sun, 06 Sep 2026 06:31:00 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/us-cyber-agency-confirms-starlette-bug-is-being-exploited-but-won-t.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/us-cyber-agency-confirms-starlette-bug-is-being-exploited-but-won-t.jpg"/><category>Security</category></item><item><title>Chromium&apos;s newest RCE is already being used against people, and Google paid £790 for it</title><link>https://www.nerdbite.com/chromium-s-newest-rce-is-already-being-used-against-people-and-google/</link><guid isPermaLink="true">https://www.nerdbite.com/chromium-s-newest-rce-is-already-being-used-against-people-and-google/</guid><description>A sandbox-escaping bug in every version of Chromium is under active attack, but the size of the bounty is raising more eyebrows than the bug itself.</description><pubDate>Sat, 05 Sep 2026 06:32:13 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/chromium-s-newest-rce-is-already-being-used-against-people-and-google.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/chromium-s-newest-rce-is-already-being-used-against-people-and-google.jpg"/><category>Security</category></item><item><title>Critical flaw found in obscure TOTOLINK router model, but check before you panic</title><link>https://www.nerdbite.com/critical-flaw-found-in-obscure-totolink-router-model-but-check-before/</link><guid isPermaLink="true">https://www.nerdbite.com/critical-flaw-found-in-obscure-totolink-router-model-but-check-before/</guid><description>A newly logged bug scores a maximum-alarm 9.9 out of 10, but the fine print matters more than the number.</description><pubDate>Sat, 05 Sep 2026 06:31:22 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/critical-flaw-found-in-obscure-totolink-router-model-but-check-before.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/critical-flaw-found-in-obscure-totolink-router-model-but-check-before.jpg"/><category>Security</category></item><item><title>Chromium&apos;s V8 engine has a bug under active attack, but the details are suspiciously thin</title><link>https://www.nerdbite.com/chromium-s-v8-engine-has-a-bug-under-active-attack-but-the-details/</link><guid isPermaLink="true">https://www.nerdbite.com/chromium-s-v8-engine-has-a-bug-under-active-attack-but-the-details/</guid><description>CISA says CVE-2026-85046 is being exploited right now, yet the public record barely tells us what the bug does or which Chrome version fixes it.</description><pubDate>Sat, 05 Sep 2026 06:31:01 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/chromium-s-v8-engine-has-a-bug-under-active-attack-but-the-details.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/chromium-s-v8-engine-has-a-bug-under-active-attack-but-the-details.jpg"/><category>Security</category></item><item><title>A &apos;critical&apos; Firefox Focus bug just got a CVSS 9.8 - but the details are oddly thin</title><link>https://www.nerdbite.com/a-critical-firefox-focus-bug-just-got-a-cvss-9-8-but-the-details-are/</link><guid isPermaLink="true">https://www.nerdbite.com/a-critical-firefox-focus-bug-just-got-a-cvss-9-8-but-the-details-are/</guid><description>A newly listed flaw in Firefox Focus for Android carries a maximum-alarm score, yet Mozilla&apos;s own paperwork barely says what it actually does.</description><pubDate>Fri, 04 Sep 2026 06:31:47 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/a-critical-firefox-focus-bug-just-got-a-cvss-9-8-but-the-details-are.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/a-critical-firefox-focus-bug-just-got-a-cvss-9-8-but-the-details-are.jpg"/><category>Security</category></item><item><title>US cyber agency confirms active exploitation of bug in AI proxy tool LiteLLM</title><link>https://www.nerdbite.com/us-cyber-agency-confirms-active-exploitation-of-bug-in-ai-proxy-tool/</link><guid isPermaLink="true">https://www.nerdbite.com/us-cyber-agency-confirms-active-exploitation-of-bug-in-ai-proxy-tool/</guid><description>CISA says the flaw is being exploited right now, but its own listing is oddly light on what the bug actually does or who&apos;s behind the attacks.</description><pubDate>Fri, 04 Sep 2026 06:31:19 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/us-cyber-agency-confirms-active-exploitation-of-bug-in-ai-proxy-tool.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/us-cyber-agency-confirms-active-exploitation-of-bug-in-ai-proxy-tool.jpg"/><category>Security</category></item><item><title>Critical bug in obscure npm tool could let wildcard logins sneak past AWS security checks</title><link>https://www.nerdbite.com/critical-bug-in-obscure-npm-tool-could-let-wildcard-logins-sneak-past/</link><guid isPermaLink="true">https://www.nerdbite.com/critical-bug-in-obscure-npm-tool-could-let-wildcard-logins-sneak-past/</guid><description>A flaw in a niche policy-checking package let attackers hide dangerous wildcard rules from GitHub&apos;s cloud login guardrails, but only a small slice of DevOps setups will ever encounter it.