Content Paint

vulnerabilities

A CVE explosion - and the lessons from it

8,000+ XSS bugs

MongoBleed exploitation: Community rallies to deliver detection logic, tools

Detection "requires somewhat complex logic which could be tricky to port into most SIEM detection engines..."

Critical Cisco vulnerability exploited. No patch yet. Attackers gain persistence

A technical support case revealed a remote exploit of web-exposed spam quarantine management to gain root.

React2Shell exploits are going “wild” and even Microsoft is struggling

14 million attack attempts an hour says Cloudflare

December's Patch Tuesday brings an 0day - and prompt injection warnings

Microsoft patched 1,139 vulnerabilities in 2025. This month, look out for...

React2Shell: FUD, loathing and mass exploitation

"A clean ‘this was a successful exploit’ signal isn’t really possible here. The only reliable detection is post-exploitation activity on the box..."

CVSS 10 bug in React, Next.js triggers security klaxons

Pre-auth RCE, trivial exploitation, a massive blast radius...

Oracle exploit: IAM under attack

Ye Olde Fashioned authentication filters in a Groovy codebase to blame.

Fortinet firewalls under "widespread" attack

Auth-bypass to Admin ftw...

Search the site

Your link has expired. Please request a new one.
Your link has expired. Please request a new one.
Your link has expired. Please request a new one.
Great! You've successfully signed up.
Great! You've successfully signed up.
Welcome back! You've successfully signed in.
Success! You now have access to additional content.