News

Security Affairs
securityaffairs. com > 192325 > hacking > chaotic-eclipse-discloses-miniplasma-zero-day-suggesting-a-missing-or-undone-2020-windows-security-fix. html

Chaotic Eclipse discloses Mini Plasma zero-day, suggesting a missing or undone 2020 Windows security fix

1+ hour, 8+ min ago  (589+ words) Experts warn of active exploitation of critical NGINX flaw CVE-2026-42945 SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 97 Security Affairs newsletter Round 577 by Pierluigi Paganini " INTERNATIONAL EDITION Attackers exploit Funnel Builder bug to inject e-skimmers into e-stores Pwn2 Own Berlin 2026, Day Three: DEVCORE Crowned…...

gbhackers. com
gbhackers. com > critical-funnelkit-vulnerability

Critical Funnel Kit Vulnerability Puts 40, 000+ Woo Commerce Sites at Risk

2+ hour, 43+ min ago  (449+ words) A critical security vulnerability in the Funnel Builder plugin by Funnel Kit is actively being exploited, putting more than 40, 000 Woo Commerce websites at risk of payment data theft. The vulnerability affects all Funnel Builder versions prior to 3. 15. 0. 3 and allows unauthenticated…...

Unit 42
unit42. paloaltonetworks. com > threat-bulletin > may-2026

Unit 42 Threat Bulletin - May 2026

9+ hour, 24+ min ago  (1615+ words) The May edition of the Unit 42 Threat Bulletin is live. Find new content and expert perspectives on the latest threats in this packed issue. The results are the full, initial scan of over 130 products across all three platforms. The May…...

Symbols: cwe-35,btc-usd,nasdaq:chkp
Notebookcheck
notebookcheck. net > Mini Plasma-zero-day-gives-SYSTEM-access-on-fully-patched-Windows-11. 1299271. 0. html

Mini Plasma zero-day gives SYSTEM access on fully patched Windows 11

2+ hour, 14+ min ago  (465+ words) Notebookcheck A researcher known as Chaotic Eclipse has released a working Windows privilege escalation exploit that grants SYSTEM access on fully patched Windows 11 machines, including those running the latest May 2026 Patch Tuesday update. The exploit, named Mini Plasma, was published…...

Cyber Security News
cyberpress. org > funnelkit-bug-exposes-stores

Critical Funnel Kit Bug Leaves Woo Commerce Stores Open To Attacks

1+ hour, 9+ min ago  (435+ words) A severe vulnerability has compromised the security of over 40, 000 Woo Commerce storefronts, allowing cybercriminals to steal customer payment data during checkout silently. Active attacks are already underway, leveraging a critical flaw in the popular Funnel Builder by Funnel Kit plugin…...

i Lounge
ilounge. com > news > macos-port-notepad-has-been-revamped

mac OS Port Notepad++ Has Been Revamped

4+ hour, 34+ min ago  (158+ words) ilounge. com After being called out by the official developer for an unofficial port of Notepad++ on the Mac for trademark violations, both parties have now solved the issue by rebranding the Mac port. Andrey Letov released a mac OS…...

Cyber Security News
cyberpress. org > apple-m5-macos-kernel-exploit-built

Apple M5 mac OS Kernel Exploit Built in Five Days with Mythos Preview

3+ hour ago  (415+ words) The first public mac OS kernel memory-corruption exploit running on Apple M5 silicon was built in just five days using a combination of human expertise and Anthropic's AI model, Mythos Preview. On May 14, 2026, the Calif research team personally visited Apple Park…...

Web Wire
webwire. com > View Press Rel. asp

GMV presents a cyber resilience model to coordinate security across sector-based environments at the 5th Andalusia Cybersecurity Congress

2+ hour, 19+ min ago  (332+ words) Web Wire GMV took part in the 5th Andalusia Cybersecurity Congress, organized by the Andalusian Digital Agency (ADA) and held in M'laga The event, a benchmark gathering for the sector, was opened by Jorge Paradela, Andalusia's Regional Minister of Industry, Energy…...

Symbols: nasdaq:elva,tsx:elva,nasdaq:cvlt,nasdaq:hovr,cert-mx,btc-usd
theregister
theregister. com > storage > 05/18/2026 > backup-script-ingested-an-accidental-asterisk-and-deleted-everything > 5240173

Backup script ingested an accidental asterisk and deleted everything

2+ day, 18+ hour ago  (560+ words) WHO, ME? Welcome to Monday morning, the time of week when The Register always asks "Who, Me?" because that's the title of our reader-contributed column in which you confess to having made a mess, and found a way to egress…...

Symbols: anth.pvt
Cyber Security News
cybersecuritynews. com > fast16-malware-manipulated-nuclear-weapons

Fast16 Malware Manipulated Nuclear Weapons Simulation Data to Sabotage Test Results

5+ hour, 39+ min ago  (717+ words) Fast16 malware has been reclassified as a precision tool engineered not to disrupt nuclear warheads directly, but to quietly falsify the outcome of nuclear weapons test simulations and stall weapons development. Rather than causing kinetic damage, Fast16s purpose was psychological and developmental:…...