</description><pubDate>Wed, 02 Sep 2026 06:31:31 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/critical-bug-in-obscure-npm-tool-could-let-wildcard-logins-sneak-past.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/critical-bug-in-obscure-npm-tool-could-let-wildcard-logins-sneak-past.jpg"/><category>Security</category></item><item><title>PaperCut NG/MF flaw added to US exploited-bugs list - but the details are thin</title><link>https://www.nerdbite.com/papercut-ng-mf-flaw-added-to-us-exploited-bugs-list-but-the-details/</link><guid isPermaLink="true">https://www.nerdbite.com/papercut-ng-mf-flaw-added-to-us-exploited-bugs-list-but-the-details/</guid><description>CISA says CVE-2026-81578 is being actively exploited in the wild, yet the public record offers almost nothing on how the attack actually works.</description><pubDate>Wed, 02 Sep 2026 06:31:04 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/papercut-ng-mf-flaw-added-to-us-exploited-bugs-list-but-the-details.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/papercut-ng-mf-flaw-added-to-us-exploited-bugs-list-but-the-details.jpg"/><category>Security</category></item><item><title>Critical flaw in Argo CD&apos;s AI helper let anyone with network access hijack deployments</title><link>https://www.nerdbite.com/critical-flaw-in-argo-cd-s-ai-helper-let-anyone-with-network-access/</link><guid isPermaLink="true">https://www.nerdbite.com/critical-flaw-in-argo-cd-s-ai-helper-let-anyone-with-network-access/</guid><description>A maximum-severity bug in the argocd-mcp server skipped login checks entirely - but only if you&apos;d switched it on and pointed it at the open network in the first place.</description><pubDate>Tue, 01 Sep 2026 06:31:31 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/critical-flaw-in-argo-cd-s-ai-helper-let-anyone-with-network-access.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/critical-flaw-in-argo-cd-s-ai-helper-let-anyone-with-network-access.jpg"/><category>Security</category></item><item><title>PaperCut NG/MF flaw added to US &apos;actively exploited&apos; list, but details are thin</title><link>https://www.nerdbite.com/papercut-ng-mf-flaw-added-to-us-actively-exploited-list-but-details/</link><guid isPermaLink="true">https://www.nerdbite.com/papercut-ng-mf-flaw-added-to-us-actively-exploited-list-but-details/</guid><description>CISA says CVE-2026-82078 is being exploited right now, yet the public record says almost nothing about how, by whom, or whether a fix even exists.</description><pubDate>Tue, 01 Sep 2026 06:31:10 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/papercut-ng-mf-flaw-added-to-us-actively-exploited-list-but-details.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/papercut-ng-mf-flaw-added-to-us-actively-exploited-list-but-details.jpg"/><category>Security</category></item><item><title>Redpanda&apos;s Admin API defaults to &apos;trust everyone&apos; - here&apos;s what that actually means</title><link>https://www.nerdbite.com/redpanda-s-admin-api-defaults-to-trust-everyone-here-s-what-that/</link><guid isPermaLink="true">https://www.nerdbite.com/redpanda-s-admin-api-defaults-to-trust-everyone-here-s-what-that/</guid><description>A critical-rated flaw in the Kafka-alternative streaming platform boils down to an insecure default, not some exotic exploit - but that doesn&apos;t make it harmless.</description><pubDate>Mon, 31 Aug 2026 06:31:32 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/redpanda-s-admin-api-defaults-to-trust-everyone-here-s-what-that.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/redpanda-s-admin-api-defaults-to-trust-everyone-here-s-what-that.jpg"/><category>Security</category></item><item><title>That &apos;critical&apos; OpenSSL CVE isn&apos;t OpenSSL - it&apos;s a two-star Python package</title><link>https://www.nerdbite.com/that-critical-openssl-cve-isn-t-openssl-it-s-a-two-star-python-package/</link><guid isPermaLink="true">https://www.nerdbite.com/that-critical-openssl-cve-isn-t-openssl-it-s-a-two-star-python-package/</guid><description>A 9.8-rated bug can forge fingerprint checks in a niche identity tool called openssl_encrypt - which, despite the name, has nothing to do with the actual OpenSSL library.</description><pubDate>Sun, 30 Aug 2026 06:31:13 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/that-critical-openssl-cve-isn-t-openssl-it-s-a-two-star-python-package.