Patching

Protect your business from risk. Explore Raxis blogs on outdated software and unpatched systems for expert tips from the Raxis penetration testing team.

the exploit blog logo
The Exploit: Penetration Testing Insights From The Frontlines

Articles Categorized as Patching

  • RoguePlanet: the Defender Zero-day that Survived Microsoft’s June Patch

    RoguePlanet: The Defender Zero-day that Survived Microsoft’s June Patch

    By Ryan Chaplin The new critical Microsoft Defender exploit, RoguePlanet (CVE-2026-50656), is confirmed active in the wild. Learn what it is and how to protect your network. June 22, 2026
  • Defense in Depth Against Linux Kernel Privilege Escalation

    Defense in Depth Against Linux Kernel Privilege Escalation: A Practical Guide for Container Workloads

    By Ryan Chaplin With current local privilege escalation exploits like Copy Fail and Dirty Frag active in the wild, harden your defenses to halt attacks even before patching. May 26, 2026
  • Critical Buffer Overflow Vulnerability in Palo Alto Networks PAN-OS Software

    Critical Buffer Overflow Vulnerability in Palo Alto Networks PAN-OS Software

    By Andrew Trexler CVE-2026-0300 is a critical buffer overflow vulnerability in Palo Alto’s PAN-OS software. Discover if you are affected and what to do now. May 13, 2026
  • Copy Fail - Local Linux Privilege Escalation in 4 lines

    Copy Fail – Local Linux Privilege Escalation in 4 lines

    By Jason Taylor CVE-2026-31431, dubbed Copy Fail, allows privilege escalation to root on Linux distros missing the latest kernel patches. Learn what to do in this blog. May 8, 2026
  • Smart Slider 3 Pro WordPress/Joomla Plugin Supply Chain Compromise

    Smart Slider 3 Pro WordPress/Joomla Plugin Supply Chain Compromise

    By Jason Taylor Last week’s supply chain attack caused many users of the WordPress and Joomla plugin Smart Slider 3 Pro to inadvertently patch to a malicious version. April 15, 2026
  • BeyondTrust RCE Vulnerability Exploited: Critical 9.9 CVSS Flaw Under Active Attack

    BeyondTrust RCE Vulnerability Exploited: Critical 9.9 CVSS Flaw Under Active Attack

    By Ryan Chaplin While BeyondTrust patched cloud-hosted Remote Support customers earlier this month, on-premises deployments of BeyondTrust must manually patch to remediate. February 17, 2026