Announcements

MA-1479.072026: MyCERT Advisory - Recent Ransomware Activities Observed: Best Practices for Prevention and Mitigation

  • 26th July 2026
A security advisory (MA-1479.072026) was published on 26 July 2026 regarding recent ransomware activities. However, the provided source text does not include any specific details about the threat, affected systems, or recommended actions.Since the full advisory content is not available in the source material, no further information can be shared ...
Continue reading

CVE-2026-23941 (matched: apache http server)

  • 26th July 2026
A security vulnerability called HTTP request smuggling has been found in the web server component of Erlang OTP, a software framework used in some web hosting setups. The flaw stems from how the server handles duplicate Content-Length headers, which are standard parts of web requests that tell the server how large the request's data is. The server ...
Continue reading

CVE-2026-8711 (matched: nginx)

  • 26th July 2026
A security vulnerability has been identified in NGINX JavaScript, a feature some websites use to add custom request-handling functionality. This flaw only impacts sites that meet two specific configuration requirements: the js_fetch_proxy setting is configured to use at least one value pulled from visitor-controlled data (such as request headers, ...
Continue reading

CVE-2026-6104 (matched: php)

  • 26th July 2026
A security flaw has been identified in specific releases of PHP, the core software that powers most dynamic websites. The issue affects PHP 8.4 versions older than 8.4.21, and PHP 8.5 versions older than 8.5.6.The flaw is triggered when a specially crafted input containing a hidden null byte in an encoding name is passed to common text-processing ...
Continue reading