
KVM VM Escape CVE-2026-53359 - 16 Years Hidden
CVE-2026-53359 KVM VM escape has public PoC after 16 years. Plus BeyondTrust CVSS 9.2 auth bypass and China-nexus ORB malware from Talos.
Posts

CVE-2026-53359 KVM VM escape has public PoC after 16 years. Plus BeyondTrust CVSS 9.2 auth bypass and China-nexus ORB malware from Talos.

Prompt injection forces autonomous AI agents to send crypto to attackers. Plus Opera GX silent install flaw and SkillCloak 90% AI plugin evasion.

FBI dismantles NetNut residential proxy botnet enrolling 2M+ IoT devices. Plus CitrixBleed 2.0 exploited same day and Medtronic 3.8M-record breach.

Cisco UCM zero-day exploited with public PoC. CVE-2026-45659 SharePoint RCE hits CISA KEV. DHS confirms HSIN breach. JADEPUFFER AI ransomware.

Citrix patches CVE-2026-8451 NetScaler info disclosure and HTTP/2 Bomb DoS. Talos exposes ARToken M365 PhaaS panel.

CVE-2026-46817 Oracle EBS Payments auth bypass actively exploited. Aflac Japan subsidiary breach and BlueHammer in ransomware toolkits.

CVE-2026-55200 public PoC turns SSH clients into targets. Plus 14.2M credentials exposed at six ISPs and Russian APTs exploiting messaging apps.

Miasma malware expands from npm to Go and GitHub Actions. CVE-2026-12569 Windchill RCE hits KEV. CL-STA-1062 espionage targets SE Asia governments.

CVE-2026-20245 gave attackers root on Cisco SD-WAN routers for two months pre-patch. Plus CVSS 9.8 Lantronix OT flaw and 27M credentials recovered.

CVE-2026-20230 SSRF in Cisco Unified CM exploited days after PoC. Mistic RAT feeds six ransomware gangs. Klue supply chain breach hits LastPass.