Latest Cybersecurity News and IT Security Insights
Stay informed about emerging threats, practical protection strategies and innovations in vulnerability management. Benefit from the expertise of the Greenbone specialists and strengthen your IT security.
Subscribe to the Newsletter Now



CVE-2026-8037 Now Actively Exploited! Unauthenticated RCE in Progress Kemp LoadMaster and ECS Connection Manager
BlogCVE-2026-8037 (CVSS 9.8, EPSS >= 100th pctl) is a critical, unauthenticated remote code execution (RCE) vulnerability in Progress Kemp LoadMaster and Progress ECS Connection Manager. eSentire reported that exploitation attempts began on June 29th, 2026, and the flaw has now been added to CISA’s Known Exploited Vulnerabilities (KEV) list. watchTowr Labs published a separate technical […]
Patch Now! Two Actively Exploited CVEs Affecting VMware vCenter Server and More
BlogUpdate CVE-2026-59310 has now been added to CISA’s KEV catalog. Public proof-of-concept exploit code is also available, further increasing the risk of ongoing attacks. Broadcom published VMSA-2026-0006 on July 29th, 2026, to address five vulnerabilities affecting VMware ESX, VMware vCenter Server, VMware Workstation, and VMware Fusion. The highest-risk issues are CVE-2026-59309 (CVSS 9.8) and CVE-2026-59310 […]
Lazarus Combines Social Engineering and CVE-2026-68820 Windows Privilege-Escalation Flaw for Espionage
BlogOperation Dream Job is a long-running cyber attack campaign operated by the Lazarus Group [1][2], a prolific North Korean APT threat actor. The group is known for targeting defense, aerospace, and aviation organizations across Europe, Asia, and South America since at least 2016, potentially as far back as 2009 or earlier. Public reporting has often […]