Do secure systems exist? Or are all systems deemed secure until they are exploited and attacked? I asked myself these two questions while working on this article and I don't have an answer. If you have an answer, kindly let me know in the comments section. Critical Apache HTTP/2 Flaw (CVE-2026-23918) Enables DoS and Potential RCE The good thing about this: they addressed the vulnerability in version 2.4.67. Nonetheless, the excerpt below gives a brief overview of the vulnerability and what we can learn from it. The vulnerability, tracked as CVE-2026-23918 (CVSS score: 8.8), has been described as a case of "double free and possible RCE" in the HTTP/2 protocol handling. Fixing the password problem is as easy as 123456 But it's not. It needs some enforcement from the right bodies. Because, why will someone use 123456 as a password? It's 2026!…