search
The Patch
Trends
- 1Cruise Stocks Have Hit Choppy Waters▼Cruise Stocks Have Hit Choppy Waters https://www.wsj.com/finance/stocks/cruise-stocks-have-hit-choppy-waters-ee18ece7?mo
The Wall Street Journal reports that shares of major cruise operators are under pressure, with cruise stocks facing a rough patch in the market. The piece examines what is weighing on the sector, from shifting consumer spending concerns to broader market volatility. Investors in companies like Carnival, Royal Caribbean and Norwegian are watching closely as the industry's recent recovery momentum shows signs of strain.
- 2Melting Norwegian ice reveals 5,000-year-old arrow▼5,000-year-old arrow emerges as Norway’s melting mountain ice reveals older archaeological finds https:// archaeologymag
A 5,000-year-old arrow has emerged from melting mountain ice in Norway, part of a growing series of archaeological discoveries being exposed as glaciers and ice patches retreat. Finds preserved in ice for millennia are now surfacing at increasing pace, with researchers noting the thaw is revealing older artifacts than previously recorded. Commenters highlight both the scientific value of the discoveries and the climate change driving them.
- 3Cloudflare Patches Critical Flaw Exposing Container Data▼Cloudflare Fixes Critical Flaw Exposing Customers’ Container Data
Cloudflare has fixed a critical security vulnerability that could have exposed customers' container data. The flaw, now patched, raised concerns about isolation between customer workloads in cloud environments. Security professionals are sharing the disclosure and debating how such cross-tenant exposure risks should be handled and reported across the industry.
- 4Critical Zero-Day Vulnerabilities in Citrix NetScaler Under Active Exploitation●(tenable.com) Critical Zero-Day Vulnerabilities in Citrix NetScaler Under Active Exploitation: FAQ and Analysis In brief
Security firm Tenable has published an FAQ and analysis on two reported zero-day vulnerabilities in Citrix NetScaler appliances that are allegedly being actively exploited in the wild. NetScaler devices are widely used by enterprises for application delivery and remote access, making these flaws a serious concern. Security teams are being urged to review the guidance, check whether their appliances are affected, and apply mitigations or patches as they become available.
- 5Apple Products Hit by Remote Code Execution Vulnerability●Apple Products Remote Code Execution Vulnerability
Security authorities have issued an alert over a remote code execution vulnerability affecting Apple products, warning users that attackers could potentially run malicious code on affected devices. Apple is expected to address the flaw through a software update, and users are advised to install patches promptly and review official advisories for affected models and versions.
- 6CISA Warns of Active Exploitation of Critical Citrix NetScaler Flaws●CISA Says Attackers Are Exploiting Two Critical Citrix NetScaler Flaws Globally
The US Cybersecurity and Infrastructure Security Agency says attackers are actively exploiting two critical vulnerabilities in Citrix NetScaler devices worldwide. The flaws affect NetScaler ADC and Gateway products, which are widely used by organisations to manage and secure application traffic. Security teams are being urged to patch immediately, as exploited NetScaler vulnerabilities have historically enabled large-scale breaches of governments and businesses.
- 7ShinyHunters hackers expanded attacks on Oracle PeopleSoft, Google says▼ShinyHunters hackers expanded attacks on Oracle's PeopleSoft, Google says
Google researchers say the hacking group ShinyHunters has broadened its attacks targeting Oracle's PeopleSoft software. The group, previously known for large-scale data theft campaigns, is reportedly exploiting vulnerabilities to compromise enterprise systems. The finding raises concerns for organizations running PeopleSoft, with security teams urged to patch systems and review exposure to the campaign.
- 8Citrix urges immediate NetScaler upgrades amid exploitation attempts●Citrix urges immediate upgrades of NetScaler amid widespread exploitation attempts
Citrix is warning customers to upgrade NetScaler products immediately, citing widespread exploitation attempts against the devices. NetScaler appliances are widely used by enterprises for application delivery and secure remote access, making them a frequent target for attackers. Administrators are being urged to patch as a priority while security teams assess whether their systems have been targeted.
