<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Cve-2026-0264 on it-learn.io | IT, Networking &amp; Cybersecurity Blog</title><link>https://blog.it-learn.io/tags/cve-2026-0264/</link><description>Recent content in Cve-2026-0264 on it-learn.io | IT, Networking &amp; Cybersecurity Blog</description><generator>Hugo</generator><language>en-us</language><lastBuildDate>Thu, 21 May 2026 00:00:00 +0000</lastBuildDate><atom:link href="https://blog.it-learn.io/tags/cve-2026-0264/index.xml" rel="self" type="application/rss+xml"/><item><title>PAN-OS DNS RCE (CVE-2026-0264), Cisco Secure Workload CVSS 10, GitHub Breach — Daily Brief</title><link>https://blog.it-learn.io/posts/2026-05-21-pan-os-dns-rce-cve-2026-0264-cisco-secure-workload-cvss-10-g/</link><pubDate>Thu, 21 May 2026 00:00:00 +0000</pubDate><guid>https://blog.it-learn.io/posts/2026-05-21-pan-os-dns-rce-cve-2026-0264-cisco-secure-workload-cvss-10-g/</guid><description>Two critical NGFW-class vulnerabilities — a CVSS 9.8 heap overflow in PAN-OS DNS proxy and a CVSS 10.0 authentication bypass in Cisco Secure Workload — plus GitHub confirms 3,800 repos breached through a malicious VS Code extension and Chinese APTs share Linux backdoors across Central Asian telco targets.</description></item><item><title>GitHub Breached via Malicious VS Code Extension — CVE-2026-0264 PAN-OS RCE and Verizon DBIR 2026</title><link>https://blog.it-learn.io/posts/2026-05-20-github-breached-via-malicious-vs-code-extension-cve-2026-026/</link><pubDate>Wed, 20 May 2026 00:00:00 +0000</pubDate><guid>https://blog.it-learn.io/posts/2026-05-20-github-breached-via-malicious-vs-code-extension-cve-2026-026/</guid><description>GitHub confirms 3,800 internal repos compromised by a trojanized VS Code extension from TeamPCP. The 2026 Verizon DBIR marks vulnerability exploitation as the top breach vector for the first time. Palo Alto patches CVE-2026-0264, a heap overflow enabling unauthenticated RCE in PAN-OS DNS proxy. Microsoft publishes full Storm-2949 attack chain analysis.</description></item></channel></rss>