The Security Tool Became the Primitive: Defender Reached SYSTEM and Lost Availability

Two actively exploited Microsoft Defender flaws let local attackers reach SYSTEM or disrupt endpoint protection before automatic fixes arrived.

Two actively exploited Microsoft Defender flaws let local attackers reach SYSTEM or disrupt endpoint protection before automatic fixes arrived.

Microsoft’s multi-model agentic security system offers a credible glimpse of faster vulnerability discovery—but its strongest lesson is the combination of specialised agents, tools and human validation. Microsoft has presented a multi-model agentic security system that uses more than 100 specialised…

A coordinated compromise of npm and PyPI packages shows how trusted publishing, CI caches and maintainer identities can combine into an automated supply-chain attack. Security researchers reported a new “Mini Shai-Hulud” campaign on 11 May involving trojanised packages in the…

Dirty Frag turned Linux kernel networking flaws into a reliable path from a low-privilege foothold to root across major distributions.

May 2026 Patch Tuesday covers 116 approved patch records and 183 unique CVEs across Microsoft, Adobe and SAP.

Two intrusions into Instructure’s Canvas platform show why a shared education service needs tenant-level visibility, tested fallbacks and careful treatment of attacker claims. Instructure detected unauthorised activity in Canvas on 29 April. On 7 May, the same actor obtained access…

Attackers exploited a PAN-OS authentication portal flaw to reach root on exposed firewalls. Patching closes the entry path, but exposed appliances require incident review.

Poland’s amended National Cybersecurity System Act is now in force. Its scale, registration timetable and management duties turn NIS2 into a board-level implementation programme. Poland’s amendment to the National Cybersecurity System Act took effect on 3 April 2026. The Act…

Vercel’s April incident began with a compromised third-party AI application and ended inside internal systems. OAuth consent deserves the same scrutiny as a privileged integration. Vercel disclosed that an attacker gained unauthorised access to certain internal systems after compromising Context.ai,…

April 2026 Patch Tuesday covers 113 approved patch records and 239 unique CVEs across Microsoft, Adobe and SAP.