2 stories in the last 7 days
The latest exploitation news, distilled by AI into sharp ~100-word summaries. ByteBrief tracks exploitation across dozens of tech sources and brings you only what matters, updated hourly. Tap any story for the full brief, or open the original source.
Attackers are actively exploiting a critical-severity OS command injection vulnerability in Ivanti Sentry. The flaw allows arbitrary code execution with root privileges. Honeypots are detecting exploitation attempts, indicating active threat campaigns targeting the product.
Attackers are exploiting a maximum-severity OS command injection vulnerability, CVE-2026-10520, in Ivanti Sentry gateways to execute code with root privileges. Ivanti patched the flaw on Tuesday, but Shadowserver reported the next day that most exposed instances were already backdoored. Ivanti has not updated its advisory stating no known exploitation.
Summaries by ByteBrief