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/that-critical-openssl-cve-isn-t-openssl-it-s-a-two-star-python-package.jpg"/><category>Security</category></item><item><title>JFrog Artifactory bug added to US &apos;actively exploited&apos; list, but details are thin</title><link>https://www.nerdbite.com/jfrog-artifactory-bug-added-to-us-actively-exploited-list-but-details/</link><guid isPermaLink="true">https://www.nerdbite.com/jfrog-artifactory-bug-added-to-us-actively-exploited-list-but-details/</guid><description>CISA says CVE-2026-66384 is being exploited in the wild right now, yet the public record barely says what it actually does.</description><pubDate>Sun, 30 Aug 2026 06:30:48 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/jfrog-artifactory-bug-added-to-us-actively-exploited-list-but-details.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/jfrog-artifactory-bug-added-to-us-actively-exploited-list-but-details.jpg"/><category>Security</category></item><item><title>Critical-rated bug in obscure Python encryption tool lets attackers swap in their own keys</title><link>https://www.nerdbite.com/critical-rated-bug-in-obscure-python-encryption-tool-lets-attackers/</link><guid isPermaLink="true">https://www.nerdbite.com/critical-rated-bug-in-obscure-python-encryption-tool-lets-attackers/</guid><description>A flaw in the little-used openssl_encrypt package could let an attacker fake a trusted contact&apos;s key - but the &apos;critical&apos; label needs a reality check.</description><pubDate>Sat, 29 Aug 2026 06:31:14 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/critical-rated-bug-in-obscure-python-encryption-tool-lets-attackers.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/critical-rated-bug-in-obscure-python-encryption-tool-lets-attackers.jpg"/><category>Security</category></item><item><title>Linux kernel bug added to US &apos;actively exploited&apos; list, but nobody&apos;s saying much else</title><link>https://www.nerdbite.com/linux-kernel-bug-added-to-us-actively-exploited-list-but-nobody-s/</link><guid isPermaLink="true">https://www.nerdbite.com/linux-kernel-bug-added-to-us-actively-exploited-list-but-nobody-s/</guid><description>CISA says CVE-2026-53362 is being used in real attacks right now, yet the public record is almost entirely blank on what the bug actually does.</description><pubDate>Sat, 29 Aug 2026 06:30:51 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/linux-kernel-bug-added-to-us-actively-exploited-list-but-nobody-s.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/linux-kernel-bug-added-to-us-actively-exploited-list-but-nobody-s.jpg"/><category>Security</category></item><item><title>Critical flaw in obscure Turkish repository software scores 9.8 - but almost nobody outside Turkey will care</title><link>https://www.nerdbite.com/critical-flaw-in-obscure-turkish-repository-software-scores-9-8-but/</link><guid isPermaLink="true">https://www.nerdbite.com/critical-flaw-in-obscure-turkish-repository-software-scores-9-8-but/</guid><description>CVE-2026-16286 lets attackers upload dangerous files to TRtek&apos;s Software Repository Management tool, yet the advisory says nothing about a fix, active abuse, or how many people actually run it.</description><pubDate>Fri, 28 Aug 2026 06:31:33 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/critical-flaw-in-obscure-turkish-repository-software-scores-9-8-but.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/critical-flaw-in-obscure-turkish-repository-software-scores-9-8-but.jpg"/><category>Security</category></item><item><title>US cyber agency confirms an ownCloud flaw is being actively exploited</title><link>https://www.nerdbite.com/us-cyber-agency-confirms-an-owncloud-flaw-is-being-actively-exploited/</link><guid isPermaLink="true">https://www.nerdbite.com/us-cyber-agency-confirms-an-owncloud-flaw-is-being-actively-exploited/</guid><description>CISA has flagged CVE-2023-49105 as under real-world attack, but the small print matters: this is a federal-agency deadline, not a nationwide emergency.</description><pubDate>Fri, 28 Aug 2026 06:31:09 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/us-cyber-agency-confirms-an-owncloud-flaw-is-being-actively-exploited.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/us-cyber-agency-confirms-an-owncloud-flaw-is-being-actively-exploited.jpg"/><category>Security</category></item><item><title>US cyber agency flags old Ajax.NET Professional bug as actively exploited, but details are thin on the ground</title><link>https://www.nerdbite.com/us-cyber-agency-flags-old-ajax-net-professional-bug-as-actively/</link><guid isPermaLink="true">https://www.nerdbite.com/us-cyber-agency-flags-old-ajax-net-professional-bug-as-actively/</guid><description>CVE-2021-23758 has just landed on America&apos;s most-watched vulnerability list, five years after it was first catalogued, and the public record explains almost nothing about how it&apos;s being abused.