WordPress 7.0 “Armstrong” is here. 🎷
This major release introduces foundational AI tools, a refreshed admin experience, expanded design controls, new blocks, and powerful developer APIs.
Explore what’s new, update when you’re ready, and start building with WordPress 7.0 today. https://t.co/0aF3CG0WOt
Dirty Frag Linux kernel local privilege escalation vulnerability (CVE-2026-43284) mitigations are now available.
Read the blog for details: https://t.co/yHobXhHJYH
New in Claude Code: auto mode.
Instead of approving every file write and bash command, or skipping permissions entirely, auto mode lets Claude make permission decisions on your behalf.
Safeguards check each action before it runs.
WordPress 6.9.4 is now available. This security release contains additional fixes that were not fully applied in 6.9.3. Update your sites as soon as possible. https://t.co/VFxQC6BC06
start ms-cxh:localonly has been recently removed in the recent Windows 11 Beta Update, BypassNRO still works! 🎉
⚠️ DISCONNECT from the internet first! ⚠️
Shift + F10
reg add HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\OOBE /v BypassNRO /t REG_DWORD /d 1 /f
shutdown /r /t 0
🚨 WhatsApp 0-Click Vulnerability Exploited Using Malicious DNG File
Read more: https://t.co/WKNPWKfNmT
📌 WhatsApp 0-click remote code execution (RCE) vulnerability affecting Apple’s iOS, macOS, and iPadOS platforms, detailed with a proof of concept demonstration.
📌 The attack chain exploits two distinct vulnerabilities, identified as CVE-2025-55177 and CVE-2025-43300, to compromise a target device without requiring user interaction.
📌 The exploit, demonstrated in a proof-of-concept (PoC) is initiated by sending a specially crafted malicious (DNG) image file to a victim’s WhatsApp account.
📌 As a “zero-click” attack, the vulnerability is triggered automatically upon receipt of the malicious message, making it particularly dangerous as victims have no opportunity to prevent the compromise.
#cybersecuritynews #whatsapp
🚨 Notepad++ DLL Hijacking Vulnerability Let Attackers Execute Malicious Code
Read more: https://t.co/LH2ZKteD6p
A newly discovered DLL hijacking vulnerability in Notepad++, the popular source code editor, could allow attackers to execute arbitrary code on a victim's machine.
Tracked as CVE-2025-56383, the flaw exists in version 8.8.3 and potentially affects all installed versions of the software, putting millions of users at risk.
The vulnerability enables a local attacker to achieve code execution by planting a malicious DLL file in a location where the application will load it.
This type of attack undermines the integrity of the application and can be used to establish persistence or escalate privileges on a compromised system.
#cybersecuritynews #vulnerability
💥 Remote Code Execution in GitHub Copilot (CVE-2025-53773)
👉 Prompt injection exploit writes to Copilot config file and puts it into YOLO mode, then we get immediate RCE
🔥 Bypasses all user approvals
🛡️ Patch is out today. Update before someone else does it for you
🚨 Vulnerabilidad de día cero en Microsoft SQL Server expone datos confidenciales en la red
⚠️CVE-2025-49719
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
https://t.co/Gg5HCn08bn
Havoc C2 with AV/EDR Bypass Methods in 2024 (Part 1) : https://t.co/dwiyzcRklo
Part 2 : https://t.co/pXYvSvdFIt
EDR Evasion: A New Technique Using Hardware Breakpoints : https://t.co/A9TkAIirDI
Feberis Pro: As one of first, I had and an opportunity to test new 4-in-1 Expansion Board for Flipper Zero made by @SAPSAN_CYBERSEC
Here is my summary: https://t.co/mct1Z3HdNR