CrackArmor: Nine AppArmor Flaws Let Local Users Escalate to Root — What Organizations Need to Know

CrackArmor: Nine AppArmor Flaws Let Local Users Escalate to Root — What Organizations Need to Know

AppArmor, a widely deployed Linux Mandatory Access Control (MAC) framework, is at the center of a set of serious vulnerabilities that researchers have dubbed “CrackArmor.” Disclosed on March 12, 2026 by the Qualys Threat Research Unit (TRU), the collection of flaws affects AppArmor’s implementation as a Linux Security Module (LSM) and has been present in the upstream kernel since around

March 10, 2026 — KB5079473 for Windows 11 (OS Builds 26200.8037 and 26100.8037)

March 10, 2026 — KB5079473 for Windows 11 (OS Builds 26200.8037 and 26100.8037)

Microsoft released KB5079473 on March 10, 2026. The update is identified by the OS builds 26200.8037 and 26100.8037 and appears on Microsoft’s support site as a cumulative update for Windows 11. What the entry shows KB identifier and date: The article is titled “March 10, 2026 — KB5079473 (OS Builds 26200.8037 and 26100.8037)” and is published on Microsoft’s official support

Microsoft Active Directory Domain Services Vulnerability (CVE-2026-25177) — What Administrators Need to Know

Microsoft Active Directory Domain Services Vulnerability (CVE-2026-25177) — What Administrators Need to Know

In early March 2026, Microsoft released an important security update addressing a high-severity vulnerability in Active Directory Domain Services (AD DS) tracked as CVE-2026-25177. The flaw received a CVSS score of 8.8 and can allow an authenticated network actor with limited permissions to escalate privileges to full SYSTEM on a targeted domain controller. Microsoft and third-party researchers coordinated fixes and

Introducing the Azure Skills Plugin: Practical Azure Workflows for Coding Agents

Introducing the Azure Skills Plugin: Practical Azure Workflows for Coding Agents

The Azure Skills Plugin brings curated Azure expertise and an execution layer together so coding agents can do more than offer generic guidance. Rather than just suggesting commands or linking to documentation, the plugin packages decision logic (skills) and structured tools (MCP servers) so agents can reason about workflows and, when appropriate, run actions against real Azure resources. What the

Zero-Day on the Market: $220K Exploit Targets Windows Remote Desktop Services (CVE-2026-21533)

Zero-Day on the Market: $220K Exploit Targets Windows Remote Desktop Services (CVE-2026-21533)

Remote Desktop Services (RDS) has come under renewed scrutiny after reports that a working exploit for CVE-2026-21533 — an elevation-of-privilege vulnerability in Windows Remote Desktop Services — was listed for sale on a dark web forum for $220,000. The listing and surrounding reporting are factual and straightforward: a recently created account advertised a claimed zero-day exploit, observers recorded the posting,

VoidLink Malware Framework: Key Points on How It Targets Kubernetes and AI Workloads

VoidLink Malware Framework: Key Points on How It Targets Kubernetes and AI Workloads

Title: VoidLink Malware Framework: Key Points on How It Targets Kubernetes and AI Workloads Overview VoidLink is a modular malware framework observed targeting cloud-native environments, with emphasis on Kubernetes clusters and AI infrastructure. Goal: persistence, lateral movement, data exfiltration, and abuse of compute (e.g., model theft, crypto-mining, or training/serving misuse). Modularity enables plugins for container escape, kubeconfig harvesting, and targeted