SharkNinja has responded to The Hacker News story on the Shark robot vacuum flaw.
The company says it has "completely addressed" the vulnerability, but has not said when the fix shipped, whether it reissued the exposed device certificates or only rescoped the policy, or how many devices were affected.
The company says it has "completely addressed" the vulnerability, but has not said when the fix shipped, whether it reissued the exposed device certificates or only rescoped the policy, or how many devices were affected.
CVE-2026-58455 chains an authentication bypass with command injection. In the standard deployment, RCE inside the application container becomes host compromise through the mounted Docker socket.
New HollowGraph Malware Abuses Microsoft 365 Calendar for C&C Communication.
OVH reveals semi-secret plan to fix critical Januscape bug with mass reboots – and an Australian crash-test dummy.
Europe's flagship open-source Microsoft 365 rival Nextcloud's website was hacked. The company confirmed it after publicly calling it "a normal infrastructure problem." Nextcloud uses Wordpress (ring a bell? wp2shell?).
Exposed Server Reveals AI-Assisted Phishing Toolkit Behind WebDAV Malware Campaign.
Craneware confirms customer and employee data exposed in security incident.
SonicWall Zero-Days Exploited to Deliver Custom Malware for Weeks Before Patch.
Paidwork breach exposes data of 23 million users: Check if you’re affected.
Greedy ransomware crews return for seconds after victims cough up first extortion payments.