
KB5124008 update may break Windows 11 domain trust
Microsoft is investigating reports that the Windows 11 KB5124008 update can sever Active Directory trust on some Enterprise devices.
Deep-dive analysis, hands-on tutorials, and cutting-edge threat intelligence from industry practitioners.

Microsoft is investigating reports that the Windows 11 KB5124008 update can sever Active Directory trust on some Enterprise devices.
28 result(s) for “Vulnerability”

Fortinet warns that FortiMail 7.2‑8.0 is vulnerable to a CVSS 9.8 path‑traversal bug that attackers are already exploiting, and offers workarounds and upcoming patches.
Apple says attackers are already weaponizing CVE‑2026‑86950, an out‑of‑bounds write bug, in targeted attacks.
Citrix says CVE‑2026‑88771 and CVE‑2026‑88772 are being exploited, releases patches and the Dutch NCSC warned organizations before public disclosure.
A percent‑encoded “%50SEMHUB” path slips past WAFs, letting ShinyHunters hit Oracle PeopleSoft’s CVE‑2026‑35273 and plant web shells worldwide.

Hacktron leveraged Claude Opus 5 to combine a libheif RCE bug in Discourse with an OpenAI SSO flaw, briefly hijacking staff ChatGPT and Codex accounts and accessing an internal repo.

Hacktron used Claude to auto‑write a remote‑code‑execution exploit for Discourse, then leveraged over‑permissive OpenAI sign‑in tokens to take over an employee’s ChatGPT account and push code to an internal repo.