Skip to content
The Nexus
DossierENTITY

Jake Knott

Coverage of Jake Knott in the Nexus archive.

Earliest in view: Jun 1 · 22:29 UTCMost recent: Jul 20 · 21:57 UTC
Co-mentioned in this coverage
Recent coverage
  • SECURITYJul 20 · 21:57 UTCTHE REGISTER
    Attackers pummel critical WordPress vuln to create all sorts of mischief

    Attackers are exploiting two critical WordPress vulnerabilities (CVE-2026-63030 and CVE-2026-60137) to enable pre-authentication remote code execution. The flaws, patched in WordPress versions 6.9.5 and 7.1 Beta 2, allow unauthenticated users to execute arbitrary code by chaining an SQL injection issue with a REST API route confusion bug. Security researchers observed widespread exploitation within hours of the patches being released.

  • SECURITYJun 1 · 22:29 UTCCYBERSCOOP
    Attackers are exploiting Palo Alto Networks defect that initially flew under the radar

    Palo Alto Networks' CVE-2026-0257 vulnerability, initially rated medium severity, was escalated to critical after active exploitation was confirmed. Attackers exploit the flaw to bypass authentication and establish unauthorized VPN connections, leveraging a publicly available TLS certificate to forge valid authentication cookies.

Jake Knott · Dossier · The Nexus