</description><pubDate>Thu, 27 Aug 2026 06:31:09 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/us-cyber-agency-flags-old-ajax-net-professional-bug-as-actively.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/us-cyber-agency-flags-old-ajax-net-professional-bug-as-actively.jpg"/><category>Security</category></item><item><title>That &apos;critical&apos; 9.8 bug in justhtml? GitHub itself only calls it &apos;Moderate&apos;</title><link>https://www.nerdbite.com/that-critical-9-8-bug-in-justhtml-github-itself-only-calls-it-moderate/</link><guid isPermaLink="true">https://www.nerdbite.com/that-critical-9-8-bug-in-justhtml-github-itself-only-calls-it-moderate/</guid><description>A Python HTML-sanitiser has patched several sanitisation bypasses - but the severity score depends entirely on who you ask, and mostly on how you&apos;ve configured it.</description><pubDate>Wed, 26 Aug 2026 06:31:35 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/that-critical-9-8-bug-in-justhtml-github-itself-only-calls-it-moderate.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/that-critical-9-8-bug-in-justhtml-github-itself-only-calls-it-moderate.jpg"/><category>Security</category></item><item><title>Gitea flaw added to US &apos;actively exploited&apos; list, but the technical details are still a mystery</title><link>https://www.nerdbite.com/gitea-flaw-added-to-us-actively-exploited-list-but-the-technical/</link><guid isPermaLink="true">https://www.nerdbite.com/gitea-flaw-added-to-us-actively-exploited-list-but-the-technical/</guid><description>America&apos;s cyber-security agency says a bug in the popular self-hosted Git platform Gitea is already being used in real attacks, yet the public record barely explains what it actually does.</description><pubDate>Wed, 26 Aug 2026 06:31:06 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/gitea-flaw-added-to-us-actively-exploited-list-but-the-technical.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/gitea-flaw-added-to-us-actively-exploited-list-but-the-technical.jpg"/><category>Security</category></item><item><title>TRENDnet router bug gets a &apos;perfect&apos; CVSS 10 - but the score comes from the bug hunter, not NIST</title><link>https://www.nerdbite.com/trendnet-router-bug-gets-a-perfect-cvss-10-but-the-score-comes-from/</link><guid isPermaLink="true">https://www.nerdbite.com/trendnet-router-bug-gets-a-perfect-cvss-10-but-the-score-comes-from/</guid><description>A stack overflow in a niche WiFi access point has been rated maximum severity, though the number attached to it deserves more scrutiny than the bug itself.</description><pubDate>Tue, 25 Aug 2026 06:31:21 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/trendnet-router-bug-gets-a-perfect-cvss-10-but-the-score-comes-from.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/trendnet-router-bug-gets-a-perfect-cvss-10-but-the-score-comes-from.jpg"/><category>Security</category></item><item><title>Oracle server bug hits maximum severity score as US cyber agency confirms active attacks</title><link>https://www.nerdbite.com/oracle-server-bug-hits-maximum-severity-score-as-us-cyber-agency/</link><guid isPermaLink="true">https://www.nerdbite.com/oracle-server-bug-hits-maximum-severity-score-as-us-cyber-agency/</guid><description>CVE-2026-21962 scores a perfect 10 out of 10 and is already being exploited in the wild - but this is squarely an enterprise problem, not one for home users.</description><pubDate>Tue, 25 Aug 2026 06:30:52 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/oracle-server-bug-hits-maximum-severity-score-as-us-cyber-agency.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/oracle-server-bug-hits-maximum-severity-score-as-us-cyber-agency.jpg"/><category>Security</category></item><item><title>A developer used an AI coding agent to hack his own webcam, mic and desk light, here&apos;s the catch</title><link>https://www.nerdbite.com/a-developer-used-an-ai-coding-agent-to-hack-his-own-webcam-mic-and/</link><guid isPermaLink="true">https://www.nerdbite.com/a-developer-used-an-ai-coding-agent-to-hack-his-own-webcam-mic-and/</guid><description>One person&apos;s viral blog post shows how far AI-assisted reverse engineering has come, but this is a personal experiment, not a security alert for the rest of us.</description><pubDate>Mon, 24 Aug 2026 06:32:30 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/a-developer-used-an-ai-coding-agent-to-hack-his-own-webcam-mic-and.