Attackers are exploiting critical NGINX vulnerability (CVE-2026-42945)
2026-05-18T14:51:52Z•134a49f0931d30d331014f310f0978adb8e6e4d5674096bc0d0239e9694def1d
CVE-2026-42945ai-securityautonomous-pentestingcode-exfiltrationdebian-13.5denial-of-serviceexploitationgithub-breachgrafanainterpolllm-backdoorlyriemetabackdoornginxoperation-ramzphishingransomwareremote code executionsecurity-updatessynack-reportvulnerability-trends
What happened
This batch highlights multiple high-impact security developments. A critical NGINX vulnerability (CVE-2026-42945, “NGINX Rift”) is being actively exploited to trigger denial-of-service and potentially unauthenticated remote code execution via specially crafted HTTP requests. Grafana Labs disclosed a GitHub breach where attackers accessed and downloaded the company’s codebase. INTERPOL’s Operation Ramz disrupted regional phishing/fraud networks, resulting in 201 arrests and seizures. New research (Microsoft + Institute of Science Tokyo) describes MetaBackdoor, an LLM backdoor technique that can
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- helpnetsecurity
- Record identifier
- 134a49f0931d30d331014f310f0978adb8e6e4d5674096bc0d0239e9694def1d
- Enrichment time
- 2026-05-18T14:51:52Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.