PROBABLYPWNED

Cybersecurity News & Threat Intelligence

View all →
Attackers Chain Three FortiSandbox Flaws for Code Execution
Vulnerabilities4 min read

Attackers Chain Three FortiSandbox Flaws for Code Execution

Three critical FortiSandbox vulnerabilities (CVE-2026-39813, CVE-2026-39808, CVE-2026-25089) are under active exploitation. All carry CVSS 9.1 scores and allow unauthenticated remote code execution.

Marcus ChenJun 18, 2026
CISA Orders Patch for CVSS 10 Joomla JCE Flaw by June 19
Vulnerabilities4 min read

CISA Orders Patch for CVSS 10 Joomla JCE Flaw by June 19

CVE-2026-48907 in Joomla Content Editor allows unauthenticated attackers to upload and execute PHP code. CISA added it to the KEV catalog after active exploitation deploying web shells.

Marcus ChenJun 18, 2026
FortiBleed: 73,000 Fortinet VPN Credentials Exposed
Data Breaches4 min read

FortiBleed: 73,000 Fortinet VPN Credentials Exposed

Russian-speaking threat group harvested plaintext credentials for 73,000+ Fortinet firewalls across 194 countries. Samsung, Oracle, and NATO contractor among victims.

Sarah MitchellJun 17, 2026
LiteSpeed cPanel Flaw Gives FTP Users Root Access
Vulnerabilities3 min read

LiteSpeed cPanel Flaw Gives FTP Users Root Access

CVE-2026-54420 exploits symlink mishandling to escalate privileges on shared hosting servers. CISA mandates federal patching within 48 hours as attackers target multi-tenant environments.

Marcus ChenJun 17, 2026
Second Cisco SD-WAN Zero-Day Hits CISA KEV in Two Weeks
Vulnerabilities3 min read

Second Cisco SD-WAN Zero-Day Hits CISA KEV in Two Weeks

CVE-2026-20262 joins CVE-2026-20245 on CISA's exploited vulnerabilities list. Attackers deploy malicious .war files via path traversal to gain root access on Catalyst SD-WAN Manager.

Marcus ChenJun 17, 2026
Steam Workshop Wallpapers Spread Infostealers, Backdoors
Malware4 min read

Steam Workshop Wallpapers Spread Infostealers, Backdoors

Kaspersky uncovers malware campaign using Wallpaper Engine's Steam Workshop to distribute DarkKomet, Lumma, and Vidar. China-focused attacks stole Steam accounts and deployed cryptominers.

James RiveraJun 16, 2026

Security Guides

Learn about ransomware, phishing, malware, and essential online safety practices.

Recommended Resources

Curated books, tools, and resources to deepen your cybersecurity knowledge.

Stay Informed

Get the latest cybersecurity news delivered to your inbox.

We respect your privacy. Unsubscribe anytime.