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/a-developer-used-an-ai-coding-agent-to-hack-his-own-webcam-mic-and.jpg"/><category>Security</category></item><item><title>Critical flaw in Mailgun for WordPress plugin could let attackers hijack admin accounts</title><link>https://www.nerdbite.com/critical-flaw-in-mailgun-for-wordpress-plugin-could-let-attackers/</link><guid isPermaLink="true">https://www.nerdbite.com/critical-flaw-in-mailgun-for-wordpress-plugin-could-let-attackers/</guid><description>A newly published CVE rates 9.8 out of 10, but before anyone panics it&apos;s worth asking who actually runs this plugin, and whether it&apos;s even fixed yet.</description><pubDate>Mon, 24 Aug 2026 06:31:15 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/critical-flaw-in-mailgun-for-wordpress-plugin-could-let-attackers.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/critical-flaw-in-mailgun-for-wordpress-plugin-could-let-attackers.jpg"/><category>Security</category></item><item><title>VMware vCenter flaw added to US &apos;actively exploited&apos; list, here&apos;s what&apos;s actually confirmed</title><link>https://www.nerdbite.com/vmware-vcenter-flaw-added-to-us-actively-exploited-list-here-s-what-s/</link><guid isPermaLink="true">https://www.nerdbite.com/vmware-vcenter-flaw-added-to-us-actively-exploited-list-here-s-what-s/</guid><description>A critical bug in vCenter&apos;s Syslog server has earned a place on America&apos;s most-wanted vulnerability list, but the scarier detail, Chinese hackers, hundreds of victims, comes from a blog post, not CISA.</description><pubDate>Mon, 24 Aug 2026 06:30:54 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/vmware-vcenter-flaw-added-to-us-actively-exploited-list-here-s-what-s.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/vmware-vcenter-flaw-added-to-us-actively-exploited-list-here-s-what-s.jpg"/><category>Security</category></item><item><title>IBM patches critical AIX and PowerVM flaw letting attackers overwrite files remotely</title><link>https://www.nerdbite.com/ibm-patches-critical-aix-and-powervm-flaw-letting-attackers-overwrite/</link><guid isPermaLink="true">https://www.nerdbite.com/ibm-patches-critical-aix-and-powervm-flaw-letting-attackers-overwrite/</guid><description>A 9.1-rated bug sounds terrifying, but check who&apos;s actually running this before you panic - it&apos;s not your laptop.</description><pubDate>Sun, 23 Aug 2026 06:31:23 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/ibm-patches-critical-aix-and-powervm-flaw-letting-attackers-overwrite.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/ibm-patches-critical-aix-and-powervm-flaw-letting-attackers-overwrite.jpg"/><category>Security</category></item><item><title>TrueConf Server bug now on CISA&apos;s exploited-in-the-wild list, should you care?</title><link>https://www.nerdbite.com/trueconf-server-bug-now-on-cisa-s-exploited-in-the-wild-list-should/</link><guid isPermaLink="true">https://www.nerdbite.com/trueconf-server-bug-now-on-cisa-s-exploited-in-the-wild-list-should/</guid><description>A critical flaw in a Russian videoconferencing platform is being actively abused, but unless you&apos;re running TrueConf&apos;s server software yourself, this one passes you by.</description><pubDate>Sun, 23 Aug 2026 06:30:56 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/trueconf-server-bug-now-on-cisa-s-exploited-in-the-wild-list-should.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/trueconf-server-bug-now-on-cisa-s-exploited-in-the-wild-list-should.jpg"/><category>Security</category></item><item><title>A 9.9-rated flaw in Red Hat&apos;s Kubernetes management tool isn&apos;t as apocalyptic as the score implies</title><link>https://www.nerdbite.com/a-9-9-rated-flaw-in-red-hat-s-kubernetes-management-tool-isn-t-as/</link><guid isPermaLink="true">https://www.nerdbite.com/a-9-9-rated-flaw-in-red-hat-s-kubernetes-management-tool-isn-t-as/</guid><description>CVE-2026-70496 hands a helper component cluster-admin-level powers on paper, but Red Hat&apos;s own rating and the fine print tell a calmer story.</description><pubDate>Sat, 22 Aug 2026 06:31:16 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/a-9-9-rated-flaw-in-red-hat-s-kubernetes-management-tool-isn-t-as.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/a-9-9-rated-flaw-in-red-hat-s-kubernetes-management-tool-isn-t-as.jpg"/><category>Security</category></item><item><title>Zimbra email servers under active attack via obscure SNMP flaw</title><link>https://www.nerdbite.com/zimbra-email-servers-under-active-attack-via-obscure-snmp-flaw/</link><guid isPermaLink="true">https://www.nerdbite.com/zimbra-email-servers-under-active-attack-via-obscure-snmp-flaw/</guid><description>A serious, unauthenticated bug in Zimbra Collaboration Suite is already being exploited, but only a specific, non-default setup is actually exposed.</description><pubDate>Sat, 22 Aug 2026 06:30:49 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/zimbra-email-servers-under-active-attack-via-obscure-snmp-flaw.