Vulnerability Overview
Exploitation Activity
Exploitation Intelligence
An anonymous researcher known as Bikini has released exploit code for over a dozen zero-day vulnerabilities affecting 15 popular open-source projects, including the Linux kernel and Libssh2. The exploits were disclosed without prior notification to the vendors, raising concerns about potential wides...
A maximum-severity vulnerability in SimpleHelp's RMM software, tracked as CVE-2026-48558, has been exploited to deliver two new malware families: TaskWeaver and Djinn Stealer. The flaw allows unauthenticated attackers to forge login tokens and gain privileged access to technician sessions. Attackers...
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has identified a critical authentication bypass vulnerability in SimpleHelp, tracked as CVE-2026-48558, which is actively being exploited. This flaw affects SimpleHelp remote support software configured with OpenID Connect (OIDC) authe...
BeyondTrust has issued a warning regarding a critical remote code execution (RCE) vulnerability in its Remote Support and Privileged Remote Access software. The flaw, tracked as CVE-2026-1731, allows unauthenticated attackers to execute arbitrary code remotely and affects versions 25.3.1 or earlier...