Install
Please confirm you are human
This browser or connection looks automated. Press and continuously hold the control for 3 seconds to enable Google-hosted web results and, when separately allowed, AI-assisted answers.
A successful check enables 100 search requests. Interactive access does not authorize scraping, systematic collection, or reuse of search output.
News
Researcher Shares CrowdStrike Privilege Escalation Zero Day
6+ day, 22+ hour ago (383+ words) A security researcher has published details of what appears to be a zero-day privilege escalation exploit in CrowdStrike. The individual, identified by their online moniker “Nightmare Eclipse” (aka Infinite Nightmare, MSNightmare) posted the details to GitHub on September 3. “FalconFlank is…...
CISA Adds Seven Exploited Flaws as Attackers Deploy Reverse Shells and Crypto Miners
1+ week, 3+ day ago (322+ words) The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Wednesday added seven security flaws to its Known Exploited Vulnerabilities (KEV) catalog after they landed in attackers' crosshairs. The vulnerabilities are as follows - As for CVE-2026-48710, a report from Horizon3.ai in June…...
Your data may already be exposed. Here's how to check
1+ week, 5+ day ago (24+ words) NBC 6 South Florida Your data may already be exposed. Here's how to check...
Power Pages misconfigurations expose D365 data
3+ week, 5+ day ago (377+ words) August 18, 2026 | Security intelligence By Field Effect Security Intelligence Team On August 13, 2026, Fortra published research on ExfilSquad, a data extortion group that emerged in late July claiming to have stolen data from multiple organizations. After identifying an exposed Power Pages deployment,…...
Disgruntled security researcher just dropped another Windows zero-day, right on schedule
1+ mon, 9+ hour ago (339+ words) Sounding off: NightmareEclipse did it again. The security researcher who's been on a crusade against Microsoft has published a new zero-day flaw affecting all supported Windows versions. Redmond threatened to sue, but the researcher is keeping his promise to disclose…...
Threatened Researcher Drops New Windows Zero-Day
1+ mon, 1+ day ago (373+ words) varindia.com Threatened Researcher Drops New Windows Zero-Day A security researcher known as "Nightmare Eclipse" has published details of a new Windows vulnerability, dubbed ShieldBreak, weeks after Microsoft threatened them with legal action over previous zero-day disclosures — escalating an ongoing…...
Microsoft threatened legal action, and this researcher just dropped a new Windows bug anyway
1+ mon, 20+ hour ago (534+ words) Microsoft’s legal threats clearly didn’t scare off security researcher Nightmare Eclipse. Just weeks after the company warned it might pursue researchers who release undisclosed bugs outside its official channels, Nightmare Eclipse published a fresh Windows vulnerability, and it’s a nasty…...
From Open NETLOGON To Domain Compromise — RatCTF LAB writeup
1+ mon, 1+ week ago (30+ words) Initial Enumeration The first step is to identify the services correctly nmap -sCV -p30022,30139,30290,30445 ip The interesting services …...
Patch now! N-able warns of exploitation of N-central authentication bypass vulnerability
1+ mon, 1+ week ago (360+ words) Hackers are targeting a newly disclosed zero-day vulnerability in a widely used remote monitoring and management platform, N-central. The platform’s developer, N-able, disclosed both the vulnerability and its exploitation in an August 3 blog post, warning that it impacted all versions…...
CISA Warns of N-able N-central Authentication Bypass Vulnerability Exploited in Attacks
1+ mon, 1+ week ago (366+ words) CISA has warned that attackers are actively exploiting a critical authentication bypass vulnerability in N-able N-central. Tracked as CVE-2026-18577, the flaw affects N-central servers running versions earlier than 2026.3.1.7. N-central is a remote monitoring and management platform widely used by managed…...