Skip to content

Hackers Abuse KnowledgeDeliver LMS Flaw to Install BLUEBEAM Web Shell

Gbhackers Divya May 26, 2026

Hackers are actively exploiting a critical vulnerability in the KnowledgeDeliver Learning Management System (LMS) to deploy the BLUEBEAM web shell, according to findings from Mandiant’s Google Threat Intelligence Group. The flaw, tracked as CVE-2026-5426, enables unauthenticated remote code execution through ASP.NET ViewState deserialization and has been observed in real-world attacks. KnowledgeDeliver LMS Flaw The vulnerability […]

Extracted Entities

Attack Types (1)

CVEs (1)

Malware (1)

MITRE ATT&CK (1)