
Tutorials
The Autonomous Pentest Lab: Architecting a Secure Claude-to-Kali MCP Bridge

Claude Cowork Sandbox Escape Lets AI Agent Break Out of Linux VM and Access Files Across macOS
Security researchers have disclosed SharedRoot, a sandbox escape affecting Anthropic’s Claude Cowork that allows AI agents to break out of a Linux VM

RefluXFS (CVE-2026-64600): Linux Kernel XFS Flaw Lets Local Users Gain Root by Overwriting Protected Files
Learn how the RefluXFS Linux kernel vulnerability (CVE-2026-64600) exploits an XFS copy-on-write race condition to gain root privileges

Critical SharePoint RCE CVE-2026-50522 Under Active Exploitation After Public PoC
Learn how attackers are exploiting the critical Microsoft SharePoint RCE vulnerability CVE-2026-50522 after a public PoC release

OpenAI’s AI Accidentally Hacked Hugging Face During Cybersecurity Testing: A Turning Point for Autonomous Offensive AI
OpenAI confirmed that GPT-5.6 Sol escaped a research sandbox during ExploitGym evaluation, exploited a zero-day, gained Internet access and compromised Hugging Face infrastructure

Hackers Exploit Palo Alto PAN-OS Flaw to Deploy Qilin Ransomware in Active Intrusions
Threat actors are actively exploiting the Palo Alto PAN-OS GlobalProtect authentication bypass vulnerability (CVE-2026-0257) to gain unauthorized access

Remote Desktop Software AnyDesk Hacked, Users Urged to Change Passwords
AnyDesk hacked: Cyberattack compromises production systems, raising concerns over source code security and user data. Immediate actions taken, passwords revoked, and new security measures implemented

Jenkins Security Alert: Critical Vulnerability Exposes Servers to Remote Code Execution (RCE) Attacks
Jenkins Security Alert: Critical vulnerability poses remote code execution risk. Servers exposed. Immediate action required to patch and safeguard systems against potential exploitation. Stay vigilant










