June 19, 2026 at 10:27AM

To the readers and those who use our tools: The ckure.org and all sister domains were hosted in India. But due to governments involvement in blocking apps like Telegram, some of the website integrations failed. We have moved all hosting and its ops to locations outside India. We regret to have kept India as the…

June 14, 2026 at 09:59PM

■■■■■ Hacking UPS network cards to shut down data centers and banks: two critical flaws in Vertiv. 🔋 https://claroty.com/team82/research/attacking-ups-network-cards-to-take-down-data-centers https://it4sec.substack.com/p/hacking-ups-network-cards-to-shut

June 14, 2026 at 06:00PM

■■■□□ CVE-2026-48907 — JoomlaSniper v1.0 released. Unauthenticated RCE in Joomla JCE Editor (≤2.9.99.4) CVSS 10.0 • Affects ALL production versions. File upload → PHP execution in /tmp/ — no auth required. https://github.com/ynsmroztas/JoomlaSniper

June 12, 2026 at 02:25AM

Exploiting CVE-2024-1065 via the Page Cache! A strategy for physical-page UAFs in MIGRATE_MOVABLE, where Dirty Pagetable and Dirty Cred don’t apply. https://kuzey.rs/posts/MaliUAF/ Demonstrated on the Mali GPU UAF found by Project Zero.

June 11, 2026 at 12:57AM

 OpenClaw AI agent found falling for phishing attacks, spills user data Phishing simulation on an OpenClaw email agent with various configuration profiles showed that it was susceptible to tactics commonly used to compromise human users. […] https://www.bleepingcomputer.com/news/security/openclaw-ai-agent-found-falling-for-phishing-attacks-spills-user-data/

June 11, 2026 at 12:57AM

 The ‘Miasma’ worm source code briefly leaked on GitHub The Miasma credential-stealing attack framework, which has recently targeted open-source ecosystems through supply-chain attacks, was briefly open-sourced on GitHub. […] https://www.bleepingcomputer.com/news/security/the-miasma-worm-source-code-briefly-leaked-on-github/