JetBrains released security updates addressing a critical code execution flaw in IntelliJ IDEA and four high-severity TeamCity vulnerabilities.
CVE-2026-57239 affects Foxit PDF Reader versions before 2026.2, allowing local attackers to escalate privileges to NT AUTHORITY\SYSTEM through DLL sideloading.
Researchers demonstrate how attackers exploit AI coding agents by pre-registering hallucinated package names, achieving 85-100% consistency rates.
Certighost exploit published July 24 lets low-privileged Active Directory users obtain Domain Controller certificates. Microsoft patched CVE-2026-54121 on July 14.
Apache releases security updates for Syncope IAM platform addressing multiple critical vulnerabilities including RCE, SQL injection, and privilege escalation.
UCSD researchers discover Bluetooth vulnerabilities in KARR and SWDS dealer-installed security systems affecting 2.2 million vehicles in California.
JetBrains has patched multiple security vulnerabilities in IntelliJ IDEA and TeamCity, including critical flaws enabling code execution.
A newly disclosed HTTP/2 vulnerability allows unauthenticated attackers to crash servers through memory exhaustion by manipulating flow-control parameters.
Research reveals AI-generated scripts from ChatGPT, Copilot, and Gemini all contain systematic security vulnerabilities, with 13-14 flaws per platform.
Tego AI has disclosed a second vulnerability in Claude AI within one week, involving hidden links that silently exfiltrate user…