Cyber Accord
  • Home
  • Services
    • Security Testing
    • CLOUD SECURITY
    • GAP ASSESSMENTS
    • Compliance Readiness
    • Advisory
    • Questionnaires
  • About us
  • Contact
  • Blogs
Select Page
Vercel Confirms KVM Zero-Day VM Escape, Awards Researcher $50,000

Vercel Confirms KVM Zero-Day VM Escape, Awards Researcher $50,000

Cyber Security

Vercel has confirmed a KVM zero-day vulnerability after security researcher Paulos Yibelo reported a full virtual machine escape that, he says, allows code inside a guest to gain root access on the host. The discovery came through the Vercel Sandbox bug bounty...
Critical GitLab AI Gateway Vulnerability Enables Remote Code Execution Attacks

Critical GitLab AI Gateway Vulnerability Enables Remote Code Execution Attacks

Cyber Security

GitLab has released urgent security updates for a critical AI Gateway vulnerability that could allow authenticated attackers to execute commands remotely. Tracked as CVE-2026-90970, the flaw carries a CVSS score of 9.9 and affects self-hosted deployments used to...
Kiteworks Patches 126 Vulnerabilities in Massive Security Update

Kiteworks Patches 126 Vulnerabilities in Massive Security Update

Cyber Security

Kiteworks has released a major security update that addresses 126 vulnerabilities across its secure data transfer platform and associated applications. The update includes fixes for critical account takeover flaws, high-severity code execution bugs, security bypass...
Critical MikroTik RouterOS Flaw Lets Unauthenticated Attackers Execute Code as Root

Critical MikroTik RouterOS Flaw Lets Unauthenticated Attackers Execute Code as Root

Cyber Security

A critical vulnerability in MikroTik RouterOS could allow unauthenticated remote attackers to execute arbitrary code with root-level privileges or trigger a denial-of-service condition. The flaw, tracked as CVE-2026-84411, affects MikroTik RouterOS versions before...
AI Agent Finds Linux Kernel Bug That Turns a Tiny Memory Write Into Root Access

AI Agent Finds Linux Kernel Bug That Turns a Tiny Memory Write Into Root Access

Cyber Security

Autonomous security research platform XBOW has disclosed CVE-2026-72018, a high-severity Linux kernel vulnerability that converts a tightly constrained out-of-bounds memory write into local root access. The flaw affects the DIBS loopback implementation used by the...
Storm-3168 Deletes Azure Resources in 7-Minute Destructive Cloud Attack

Storm-3168 Deletes Azure Resources in 7-Minute Destructive Cloud Attack

Cyber Security

Storm-3168 used compromised cloud identities to carry out a destructive attack against an Azure environment in minutes. The operation shows how a stolen application credential can give an intruder broad control over hosted data, services, and recovery protections. It...
« Older Entries
Next Entries »

Recent Posts

  • REA Tool Connects Claude Code and Cursor to Ghidra and IDA Pro to Reverse Engineer Anything
  • New Anthropic OSS Scanner Tool to Scan Open-source Repositories for Vulnerabilities
  • Hackers Use GitHub-Hosted Poem to Control PoeLLM Malware Targeting AI Infrastructure
  • Critical WordPress Vulnerabilities Enable XSS, SQL Injection and Data Disclosure Attacks
  • ClingSTUN Backdoor Exploits Multiple IoT Vulnerabilities to Gain Persistent Remote Access

Categories

  • Cyber Security
CyberAccord | All Rights Reserved | 2025