- 9Cloudflare patches cross-tenant flaw in Containers product●Cloudflare fixes Containers cross-tenant flaw exposing customer data
Cloudflare has fixed a cross-tenant vulnerability in its Containers service that could have exposed customer data between tenants. The flaw, reported by BleepingComputer, was patched after discovery, and the company says the issue affected isolation boundaries in the product. Security researchers and customers are watching the disclosure closely, as cross-tenant bugs in major cloud providers raise concerns about data separation and trust in shared infrastructure.
- 10Apple patches CoreGraphics flaw exploited in targeted attacks●🤖 Apple patched CVE-2026-86950, an out-of-bounds write in CoreGraphics affecting older iOS/iPadOS/macOS versions. Proces
Apple has released patches for CVE-2026-86950, an out-of-bounds write vulnerability in CoreGraphics affecting older versions of iOS, iPadOS and macOS. Processing a maliciously crafted file could allow arbitrary code execution. Apple says the flaw may already have been exploited in targeted attacks, prompting users of older devices to update promptly.
- 11ShinyHunters hackers expanded attacks on Oracle's PeopleSoft, Google says▼ShinyHunters hackers expanded attacks on Oracle’s PeopleSoft, Google says
Google researchers say the hacking group ShinyHunters has broadened its attacks targeting Oracle's PeopleSoft software. The group, known for large-scale data theft and extortion, is reportedly exploiting vulnerabilities to breach organizations using the enterprise platform. The findings raise concerns for companies running PeopleSoft, as security teams are urged to patch systems and monitor for intrusion attempts linked to the campaign.
- 12IT teams pull Citrix NetScaler offline over zero-day reports●Enterprise IT teams are pulling Citrix NetScaler hardware offline after reports surfaced of two unpatched zero-day vulne
Enterprise IT teams are taking Citrix NetScaler hardware offline following reports of two unpatched zero-day vulnerabilities. Security researchers say the flaws are being actively exploited for remote code execution in the wild, though Citrix has not yet confirmed them or released an official patch. Administrators are choosing to isolate the hardware rather than wait, and security communities are urging others to assess exposure immediately.
- 13Organizations urged to take Citrix NetScaler appliances offline▼🚨 Citrix NetScaler emergency shutdowns Organizations are reportedly being advised to take Citrix NetScaler appliances of
Security experts are warning organizations to take Citrix NetScaler appliances offline amid reports of two undisclosed zero-day vulnerabilities. There are no public CVEs, no patch is available yet, and only limited indicators of compromise have been shared. The affected scope is not fully clear, but the emergency guidance suggests defenders consider the risk serious enough to warrant disconnecting the devices until fixes arrive.
- 14
CD Projekt's long-awaited next-gen upgrade for The Witcher 3: Wild Hunt is launching, arriving as a free patch of roughly 45GB on PS5, with release times now confirmed. The update brings improved visuals and performance to consoles and PC at no extra cost for existing owners. Gamers are sharing download sizes, rollout schedules and first impressions as it goes live across regions.
- 15Niche AI tools flagged as cybersecurity risk for infrastructure▼Niche AI tools pose major cybersecurity risk to infrastructure operators
Cybersecurity Dive reports that niche AI tools pose a major cybersecurity risk to infrastructure operators. The article suggests that lesser-known, specialized AI applications used by operators of critical systems may introduce vulnerabilities that are not widely tracked or patched, creating exposure for energy, water and other essential services.
- 16
Blizzard released a round of hotfixes for World of Warcraft on October 1, 2026. The patch notes cover the usual mix of bug fixes and balance adjustments applied to the live game without requiring a client download. Players are checking the notes to see which classes, dungeons or encounters were touched and whether their specs or favorite content was affected in the current season.
