
Tutorials
The Autonomous Pentest Lab: Architecting a Secure Claude-to-Kali MCP Bridge

Exploit released for unpatched Ubuntu kernel flaw that lets containers root the host (CVE-2026-80521)
CVE-2026-80521 is a Linux kernel AF_UNIX use-after-free that enables container escape to host root. Ubuntu 22.04, 24.04 and 26.04 remain vulnerable

ShinyHunters Claims Unprecedented FBI Breach: Inside the Oracle PeopleSoft Zero-Day Attack and Dark Web Turf Wars
ShinyHunters claims it breached FBI systems using a previously unknown Oracle PeopleSoft zero-day, targeting FBIjobs.gov and sensitive applicant and employee data

Microsoft Called CVE-2026-65660 a Spoofing Bug. It’s an Authenticated SharePoint RCE
CVE-2026-65660 is an authenticated SharePoint RCE, not just spoofing. Learn about the ToolPane flaw, XAML exploit chain, affected versions, and fixes

Malicious npm package ‘indexed-btree’ evades install-script defenses and detonates at runtime
The malicious indexed-btree npm package bypassed npm v12 install-script defenses using a runtime trigger, Slack and Telegram exfiltration, and Ethereum-based C2

Public Exploits Drop for Four Linux Kernel Flaws as CISA Warns of Active Exploitation: A Complete Technical Breakdown
Four Linux kernel vulnerabilities now have public root exploits, while CISA warns of three actively exploited kernel flaws. CVEs, affected versions, fixes and mitigations

Remote Desktop Software AnyDesk Hacked, Users Urged to Change Passwords
AnyDesk hacked: Cyberattack compromises production systems, raising concerns over source code security and user data. Immediate actions taken, passwords revoked, and new security measures implemented

Jenkins Security Alert: Critical Vulnerability Exposes Servers to Remote Code Execution (RCE) Attacks
Jenkins Security Alert: Critical vulnerability poses remote code execution risk. Servers exposed. Immediate action required to patch and safeguard systems against potential exploitation. Stay vigilant










