
First AI-Generated Zero-Day — CVE-2026-41940
Google TAG confirms first AI-crafted zero-day exploiting CVE-2026-41940 in cPanel, Shai-Hulud npm/PyPI worm, Cl0p sat in UK water utility for 730 days.
Posts tagged: Critical-Infrastructure

Google TAG confirms first AI-crafted zero-day exploiting CVE-2026-41940 in cPanel, Shai-Hulud npm/PyPI worm, Cl0p sat in UK water utility for 730 days.

CVE-2026-0300 PAN-OS User-ID RCE zero-day exploited since April 9, CISA launches CI Fortify, MuddyWater uses Chaos ransomware as espionage cover.

Pack2TheRoot race condition grants root on RHEL, Ubuntu, and Fedora via PackageKit. Itron utility SCADA vendor breached. US sanctions cyberscam compounds.