Passionate AI & Cloud Evangelist - Creating Meaningful & Disruptive Platforms | Ex Microsoft - Google - Oracle | Change The World With Me - [email protected]
‼️ ALERT - Exchange admins should review this now.
CVE-2026-96940 can allow an authenticated attacker to access other users’ mailboxes and read emails and attachments within the same organization.
Microsoft has issued out-of-band fixes.
Read: https://t.co/ZK1pUTi59Y
🚨 Citrix NetScaler SAML 0-Day Vulnerability Actively Exploited in Attacks
Details: https://t.co/RBBQpogqT7
Citrix has released emergency security updates for a NetScaler SAML zero-day vulnerability that attackers are actively exploiting.
Tracked as CVE-2026-88779, the flaw affects customer-managed NetScaler ADC and NetScaler Gateway appliances and can cause denial of service, disrupting access to services that depend on these systems.
The vulnerability carries a CVSS v4.0 score of 8.7 and affects appliances configured as a SAML service provider or identity provider.
Citrix describes it as a memory overflow. Citrix confirmed targeted attacks against unmitigated deployments. Repeated exploitation can keep affected services unavailable.
#cybersecuritynews
AWS @awscloud Loom @AWSOpen - CRITICAL 10.0 - Unauthenticated super-admin (auth bypass) - CVE-2026-103956.
Big one for my cloud-native friends and lovers!
Exploit:
https://t.co/Rs4yjUeHjC
Patched @NetScaler for CTX697096 and use SAML? Patch again.
CVE-2026-88779 is a separate bulletin, CTX697174 (CVSS 8.7), not part of CTX697096. It's the SAML attack crashing patched NetScalers since 2 Oct. @citrix sees targeted attacks.
Affected: "add authentication samlAction" or "samlIdPProfile" in ns.conf
Fixed: 14.1-73.41, 13.1-64.28, 14.1-73.41 FIPS, 13.1-37.282
Interim: Global Deny List (NetScaler Console) or Citrix Support's responder policy, -type AAA_REQUEST on every Gateway/AAA vserver
Free checker v1.12 covers both bulletins:
• CVE-2026-88779 on every run
• SAML policy coverage per vserver
• "may have run" window ends at the fix
• 98 IPs, 16 domains, 34 hashes
Thanks to @GothamTG , @BeazleySecurity , @Deyda84 , @citrixguyblog , @rjfaulknerjr@FerroqueSystems, @bishopfox , @watchtowrcyber and the community 🙏
#NetScaler #Citrix #CitrixNetScaler #NetScalerGateway #CVE202688779 #CVE202688771 #CTX697174 #CTX697096 #CyberSecurity #InfoSec #IncidentResponse #ThreatHunting
Vercel Confirms KVM Zero-Day VM Escape, Awards Researcher $50,000
Details: https://t.co/mlKIhlnXwj
Vercel has confirmed a KVM zero-day vulnerability after security researcher Paulos Yibelo reported a full virtual machine escape that, he says, allows code inside a guest to gain root access on the host.
The discovery came through the Vercel Sandbox bug bounty program, raising concerns about a security boundary used to contain untrusted workloads and AI agents. A bounty notification shared with the announcement shows Vercel awarding Yibelo $50,000, the program’s maximum payment for one report.
The message describes the highest award as reserved for vulnerabilities that let an attacker read or change another Vercel customer's information.
#cybersecurityawareness #cybersecuritynews
@jeredreed@greendragonhq I know it’s tough processing those big emotions little buddy. Maybe go outside and get some fresh air. Ask someone for a hug. I’d suggest reading a book, but…. 🤣
We’ve confirmed a KVM 0day through our Vercel Sandbox bounty program. Affecting the industry’s gold standard solution for Linux virtualization.
2026 is wild! Thankful to Paulos and other researchers helping us make the most secure sandbox for agents. Full writeup coming.
We have a new security update: Understanding and addressing CVE-2026-88779 in Citrix NetScaler ADC and Citrix NetScaler Gateway: https://t.co/rgWKcHqP6F