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/zimbra-email-servers-under-active-attack-via-obscure-snmp-flaw.jpg"/><category>Security</category></item><item><title>SIA marks first &apos;National Day for Victims and Survivors of Terrorism&apos;, but don&apos;t mistake it for new law</title><link>https://www.nerdbite.com/sia-marks-first-national-day-for-victims-and-survivors-of-terrorism/</link><guid isPermaLink="true">https://www.nerdbite.com/sia-marks-first-national-day-for-victims-and-survivors-of-terrorism/</guid><description>The security regulator has issued a solidarity statement, not a policy change, here&apos;s what&apos;s actually new and what isn&apos;t.</description><pubDate>Fri, 21 Aug 2026 06:31:42 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/sia-marks-first-national-day-for-victims-and-survivors-of-terrorism.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/sia-marks-first-national-day-for-victims-and-survivors-of-terrorism.jpg"/><category>Security</category></item><item><title>Firefox patches a critical use-after-free bug - but is it really a 9.8?</title><link>https://www.nerdbite.com/firefox-patches-a-critical-use-after-free-bug-but-is-it-really-a-9-8/</link><guid isPermaLink="true">https://www.nerdbite.com/firefox-patches-a-critical-use-after-free-bug-but-is-it-really-a-9-8/</guid><description>A newly disclosed WebAssembly flaw in Firefox scores near the top of the danger scale, though Mozilla&apos;s own rating and the lack of any known attacks tell a calmer story.</description><pubDate>Fri, 21 Aug 2026 06:31:20 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/firefox-patches-a-critical-use-after-free-bug-but-is-it-really-a-9-8.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/firefox-patches-a-critical-use-after-free-bug-but-is-it-really-a-9-8.jpg"/><category>Security</category></item><item><title>TrueConf Server flaw let attackers break out of its sandbox, CISA says it&apos;s already being exploited</title><link>https://www.nerdbite.com/trueconf-server-flaw-let-attackers-break-out-of-its-sandbox-cisa-says/</link><guid isPermaLink="true">https://www.nerdbite.com/trueconf-server-flaw-let-attackers-break-out-of-its-sandbox-cisa-says/</guid><description>A critical bug in the self-hosted video conferencing platform is now on the US government&apos;s confirmed-exploited list, but this is an enterprise problem, not a household one.</description><pubDate>Fri, 21 Aug 2026 06:30:53 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/trueconf-server-flaw-let-attackers-break-out-of-its-sandbox-cisa-says.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/trueconf-server-flaw-let-attackers-break-out-of-its-sandbox-cisa-says.jpg"/><category>Security</category></item><item><title>&apos;Perfect 10&apos; bug in an old TRENDnet Wi-Fi controller&apos;s nginx binary - but check who actually owns one</title><link>https://www.nerdbite.com/perfect-10-bug-in-an-old-trendnet-wi-fi-controller-s-nginx-binary-but/</link><guid isPermaLink="true">https://www.nerdbite.com/perfect-10-bug-in-an-old-trendnet-wi-fi-controller-s-nginx-binary-but/</guid><description>A stack overflow in a bundled nginx binary has earned the maximum CVSS score, but the affected device is a niche, ageing wireless controller rather than anything on your desk.</description><pubDate>Thu, 20 Aug 2026 06:31:54 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/perfect-10-bug-in-an-old-trendnet-wi-fi-controller-s-nginx-binary-but.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/perfect-10-bug-in-an-old-trendnet-wi-fi-controller-s-nginx-binary-but.jpg"/><category>Security</category></item><item><title>MLflow webhook bug now under active attack, CISA confirms</title><link>https://www.nerdbite.com/mlflow-webhook-bug-now-under-active-attack-cisa-confirms/</link><guid isPermaLink="true">https://www.nerdbite.com/mlflow-webhook-bug-now-under-active-attack-cisa-confirms/</guid><description>A validation gap in MLflow&apos;s webhook testing feature can be abused to sneak past security checks and reach internal systems, and someone is already doing it.</description><pubDate>Thu, 20 Aug 2026 06:31:22 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/mlflow-webhook-bug-now-under-active-attack-cisa-confirms.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/mlflow-webhook-bug-now-under-active-attack-cisa-confirms.jpg"/><category>Security</category></item><item><title>Critical flaw in Red Hat&apos;s cluster management tool needs a privileged account to matter</title><link>https://www.nerdbite.com/critical-flaw-in-red-hat-s-cluster-management-tool-needs-a-privileged/</link><guid isPermaLink="true">https://www.nerdbite.com/critical-flaw-in-red-hat-s-cluster-management-tool-needs-a-privileged/</guid><description>A 9.1-rated bug sounds terrifying, but check the small print: you need admin-level access to abuse it in the first place.