<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/">
  <channel>
    <title>Zero-Day on Tenu Tech Brief</title>
    <link>https://cluster-site.onrender.com/tags/zero-day/</link>
    <description>Recent content in Zero-Day on Tenu Tech Brief</description>
    <generator>Hugo -- 0.146.0</generator>
    <language>en-us</language>
    <lastBuildDate>Wed, 25 Feb 2026 11:33:08 +0000</lastBuildDate>
    <atom:link href="https://cluster-site.onrender.com/tags/zero-day/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>US sanctions Russian broker for buying stolen zero-day exploits</title>
      <link>https://cluster-site.onrender.com/posts/us-sanctions-russian-broker-for-buying-stolen-zero-day-exploits/</link>
      <pubDate>Wed, 25 Feb 2026 10:31:13 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/us-sanctions-russian-broker-for-buying-stolen-zero-day-exploits/</guid>
      <description>• US sanctions Russian broker for buying stolen zero-day exploits February 25, 2026 05:31 AM 0 The U.S. • Treasury Department has sanctioned a Russian exploit broker who bought sto</description>
    </item>
    <item>
      <title>ZDI-26-120: GIMP ICNS File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability</title>
      <link>https://cluster-site.onrender.com/posts/zdi-26-120-gimp-icns-file-parsing-heap-based-buffer-overflow-remote-code-execution-vulnerability/</link>
      <pubDate>Thu, 19 Feb 2026 06:00:00 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/zdi-26-120-gimp-icns-file-parsing-heap-based-buffer-overflow-remote-code-execution-vulnerability/</guid>
      <description>• Remote attackers can execute arbitrary code via GIMP ICNS file parsing. • Exploit requires user interaction: opening malicious file or visiting malicious page. • Vulnerability du</description>
    </item>
    <item>
      <title>ZDI-26-107: Autodesk AutoCAD MODEL File Out-Of-Bounds Write Remote Code Execution Vulnerability</title>
      <link>https://cluster-site.onrender.com/posts/zdi-26-107-autodesk-autocad-model-file-out-of-bounds-write-remote-code-execution-vulnerability/</link>
      <pubDate>Wed, 18 Feb 2026 06:00:00 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/zdi-26-107-autodesk-autocad-model-file-out-of-bounds-write-remote-code-execution-vulnerability/</guid>
      <description>• Remote code execution via out-of-bounds write in AutoCAD MODEL file parsing. • Requires user to open malicious file or visit malicious page. • Exploit writes past allocated buffe</description>
    </item>
    <item>
      <title>Singapore &amp;amp; Its 4 Major Telcos Fend Off Chinese Hackers</title>
      <link>https://cluster-site.onrender.com/posts/singapore-amp-its-4-major-telcos-fend-off-chinese-hackers/</link>
      <pubDate>Wed, 18 Feb 2026 01:00:00 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/singapore-amp-its-4-major-telcos-fend-off-chinese-hackers/</guid>
      <description>• Singapore&amp;rsquo;s CSA and four telcos launched &amp;lsquo;Cyber Guardian&amp;rsquo; to counter China-linked UNC3886.\n• 100+ incident responders coordinated across government and M1, Singtel, StarHub, Sim</description>
    </item>
    <item>
      <title>Update Chrome now: Zero-day bug allows code execution via malicious webpages</title>
      <link>https://cluster-site.onrender.com/posts/update-chrome-now-zero-day-bug-allows-code-execution-via-malicious-webpages/</link>
      <pubDate>Tue, 17 Feb 2026 12:33:13 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/update-chrome-now-zero-day-bug-allows-code-execution-via-malicious-webpages/</guid>
      <description>• Update Chrome now: Zero-day bug allows code execution via malicious webpages Google hasissueda patch for a high‑severity Chrome zero‑day, tracked asCVE‑2026‑2441, a memory bug in</description>
