Skip to content
NGINX CVE-2026-42945 Exploited in the Wild, Causing Worker Crashes and Possible RCE

NGINX CVE-2026-42945 Exploited in the Wild, Causing Worker Crashes and Possible RCE

Ravie LakshmananMay 17, 2026Server Security / Vulnerability A newly disclosed security flaw impacting NGINX Plus and NGINX Open has come under active exploitation in the wild, days after its public disclosure, according to VulnCheck. The… 

This  lifetime office suite puts docs, spreadsheets, slides, and email in one place

This $25 lifetime office suite puts docs, spreadsheets, slides, and email in one place

TL;DR: Handle documents, spreadsheets, presentations, and email in one place with MobiOffice Premium for a lifetime price of $24.97 (MSRP $119.97) for a limited time. Switching between multiple apps just to finish basic work gets old fast —… 

Grafana GitHub Token Breach Led to Codebase Download and Extortion Attempt

Grafana GitHub Token Breach Led to Codebase Download and Extortion Attempt

Ravie LakshmananMay 17, 2026Data Breach / Cybercrime Grafana has disclosed that an “unauthorized party” obtained a token that granted them the ability to access the company’s GitHub environment and download its codebase. “Our investigation has… 

Funnel Builder Flaw Under Active Exploitation Enables WooCommerce Checkout Skimming

Funnel Builder Flaw Under Active Exploitation Enables WooCommerce Checkout Skimming

Ravie LakshmananMay 16, 2026Vulnerability / Website Security A critical security vulnerability impacting the Funnel Builder plugin for WordPress has come under active exploitation in the wild to inject malicious JavaScript code into WooCommerce checkout pages… 

This  project management tool keeps tasks, docs, and sprints in one place for up to 10 users for life

This $99 project management tool keeps tasks, docs, and sprints in one place for up to 10 users for life

TL;DR: Lyra Project Management is an all-in-one team workspace with unlimited projects and lifetime access for up to 10 users, now only $99 (reg. $1,054). Most project management setups involve at least two or three tools that… 

Turla Turns Kazuar Backdoor Into Modular P2P Botnet for Persistent Access

Turla Turns Kazuar Backdoor Into Modular P2P Botnet for Persistent Access

Ravie LakshmananMay 15, 2026Botnet / Threat Intelligence The Russian state-sponsored hacking group known as Turla has transformed its custom backdoor Kazuar into a modular peer-to-peer (P2P) botnet that’s engineered for stealth and persistent access to…