Blog
Notes from the ops room.
Hosting, infrastructure, development, and SEO — written by the people doing the work.
CVE-2026-16232: Admin Access to Your Firewall, No Password Required
Security
Claude Opus 5: #1 on Every Leaderboard, Half the Price of Fable 5
Artificial Intelligence
Oracle’s Record 1,449-Patch CPU: When AI Runs the Security Arms Race
Security
When the AI Hacker Is the AI: OpenAI's Models Escaped and Breached Hugging Face
Artificial Intelligence
Zimbra 10.1.20: Patch the Pre-Auth SNMP RCE Hiding in Your Mail Server
Security
CVE-2026-6875: Pre-Auth RCE in ServiceNow AI Platform Now Actively Exploited
Security
CVE-2026-42533: The 15-Year NGINX Flaw That Hands Attackers Your Web Server
Security
HollowByte: The 11-Byte OpenSSL Attack That Freezes Your Server
Security
wp2shell: Pre-Auth RCE in WordPress Core — Check Your Version Now
Security
Kimi K3: The 2.8-Trillion-Parameter Open Model That Just Shook the AI Market
Artificial Intelligence
AWS CloudFront Outage: How One Frankfurt AZ Broke Websites Worldwide
Web Hosting
SonicWall SMA1000 Zero-Days: CVSS 10.0 + RCE in Active Exploitation — Patch Before July 17
Security
127 Patches and No Rollback: July 2026 Patch Tuesday's Kerberos Breaking Change
Security
Two Joomla Page Builders Hit with CVSS 10.0 RCE — Actively Exploited
Security
CVE-2026-6722: PHP's SOAP RCE Has a Working Exploit — Patch Today
Security