- 17
CD Projekt Red's next-generation update for The Witcher 3: Wild Hunt is rolling out, with release times now confirmed. The PlayStation 5 version comes as a free patch weighing around 45GB, bringing improved visuals and performance. Players are checking download sizes and unlock times ahead of release, with discussion focusing on whether the upgrade justifies the large install.
- 18Apple patches iPhone zero-day flaw exploited in attacks●How # secure is the # iphone ? https://www. bleepingcomputer.com/news/secu rity/apple-patches-coregraphics-zero-day-flaw
Apple has released an emergency security patch fixing a zero-day vulnerability in CoreGraphics that was actively exploited in real-world attacks. The flaw affects iPhones and other Apple devices, renewing debate about how secure iOS really is. Commenters note that no system is 100 percent safe and urge users to update their devices promptly.
- 19Citrix NetScaler Users Urged to Take Appliances Offline Amid Zero-Day Attacks▼Citrix NetScaler Appliance Users Get Shutdown Orders Over Unpatched Zero-Day Exploits Citrix NetScaler ADC and Gateway a
Citrix NetScaler ADC and Gateway appliances are under active attack through two unpatched remote code execution vulnerabilities. The Dutch cybersecurity agency NCSC and security firm watchTowr have advised organisations to take affected appliances offline, as no patches are yet available. Security teams worldwide are scrambling to assess exposure and mitigate the risk of compromise.
- 20
Mark Carney is being discussed in Canada in connection with oil pipeline policy, a signature issue for his government. Commentary in outlets such as The Globe and Mail argues this was the week Canada 'stopped shooting its oil patch in the foot', reflecting a perceived shift toward supporting energy infrastructure. Debate continues over how far Ottawa will go in backing new pipeline projects.
- 21Apple rolls out iOS 27.0.1 update for iPhone▼Apple releases iOS 27.0.1 for iPhone, here’s what’s new
Apple has released iOS 27.0.1, a new software update for iPhone users. The point release follows iOS 27 and is expected to bring bug fixes and security patches rather than major new features. Details on the full changelog remain limited, and iPhone owners are being prompted to install the update through Settings.
- 22Citrix confirms two actively exploited NetScaler zero-day flaws●Two Citrix NetScaler zero-day RCE flaws are under active exploitation. Citrix confirmed CVE-2026-88771 and CVE-2026-8877
Citrix has confirmed two zero-day remote code execution vulnerabilities in its NetScaler application delivery products, tracked as CVE-2026-88771 and CVE-2026-88772, both under active exploitation. The company has released patches, and security researchers are urging administrators to update internet-facing NetScaler and VPN appliances immediately, warning that unpatched systems could allow attackers to run code remotely.
- 23Two Unpatched NetScaler Flaws Under Active Exploitation, Researchers Warn▼Third NetScaler emergency since June. watchTowr says two unpatched remote code execution flaws in NetScaler ADC and Gate
Security firm watchTowr reports two unpatched remote code execution vulnerabilities in Citrix NetScaler ADC and Gateway that are being actively exploited. The flaws surfaced during forensic work, marking the third NetScaler emergency since June. Citrix has issued no bulletin, CVEs, or fix yet, with patches expected early next week. Some administrators are already applying workarounds rather than waiting.
- 24Clop ransomware gang relocates servers after exploiting Grav CMS flaw▼Clop ransomware gang moves to new server after Grav CMS vulnerability exploited
The Clop ransomware gang has moved to new server infrastructure after exploiting a vulnerability in Grav CMS, the open-source flat-file content management system. The extortion group, known for large-scale data-theft campaigns against corporations and government agencies, is continuing operations despite the disruption. Security teams are being urged to patch Grav CMS installations and review whether their systems were targeted.
- 25Will Discontinued EVs Keep Getting Software Updates?▼Will Discontinued EVs Continue To Get Software Support?
A question circulating among electric vehicle owners: when a carmaker discontinues an EV model, will it continue to receive software updates and support? The concern is growing as several automakers retire older electric models, leaving owners uncertain whether features, security patches and performance improvements will keep coming to cars they already bought.