    </item>
    <item>
      <title>New Chrome Zero-Day (CVE-2026-2441) Under Active Attack - Patch Released</title>
      <link>https://cluster-site.onrender.com/posts/new-chrome-zero-day-cve-2026-2441-under-active-attack-patch-released/</link>
      <pubDate>Mon, 16 Feb 2026 06:38:00 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/new-chrome-zero-day-cve-2026-2441-under-active-attack-patch-released/</guid>
      <description>• New Chrome Zero-Day (CVE-2026-2441) Under Active Attack - Patch Released Google on Friday released security updates for its Chrome browser to address a security flaw that it said</description>
    </item>
    <item>
      <title>Ivanti EPMM Zero-Day Bugs Spark Exploit Frenzy - Again</title>
      <link>https://cluster-site.onrender.com/posts/ivanti-epmm-zero-day-bugs-spark-exploit-frenzy-again/</link>
      <pubDate>Thu, 12 Feb 2026 22:05:32 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/ivanti-epmm-zero-day-bugs-spark-exploit-frenzy-again/</guid>
      <description>• Endpoint Security Cyberattacks &amp;amp; Data Breaches Vulnerabilities &amp;amp; Threats Perimeter News Ivanti EPMM Zero-Day Bugs Spark Exploit Frenzy - Again It&amp;rsquo;s time to phase out the &amp;lsquo;patch a</description>
    </item>
    <item>
      <title>CVE-2025-6978: Arbitrary Code Execution in the Arista NG Firewall</title>
      <link>https://cluster-site.onrender.com/posts/cve-2025-6978-arbitrary-code-execution-in-the-arista-ng-firewall/</link>
      <pubDate>Thu, 05 Feb 2026 16:45:49 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/cve-2025-6978-arbitrary-code-execution-in-the-arista-ng-firewall/</guid>
      <description>• CVE-2025-6978 exposes command injection in Arista NG Firewall&amp;rsquo;s diagnostics component. • Remote authenticated attackers can craft HTTP requests to execute arbitrary commands as r</description>
    </item>
    <item>
      <title>Microsoft releases update to address zero-day vulnerability in Microsoft Office</title>
      <link>https://cluster-site.onrender.com/posts/microsoft-releases-update-to-address-zero-day-vulnerability-in-microsoft-office/</link>
      <pubDate>Thu, 29 Jan 2026 14:43:54 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/microsoft-releases-update-to-address-zero-day-vulnerability-in-microsoft-office/</guid>
      <description>• Microsoft releases update to address zero-day vulnerability in Microsoft Office Microsoft has published three out-of-band (OOB) updates so far in January 2026. • One of these upd</description>
    </item>
    <item>
      <title>Pwn2Own Automotive 2026 - Day One Results</title>
      <link>https://cluster-site.onrender.com/posts/pwn2own-automotive-2026-day-one-results/</link>
      <pubDate>Wed, 21 Jan 2026 04:03:33 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/pwn2own-automotive-2026-day-one-results/</guid>
      <description>• 76 unique 0‑day vulnerabilities discovered across three days, totaling $1,047,000 in rewards. • Fuzzware.io clinched Master of Pwn with 28 points, outperforming rivals like Team</description>
    </item>
    <item>
      <title>Sanctioned but Still Spying: Intellexa&#39;s Prolific Zero-Day Exploits Continue</title>
      <link>https://cluster-site.onrender.com/posts/sanctioned-but-still-spying-intellexas-prolific-zero-day-exploits-continue/</link>
      <pubDate>Wed, 03 Dec 2025 14:00:00 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/sanctioned-but-still-spying-intellexas-prolific-zero-day-exploits-continue/</guid>
      <description>• Sanctioned but Still Spying: Intellexa&amp;rsquo;s Prolific Zero-Day Exploits Continue Google Threat Intelligence Group Google Threat Intelligence Visibility and context on the threats tha</description>
    </item>
  </channel>
</rss>
