Recent Advisories

Severity ID Title Vendor Product Date Type
NONE WIRED:F5D3DB4B0...

‘Creepy’ Listening Tool for Targeted Ads Didn’t Actually Work, FTC Says_WIRED:F5D3DB4B05B093B14D27B31125479472

Three firms will pay nearly $1 million for selling “Active Listening” technology that they claimed tapped people’s phones for advertising. The FTC ...

N/A N/A WIRED
NONE KREBS:9F36D3730...

Alleged Kimwolf Botmaster ‘Dort’ Arrested, Charged in U.S. and Canada_KREBS:9F36D3730EAA563026AD6783AF28C8AF

Canadian authorities on Wednesday arrested a 23-year-old Ottawa man on suspicion of building and operating **Kimwolf** , a fast spreading Internet-...

N/A N/A KREBS
NONE TALOSBLOG:8A230...

The art of being ungovernable_TALOSBLOG:8A230343CA41CDA991DD2BFA3873D7AA

![The art of being ungovernable](https://storage.ghost.io/c/af/a0/afa04ee3-414f-4481-8d23-7e7c146f192e/content/images/2026/05/threat_source-2.jpg) ...

N/A N/A TALOSBLOG
NONE MSF:AUXILIARY-SCANNER-

Ollama Scanner_MSF:AUXILIARY-SCANNER-HTTP-OLLAMA_INFO-

This module identifies ollama instances and enumerates the LLM models which have been loaded and are running. Module Options msf use auxiliary/scan...

N/A N/A METASPLOIT
NONE MSSECURE:28B317...

What’s new in Microsoft Security: May 2026_MSSECURE:28B3176AD8BF2032764AB06A4518D3C1

At Microsoft, security innovations are purpose-built to help every organization protect end-to-end with the speed and scale of AI. Our vision is si...

N/A N/A MSSECURE
NONE AKAMAIBLOG:2E8A...

Secure Identity at the Edge: Akamai Partners with Auth0_AKAMAIBLOG:2E8A4E338AC196ECB8FD58C26D583EFF

The Akamai and Auth0 partnership secures identity at the edge by combining edge intelligence and adaptive authentication to stop fraud and enhance ...

N/A N/A AKAMAIBLOG
NONE SCHNEIER:673547...

macOS Kernel Memory Corruption Exploit_SCHNEIER:673547B699E59D9AAC992C5EB8C39A59

A group used Anthropic's Mythos AI model to help find a kernel memory corruption vulnerability and exploit on Apple's M5. News article.

N/A N/A SCHNEIER
NONE HACKREAD:379428...

Deleted Google API Keys Remain Active up to 23 Minutes, Study Finds_HACKREAD:37942868F22B6C0D1CC5A8CDA17194A3

Deleted Google API Keys remain active for up to 23 minutes after deletion, exposing GCP, Gemini, BigQuery, and Maps data to attackers.

N/A N/A HACKREAD
NONE PACKETSTORM:221751

📄 Lenovo LegionSpace 1.7.11.2 Unquoted Service Path_PACKETSTORM:221751

Lenovo LegionSpace version 1.7.11.2 suffers from an unquoted service path vulnerability...

N/A N/A PACKETSTORM
NONE PACKETSTORM:221752

📄 BookStack 25.12.1 Denial of Service_PACKETSTORM:221752

BookStack version 25.12.1 suffers from a denial of service vulnerability...

N/A N/A PACKETSTORM