#cve-2026-5426

[ follow ]
Information security
fromThe Hacker News
1 day ago

KnowledgeDeliver LMS Flaw Exploited to Deploy Godzilla and Cobalt Strike

Hard-coded ASP.NET machine keys enabled unauthenticated ViewState deserialization, allowing zero-day exploitation to deploy Godzilla web shells and Cobalt Strike Beacon.
[ Load more ]