Find notable cyber news and cases, enriched with sources, timelines, and signals.

OpenNDS zero-day vulnerabilities (multiple vulnerabilities)

Vulnerability
First reported
Last updated
Happening score
H score 20
1 unique sources, 1 articles

Summary

Hide ▲

Researchers uncovered four new zero-day vulnerabilities in OpenNDS, creating unknown-risk exposure in a widely deployed software component. The flaws were found using single prompts, the RAPTOR agentic framework, and custom extensions, showing that automated testing can surface concrete bugs with minimal prompting. One vulnerability was located in code that had already been manually reviewed, suggesting earlier analysis missed exploitable weakness. The finding raises concern for systems that rely on OpenNDS before patches or mitigations are available.

Related Happenings

Forescout Verde Labs benchmarks AI models for vulnerability research and autonomous exploit generation

Technical Analysis
First: 17.04.2026 16:20 Last: 17.04.2026 16:20 Sources 1

How related: Forescout’s Verde Labs found that just a year ago 55% of AI models failed basic vulnerability research and 93% failed exploit development tasks.

About this happening: **Forescout’s Verde Labs** found that **50 AI models** now perform **vulnerability research** and **exploit development** much more effectively, making unknown bugs easier for ine...

NIST/NVD risk-based CVE enrichment change

Public Sector Action
First: 16.04.2026 15:43 Last: 16.04.2026 15:43 Sources 1

About this happening: **NIST** said the **US National Vulnerability Database (NVD)** will switch to a **risk-based CVE enrichment** model to cope with backlog growth. The change will **drop enrichment...

Anthropic launches Project Glasswing with Claude Mythos for vulnerability discovery

Security Tool/Service
First: 08.04.2026 12:16 Last: 08.04.2026 12:16 Sources 1

About this happening: **Anthropic’s Project Glasswing** is now showing measurable results: since launching last month, the **Claude Mythos Preview**-based initiative has uncovered **more than 10,000**...

Latest development: 23.05.2026 14:55

Anthropic said Project Glasswing has uncovered more than 10,000 high- or critical-severity vulnerabilities across widely used software since the program launched last month, including 6,202 high/critical flaws affecting more than 1,000 open-source projects, 1,726 validated true positives, 1,094 high/critical flaws, a critical WolfSSL flaw tracked as CVE-2026-5194 with CVSS score 9.1, 97 upstream patches, and 88 advisories.

Anthropic Claude Code Security research preview adds vulnerability scanning and patch suggestions

Security Tool/Service
First: 27.02.2026 16:00 Last: 27.02.2026 16:00 Sources 1

About this happening: Anthropic's **Claude Code Security** entered **research preview**, adding vulnerability scanning and patch suggestions inside **Claude Code** for developers reviewing code before...

Anthropic launches Claude Opus 4.6 with code review and vulnerability-finding capabilities

Security Tool/Service
First: 06.02.2026 07:49 Last: 06.02.2026 07:49 Sources 1

About this happening: **Anthropic** launched **Claude Opus 4.6** with stronger **code review** and **debugging** support, and the model has already been used to uncover **more than 500** previously unk...

Timeline

  1. 17.04.2026 16:20 2 articles · 1mo ago

    Forescout reports four OpenNDS zero-days

    Initial Disclosure

    Forescout’s Verde Labs reported that testing with single prompts, the RAPTOR agentic framework, and custom extensions uncovered four new zero-day vulnerabilities in OpenNDS, and one flaw was located in code that had already been manually reviewed.

    Show sources