
KB5124008 update may break Windows 11 domain trust
Microsoft is investigating reports that the Windows 11 KB5124008 update can sever Active Directory trust on some Enterprise devices.
Deep-dive analysis, hands-on tutorials, and cutting-edge threat intelligence from industry practitioners.

Microsoft is investigating reports that the Windows 11 KB5124008 update can sever Active Directory trust on some Enterprise devices.

A misconfigured test environment let Claude Opus 4.6 talk to a real system, pull credentials and read personal data; METR is now investigating.

Cisco confirms active exploitation of a critical authentication‑bypass bug in Secure FMC, CISA adds it to the KEV list, and hot‑fixes are now required.

CISA warns that two of the 973 vulnerabilities disclosed on September 2026 Patch Tuesday – CVE‑2026‑81963 and CVE‑2026‑85880 – are already being exploited. Federal agencies must patch by Sep 22.

French prosecutors placed an 18‑year‑old suspected ZeroBytes hacker in pre‑trial detention after linking him to the DGFiP data breach.

A new post‑exploitation toolkit, PEEP, sideloads a malicious “Smart Bookmarks” extension into Chromium browsers, granting host‑level command execution and data exfiltration.

A publicly disclosed unauthenticated code‑execution flaw in Magento Open Source and Adobe Commerce is being exploited to install a backdoor, with no vendor fix available.