<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[CVE-2026-5426: zero-day in KnowledgeDeliver LMS sfruttato per distribuire BLUEBEAM e Cobalt Strike BEACON]]></title><description><![CDATA[<h1><b><a href="https://insicurezzadigitale.com/cve-2026-5426-zero-day-in-knowledgedeliver-lms-sfruttato-per-distribuire-bluebeam-e-cobalt-strike-beacon/" rel="noopener noreferrer">CVE-2026-5426: zero-day in KnowledgeDeliver LMS sfruttato per distribuire BLUEBEAM e Cobalt Strike BEACON</a></b></h1><p><br /><span><a href="/user/..%2Fcategory%2Finformatica%40feddit.it">@<span>informatica</span></a></span><br />Mandiant ha pubblicato i dettagli dell'exploitation attiva di CVE-2026-5426, zero-day nel LMS KnowledgeDeliver causato da chiavi ASP.NET machineKey hardcoded e condivise tra tutte le installazioni.<br />RE: <a href="https://insicurezzadigitale.com/?p=9776" rel="noopener noreferrer">insicurezzadigitale.com/?p=977…</a></p>]]></description><link>https://forum.androidiani.net/topic/48238d4d-da7b-4b10-9511-ca3754c5f90d/cve-2026-5426-zero-day-in-knowledgedeliver-lms-sfruttato-per-distribuire-bluebeam-e-cobalt-strike-beacon</link><generator>RSS for Node</generator><lastBuildDate>Thu, 25 Jun 2026 03:08:48 GMT</lastBuildDate><atom:link href="https://forum.androidiani.net/topic/48238d4d-da7b-4b10-9511-ca3754c5f90d.rss" rel="self" type="application/rss+xml"/><pubDate>Wed, 27 May 2026 07:56:25 GMT</pubDate><ttl>60</ttl></channel></rss>