</description><pubDate>Wed, 19 Aug 2026 06:31:24 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/critical-flaw-in-red-hat-s-cluster-management-tool-needs-a-privileged.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/critical-flaw-in-red-hat-s-cluster-management-tool-needs-a-privileged.jpg"/><category>Security</category></item><item><title>Critical Windows networking flaw is being actively exploited, CISA confirms</title><link>https://www.nerdbite.com/critical-windows-networking-flaw-is-being-actively-exploited-cisa/</link><guid isPermaLink="true">https://www.nerdbite.com/critical-windows-networking-flaw-is-being-actively-exploited-cisa/</guid><description>A 9.8-rated bug in Microsoft&apos;s IKE service lets attackers run code with no clicks and no credentials, and it&apos;s already being used in the wild, not just theorised.</description><pubDate>Wed, 19 Aug 2026 06:30:58 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/critical-windows-networking-flaw-is-being-actively-exploited-cisa.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/critical-windows-networking-flaw-is-being-actively-exploited-cisa.jpg"/><category>Security</category></item><item><title>Charity Commission flags rising abuse of charitable status, but the numbers need context</title><link>https://www.nerdbite.com/charity-commission-flags-rising-abuse-of-charitable-status-but-the/</link><guid isPermaLink="true">https://www.nerdbite.com/charity-commission-flags-rising-abuse-of-charitable-status-but-the/</guid><description>The regulator&apos;s own risk assessment shows a real rise in cases, but that&apos;s likely as much about better detection as it is about scarier criminals.</description><pubDate>Tue, 18 Aug 2026 06:31:33 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/charity-commission-flags-rising-abuse-of-charitable-status-but-the.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/charity-commission-flags-rising-abuse-of-charitable-status-but-the.jpg"/><category>Security</category></item><item><title>Another Tenda router flaw scores 9.8 - but check your firmware before panicking</title><link>https://www.nerdbite.com/another-tenda-router-flaw-scores-9-8-but-check-your-firmware-before/</link><guid isPermaLink="true">https://www.nerdbite.com/another-tenda-router-flaw-scores-9-8-but-check-your-firmware-before/</guid><description>A critical authentication bypass has been logged against a single Tenda AC10 firmware build - here&apos;s what&apos;s actually confirmed and what&apos;s still guesswork.</description><pubDate>Tue, 18 Aug 2026 06:31:14 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/another-tenda-router-flaw-scores-9-8-but-check-your-firmware-before.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/another-tenda-router-flaw-scores-9-8-but-check-your-firmware-before.jpg"/><category>Security</category></item><item><title>US cyber agency flags actively exploited flaw in Ray, the AI developer tool</title><link>https://www.nerdbite.com/us-cyber-agency-flags-actively-exploited-flaw-in-ray-the-ai-developer/</link><guid isPermaLink="true">https://www.nerdbite.com/us-cyber-agency-flags-actively-exploited-flaw-in-ray-the-ai-developer/</guid><description>A browser trick and some old-fashioned DNS trickery can apparently hijack machines running Ray in dev mode, but only if you&apos;re the kind of person running Ray in dev mode.</description><pubDate>Tue, 18 Aug 2026 06:30:52 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/us-cyber-agency-flags-actively-exploited-flaw-in-ray-the-ai-developer.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/us-cyber-agency-flags-actively-exploited-flaw-in-ray-the-ai-developer.jpg"/><category>Security</category></item><item><title>Critical Grav CMS plugin bug let low-privilege API keys mint themselves &apos;super&apos; access</title><link>https://www.nerdbite.com/critical-grav-cms-plugin-bug-let-low-privilege-api-keys-mint/</link><guid isPermaLink="true">https://www.nerdbite.com/critical-grav-cms-plugin-bug-let-low-privilege-api-keys-mint/</guid><description>A scoring of 9.8 sounds terrifying, but the flaw only bites sites running Grav&apos;s API plugin with super-user API keys already in play - here&apos;s what actually happened and who needs to patch.</description><pubDate>Tue, 18 Aug 2026 03:28:09 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/critical-grav-cms-plugin-bug-let-low-privilege-api-keys-mint.