- 26ESET survey finds 49% of UK small businesses breached●ESET: 49% of UK SMBs Breached, Experts Detail Fixes [2026]
ESET reports that 49% of UK small and medium-sized businesses have suffered a security breach, with cybersecurity experts outlining practical measures firms can take to reduce risk. The findings highlight persistent gaps in SMB defences, and commentary is focused on affordable fixes such as staff training, patching and multi-factor authentication that smaller firms can adopt without large budgets.
- 27Citrix NetScaler admins urged to take appliances offline over new zero-days●Citrix NetScaler admins are being told to shut down appliances amid reports of two new zero-days https:// lemmy.world/po
Security administrators running Citrix NetScaler appliances are being told to shut the devices down following reports of two newly discovered zero-day vulnerabilities. The warnings, circulating among security professionals, reflect fears that attackers are actively exploiting the flaws before patches are available, leaving defenders with few options beyond taking affected appliances offline until fixes are released.
- 28Several vulnerabilities discovered in the Linux kernel●Several vulnerabilities have been discovered in the Linux kernel
Several security vulnerabilities have been discovered in the Linux kernel, prompting attention from developers and system administrators. Details on affected versions, severity, and available patches are being circulated, and maintainers are expected to issue fixes. Users running Linux systems are advised to follow distribution security updates and apply patches as they become available.
- 29Check Point VPN flaw under active attack days after patch●Check Point confirms active attacks on CVE-2026-85102 began three days after patches dropped. CISA sets federal deadline
Check Point has confirmed that attackers began exploiting CVE-2026-85102, a vulnerability in its VPN products, just three days after patches were released. CISA has added the flaw to its exploited-vulnerabilities catalog and given federal agencies a September 25 deadline to apply the fix. Security teams are urged to patch immediately as exploitation continues.
- 30Citrix NetScaler zero-days under active exploitation●Two Citrix NetScaler zero-day flaws enabling remote code execution are reportedly under active exploitation. No CVE or p
Two zero-day vulnerabilities in Citrix NetScaler appliances, both allowing remote code execution, are reportedly being actively exploited by attackers. No CVE identifiers or official patches have been released yet. Administrators running NetScaler as VPN or application delivery controllers are urged to apply interim mitigation steps and watch for an official Citrix advisory.
- 31
Sweden's red-green bloc is in crisis, and Expressen reports that secret meetings have been held behind the scenes as parties scramble to manage the situation. Sources describe the talks as important, suggesting efforts to patch up internal divisions. The political drama is drawing wide attention in Sweden as the left bloc's cooperation faces strain.
- 32iPhone users report bugs after iOS 27 update▼Crashing UI, drained battery life, and random restarts: iPhone users report bugs after updating to iOS 27
iPhone users who updated to iOS 27 are reporting a wave of problems, including a crashing user interface, noticeably drained battery life, and random restarts. Complaints have surfaced across tech media and user forums shortly after the update rolled out, with affected owners describing degraded everyday performance. The reports raise questions about the stability of Apple's latest iOS release and whether a patch is imminent.
- 33Pennsylvania bill would force publishers to keep dead games playable▼Proposed Pennsylvania law targets publishers that kill digital games — publishers must provide offline mode, an independent server patch, or a 25% minimum refund
A proposed law in Pennsylvania would require game publishers that shut down an online game's servers to either provide an offline mode, release an independent server patch so players can host the game themselves, or issue a refund of at least 25%. The bill targets the growing problem of digital games becoming unplayable when publishers end support, and is being discussed as a potential model for consumer protection in the games industry.
- 34Apple releases iOS 26.7.1 with security fixes for iPhone▼iOS 26.7.1 available now for iPhone with security fixes
Apple has rolled out iOS 26.7.1 to iPhones, an update focused on security fixes rather than new features. Users are advised to install it to patch vulnerabilities. The release comes as many iPhone owners continue adjusting to the broader iOS 26 software generation.
