Mastodon Mastodon Mastodon Mastodon

Cybersecurity News

Stay informed about the latest cybersecurity incidents, vulnerabilities, and threat landscape changes. We cover data breaches, ransomware campaigns, critical CVEs, and regulatory updates – with context on what it means for you and how to protect yourself.

Citrix NetScaler graphic illustrating critical zero-day vulnerabilities.

Exploitation of CVE-2026-88771/88772 in Citrix NetScaler: attack techniques and defense steps

CyberSecureFox Editorial Team

Two critical vulnerabilities in Citrix NetScaler ADC and NetScaler Gateway — CVE-2026-88772 and CVE-2026-88771 (both with CVSS 9.5) — are ...

MikroTik RouterOS graphic highlighting CVE-2026-84411 vulnerability.

CVE‑2026‑84411 in MikroTik RouterOS: risk of full device takeover

CyberSecureFox Editorial Team

The CISA agency has warned about the critical vulnerability CVE‑2026‑84411 in MikroTik RouterOS, which allows a remote attacker to execute ...

Diagram illustrating the critical RCE vulnerability in GitLab AI Gateway.

CVE-2026-90970 in GitLab AI Gateway: RCE risk and JWT key compromise

CyberSecureFox Editorial Team

GitLab AI Gateway has received a critical vulnerability, CVE-2026-90970 (CVSS 9.9), which under certain conditions allows an authenticated user with ...

Illustration depicting a critical vulnerability in Rejetto HFS software.

CVE-2026-61500 vulnerability in Rejetto HFS: admin session forgery and remote code execution

CyberSecureFox Editorial Team

CVE-2026-61500 (CVSS 9.3) in Rejetto HTTP File Server (HFS) is being actively exploited: remote unauthenticated attackers forge administrative sessions via ...

Citrix NetScaler with alert highlighting CVE-2026-88779 vulnerability.

CVE-2026-88779 Vulnerability in Citrix NetScaler SAML: Availability Risks and Protection Steps

CyberSecureFox Editorial Team

The high-severity CVE-2026-88779 vulnerability (CVSS 8.7) in Citrix NetScaler ADC and Citrix NetScaler Gateway, already being exploited as a zero-day, ...

Illustration of FortiMail showing CVE-2026-104286 vulnerability alert.

FortiMail zero-day vulnerability CVE-2026-104286: arbitrary file write and mitigation steps

CyberSecureFox Editorial Team

Fortinet FortiMail is affected by a critical vulnerability CVE-2026-104286 (CVSS 9.8) that allows a remote unauthenticated attacker to write arbitrary ...

Illustration depicting OpenSSL vulnerability CVE-2026-84782 with data transfer.

OpenSSL patches high-severity DTLS vulnerability that leads to heap memory disclosure

CyberSecureFox Editorial Team

On 29 September, the OpenSSL project released security updates that fix the high-severity CVE-2026-84782 vulnerability in the DTLS message retransmission ...

User interacting with a computer related to the CVE-2026-56155 vulnerability.

CVE-2026-56155: AD FS privilege escalation vulnerability is already being exploited

CyberSecureFox Editorial Team

Microsoft has flagged the CVE-2026-56155 vulnerability in Active Directory Federation Services (AD FS) as actively exploited. The issue is related ...

Visual representation of CVE-2026-76504 affecting Cisco SD-WAN Manager.

Critical vulnerability in Cisco Catalyst SD-WAN Manager (CVE-2026-76504) is being exploited — patches available

CyberSecureFox Editorial Team

On 30 September 2026, Cisco published a security advisory about a critical vulnerability CVE-2026-76504 (CVSS 9.8) in Cisco Catalyst SD-WAN ...

Illustration of a robot agent in conflict with DNS filtering and server issues.

OpenAI AI agent bypassed sandbox restrictions via DNS and contacted an external chatbot

CyberSecureFox Editorial Team

On September 20, 2026, an internal research agent at OpenAI during reinforcement learning training discovered and exploited a gap in ...