
NatJack Hijacks TCP Sessions via NAT State Manipulation
NatJack attacks manipulate NAT state to hijack TCP sessions and spoof DNS. Plus Linux SCTP root exploit since 2008 and three Cisco SD-WAN CVSS 9.9 patches.
IT, Networking & Security — tutorials, guides, and insights.
Latest Posts

NatJack attacks manipulate NAT state to hijack TCP sessions and spoof DNS. Plus Linux SCTP root exploit since 2008 and three Cisco SD-WAN CVSS 9.9 patches.

Cisco patches 24 critical flaws across SD-WAN, IOS XE, and FMC with one public PoC. CVE-2026-63077 TeamCity RCE hits CISA KEV. Oracle DB fileless pivot.

ChainDrop supply chain worm hits 400+ npm packages. CISA KEV adds CVE-2026-9198 Langflow RCE. Iran-linked actors target water systems in 12 US states.

15 TP-Link Omada ZTP vulnerabilities chain into full network takeover. Talos analyzes AI-generated malware prompt logs.

INC ransomware exploits SonicWall SMA1000 for root access; CVE-2026-18577 N-central auth bypass re-patched; Midnight Blizzard steals creds via hotel Wi-Fi.

DeepSeek AI executed a full attack chain autonomously via Telegram. Claude breached 3 orgs during testing. CVE-2026-63077 TeamCity CVSS 9.8.

Coordinated OT attack disrupts 30+ Minnesota water utilities. CVE-2026-20316 Cisco FMC zero-day exploited. Russian Exchange OWA backdoor survives password.
In April, an AI called Claude Mythos found 10,000 high-severity security holes — and flagged 23,000 issues across 1,000+ open-source projects. The punchline nob

Coordinated OT attacks hit dozens of Minnesota water utilities. CVE-2026-16812 VeloCloud CVSS 10 zero-day exploited. AI models escape JFrog sandbox.

CVE-2026-16812 CVSS 10.0 Arista VeloCloud Orchestrator exploited in the wild. Fastjson zero-day RCE with no patch.

Anubis ransomware breaches Coca-Cola's Fairlife subsidiary. DentaQuest exposes 23M healthcare records. Captive portal phishing targets M365 credentials.

Russian Laundry Bear exploits Zimbra zero-click flaw to steal email and 2FA codes. Plus Clop targets PLM servers and CVE-2026-16232 hits Check Point.

CVE-2026-16232 Check Point SmartConsole auth bypass exploited in the wild. Plus msaRAT browser C2 via Chrome DevTools and Iranian APT ICS targeting.

OpenAI models autonomously attacked Hugging Face. Qilin weaponizes CVE-2026-0257 on PAN-OS GlobalProtect. CISA mandates Langflow RCE patching.
Last year, ransomware crews launched ~50% more attacks — and made ~8% less money. The lock stopped paying, so they stopped using it. In 2026, 94% of ransomware

Qilin ransomware exploiting PAN-OS GlobalProtect auth bypass. SonicWall SMA1000 CVE-2026-15409 zero-day chain. HollowGraph C2 via M365 calendar.

Wi-Fi 7 promises 46 gigabits per second. Your access point is plugged into a 1-gig switch port. Guess which number wins. The radio is real and genuinely good —

In June 2026, researchers took over AI coding agents — Claude Code, Cursor, Codex — with no phishing, no malware, and a public credential developers paste into

Every breach in our last episode died the same way it started — with a password. So this week: the fix that's finally winning. On World Passkey Day this May, th

Alibaba XQUIC unpatched HTTP/3 DoS flaw crashes servers with 260 bytes. Zimbra critical XSS patched. GigaWiper destructive backdoor analyzed.