- 3576ers Land One of the NBA's Richest Jersey Patch Deals▼Thanks LeBron: 76ers Sign One of NBA’s Richest Jersey Patch Deals
The Philadelphia 76ers have signed one of the richest jersey patch sponsorship deals in the NBA. Reports tie the milestone to LeBron James, whose star power and market impact helped drive up the value of jersey advertising across the league. The agreement places Philadelphia among the top franchises for patch revenue in basketball.
- 36Elementor CSRF Flaw Could Let Attackers Hijack WordPress Sites▼Elementor CSRF Flaw Lets Attackers Take Over Sites After Admin Clicks Crafted Link
A cross-site request forgery vulnerability has been reported in Elementor, the widely used WordPress page builder plugin. The flaw could allow attackers to take over a website if a logged-in administrator clicks on a crafted link, triggering unauthorized actions with the admin's privileges. Site owners are being urged to update the plugin promptly and remain cautious of unsolicited links.
- 37
Deadlock, Valve's in-development hero shooter and MOBA hybrid, has received a substantial new update, bringing balance changes, adjustments and new content to the game's ongoing public testing phase. Players are discussing the patch details and what the changes mean for the game's evolving meta as Valve continues to shape the title ahead of a wider release.
- 38Citrix NetScaler flaws actively exploited, thousands exposed●🤖 Citrix NetScaler ADC/Gateway: CVE-2026-88771 + CVE-2026-88772 (unauth RCE) exploited in the wild. The first hits defau
Two unauthenticated remote code execution vulnerabilities, CVE-2026-88771 and CVE-2026-88772, are being exploited in the wild against Citrix NetScaler ADC and Gateway appliances. The first affects default configurations, while the second requires DTLS, which is enabled by default on VPN virtual servers. Patches are available, the flaws have been added to CISA's Known Exploited Vulnerabilities catalog with a federal patching deadline of September 30, and Shadowserver reports over 23,000 exposed instances online.
- 39Planescape: Torment Enhanced Edition gets UI scaling and cloud saving upgrades●Planescape: Torment: Enhanced Edition gets upgrades to improve UI Scaling, Cloud Saving and more https://www. gamingonli
Planescape: Torment: Enhanced Edition has received a new round of updates, improving UI scaling and adding cloud saving alongside other fixes. The classic RPG's enhanced version is maintained with native Linux support, and the latest patch is being welcomed by players who want the decades-old title to run cleanly on modern hardware and displays.
- 40Cloudflare fixes cross-tenant data exposure in Containers sandboxes●🤖 Cloudflare Containers/Sandboxes cross-tenant data exposure: dm-thin storage pools ran with skip_block_zeroing, so a Wo
A cross-tenant data exposure flaw in Cloudflare's Containers and Sandboxes has been disclosed and fixed. The issue stemmed from dm-thin storage pools running with skip_block_zeroing enabled, meaning newly written 4 KiB pages into unmapped 64 KiB blocks could leave residual data on raw devices. A Workers Paid tenant could reportedly read up to 60 KiB of data left behind by a previous tenant from /dev/vdc. Cloudflare has patched the issue, and security communities are discussing the implications of shared-storage isolation failures in multi-tenant cloud platforms.
Repos
- feder-cr/dots Open-source dots for the web: an AI agent with its own browser, one that does not get blocked.
- angusdevgo/Seep-Reverse-Lab Agent-Native multi-platform reverse engineering and CWE-602 client-side authorization audit workbench.
- newliver666/apk-reverse Suitable for Android APK reverse engineering analysis
- block/buzz A hive mind communication platform
- WordPress/wordpress-develop WordPress Develop, Git-ified. Synced from git://develop.git.wordpress.org/, including branches and tags! This repository
- vinnylarouge/jevlike
- rokyed/ut2003-ultrawide-screen-patch