CVE-2026-50522 was demonstrated at #Pwn2Own Berlin by @splitline of DEVCORE Research Team. He earned $100,000 for it. @trendaisecurity customers received protection back on May 19,2026.
As if Tuesday wasn't enough, #Microsoft released 4 patches yesterday:
CVE-2026-56171: RDP Information Disclosure Vulnerability
CVE-2026-58598: Backup Service EoP Vulnerability
CVE-2026-58643: Admin Center Spoofing Vulnerability
CVE-2026-59117: Windows Terminal RCE Vulnerability
As if Tuesday wasn't enough, #Microsoft released 4 patches yesterday:
CVE-2026-56171: RDP Information Disclosure Vulnerability
CVE-2026-58598: Backup Service EoP Vulnerability
CVE-2026-58643: Admin Center Spoofing Vulnerability
CVE-2026-59117: Windows Terminal RCE Vulnerability
Wait - there are how many #Microsoft patches?? More than 600??!? Great googly moogly. Uh.... I'll have my thoughts out soonish. Yikes. Welcome to the bug apocalypse.
#Adobe is moving to a twice-monthly patch release as a result of frontier AI models finding bugs. Today, they released two Priority 1 patches for Cold Fusion and Campaign Classic (CVSS 10!). Neither under active attack. Read the announcement at https://t.co/pmsgJy6U2F
I had an amazing time talking with @chompie1337 during #Pwn2Own Berlin. Her insights into AI assisted vulnerability development are not to be missed. Check out our podcast here or wherever you get yours https://t.co/SgefunqJpz
Well that's odd. #Adobe released an out-of-band update for the Adobe DNG Software Development Kit (SDK), but they say there are no active attacks, and the deployment priority is 3. Four CVEs - one Critical. Check it out at https://t.co/0qV8sJu0po
It's the bug of the month for June 2026! CVE-2026-45657 - A CVSS 9.8 vulnerability in Kernel that allows remote, unauthenticated code execution at SYSTEM without user interaction. Yikes!
Wow. Over 200 CVEs from #Microsoft and another 123 from #Adobe. It's a record-setting Patch Tuesday, but fear not! @dustin_childs has broken the release down and tells you what you need to know. Check out the blog at https://t.co/eoDPfOUZxL
This guy sucks. At my first Pwn2Own he asked me over and over if it was my first CVE. I said no but he kept insisting, in front of everyone, he’d never seen my name credited before. Turns out he was confusing me with another woman in infosec. In charge of security research engagement for MSRC btw
If you’re at Animal Kingdom, don’t pass up on Tiffin’s. Pricey yes, but probably the best dining experience in the parks. The pork duo tasted even better than it looks.