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/critical-grav-cms-plugin-bug-let-low-privilege-api-keys-mint.jpg"/><category>Security</category></item><item><title>Progress LoadMaster flaw is being actively exploited, here&apos;s who needs to care</title><link>https://www.nerdbite.com/progress-loadmaster-flaw-is-being-actively-exploited-here-s-who-needs/</link><guid isPermaLink="true">https://www.nerdbite.com/progress-loadmaster-flaw-is-being-actively-exploited-here-s-who-needs/</guid><description>A critical bug lets attackers run commands on LoadMaster boxes with no login required, but this is an enterprise networking story, not one for home routers.</description><pubDate>Tue, 18 Aug 2026 03:27:45 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/progress-loadmaster-flaw-is-being-actively-exploited-here-s-who-needs.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/progress-loadmaster-flaw-is-being-actively-exploited-here-s-who-needs.jpg"/><category>Security</category></item><item><title>Windows has a zero-day that hands attackers full control - and it is already being used</title><link>https://www.nerdbite.com/windows-winsock-zero-day-cve-2026-68820/</link><guid isPermaLink="true">https://www.nerdbite.com/windows-winsock-zero-day-cve-2026-68820/</guid><description>CVE-2026-68820, a use-after-free bug in the WinSock driver, lets someone already on your PC escalate to SYSTEM. CISA has told federal agencies to patch by 25 August. Here is who is actually at risk, and who is not.</description><pubDate>Mon, 17 Aug 2026 08:00:00 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/windows-winsock-zero-day-cve-2026-68820.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/windows-winsock-zero-day-cve-2026-68820.jpg"/><category>Security</category></item><item><title>The Windows flaw added to CISA&apos;s exploited list this week is one of the few that reaches home machines</title><link>https://www.nerdbite.com/windows-afd-winsock-cve-2026-68820-kev/</link><guid isPermaLink="true">https://www.nerdbite.com/windows-afd-winsock-cve-2026-68820-kev/</guid><description>CVE-2026-68820 is a privilege escalation in a Windows networking driver. It cannot get an attacker in, which is the point: it is what they use once they are already there.</description><pubDate>Fri, 14 Aug 2026 18:45:00 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/windows-afd-winsock-cve-2026-68820-kev.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/windows-afd-winsock-cve-2026-68820-kev.jpg"/><category>Security</category></item><item><title>Federal agencies had until today to patch a Cisco firewall flaw that is already being exploited</title><link>https://www.nerdbite.com/cisco-asa-ftd-cve-2026-20349-kev-deadline/</link><guid isPermaLink="true">https://www.nerdbite.com/cisco-asa-ftd-cve-2026-20349-kev-deadline/</guid><description>CVE-2026-20349 lets an unauthenticated attacker reboot a Cisco firewall from the internet. It does not steal anything, which is exactly why it is easy to underrate.</description><pubDate>Fri, 14 Aug 2026 13:30:00 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/cisco-asa-ftd-cve-2026-20349-kev-deadline.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/cisco-asa-ftd-cve-2026-20349-kev-deadline.jpg"/><category>Security</category></item><item><title>CISA gives federal agencies three days to patch a Cisco firewall flaw already being exploited</title><link>https://www.nerdbite.com/cisa-cisco-firewall-actively-exploited-august-2026/</link><guid isPermaLink="true">https://www.nerdbite.com/cisa-cisco-firewall-actively-exploited-august-2026/</guid><description>Two Cisco Secure Firewall products were added to the US catalogue of actively exploited vulnerabilities on 11 August, with a deadline of 14 August. The short clock is the tell.</description><pubDate>Wed, 12 Aug 2026 08:30:00 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/cisa-cisco-firewall-actively-exploited-august-2026.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/cisa-cisco-firewall-actively-exploited-august-2026.jpg"/><category>Security</category></item><item><title>Signicat certified under the UK digital identity framework - but the policy backdrop is not what the announcement says</title><link>https://www.nerdbite.com/signicat-uk-diatf-certification-kantara/</link><guid isPermaLink="true">https://www.nerdbite.com/signicat-uk-diatf-certification-kantara/</guid><description>The identity firm has passed a Kantara audit covering Right to Work, Right to Rent and DBS checks. Its announcement also claims the government has ended its digital ID scheme, which is not what happened.</description><pubDate>Tue, 11 Aug 2026 17:15:00 GMT</pubDate><dc:creator>Sam Allcock</dc:creator><media:content url="https://www.nerdbite.com/images/signicat-uk-diatf-certification-kantara.jpg" medium="image" type="image/jpeg"/><media:thumbnail url="https://www.nerdbite.com/images/signicat-uk-diatf-certification-kantara.jpg"/><category>Security</category></item></channel></rss>