Skip to content
October 10, 2026
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Data
    • CVE Watchtower
    • Top Exploited CVEs
    • CVE Stats by Vendor
    • Q2 2026 Report
    • CVE Alerts
    • CVE Alert Settings
    • Pricing
  • Cyber Criminals
  • Data Leak
  • Free Tools
    • CVSS 3.1 Calculator
    • Certificate Viewer
    • DNS Lookup
    • Encoder & Hash Generator
    • IP / Subnet Calculator
    • Whois Lookup
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Weekly Recap
Light/Dark Button

Weekly Recap

Weekly CVE report on exploited vulnerabilities from Daily Cybersecurity and CISA KEV, September 28 to October 4, 2026
  • Weekly Recap

Weekly CVE Report Tracks 2,652 New Flaws and Seven Exploited Vulnerabilities (Sept. 28 – Oct. 4, 2026)

Do Son October 5, 2026 0
Weekly CVE report comparing exploited vulnerabilities from Daily Cybersecurity intelligence with the CISA KEV catalog for September 21-27, 2026
  • Weekly Recap

Weekly CVE Report: 2,825 New Flaws and 9 Exploited Bugs (Sept 21-27, 2026)

Do Son September 28, 2026 0
CVE-2023-50164 AEM Forms
  • Weekly Recap

Weekly CVE Report: 4,378 New Flaws and 10 Exploited Bugs

Do Son September 21, 2026 0
Weekly CVE report chart comparing Daily Cybersecurity exploited vulnerabilities against the CISA KEV catalog
  • Weekly Recap

Daily Cybersecurity Flagged 9 Exploited Flaws Before CISA KEV

Do Son September 14, 2026 0
This weekly CVE report covers 10 exploited vulnerabilities added to CISA KEV and 2,316 new CVEs from Aug 31 to Sep 6, 2026. Patch fast.
  • Weekly Recap

Weekly CVE Report: Daily Cybersecurity Beats CISA KEV on Exploited Flaws

Do Son September 7, 2026 0

Tech News

ICANN gTLD applications .lan domain OpenWrt local network configuration
  • Technology

Controversy Surrounding the .lan Domain Application

Do Son October 9, 2026 0
OpenAI GPT-6 Intelligent UI interactive interface ChatGPT upgrade
  • Technology

OpenAI GPT-6 Introduces Revolutionary Intelligent UI

Do Son October 9, 2026 0
Anthropic OSS Scanner open source vulnerability scanning
  • Technology

Anthropic Introduces OSS Scanner for Open Source Projects

Do Son October 9, 2026 0
Microsoft 365 storage adjustments family plan OneDrive changes
  • Technology

Microsoft 365 Squeezes Family Plan Storage

Do Son October 9, 2026 0

Vulnerability

JetBrains software vulnerabilities TeamCity RCE bugs
  • Vulnerability Report

JetBrains Software Vulnerabilities Impact TeamCity

Do Son October 10, 2026 0
Nginx UI RCE vulnerability CVE-2026-107806
  • Vulnerability Report

Nginx UI RCE Vulnerability Disclosed With PoC Exploit Code

Do Son October 9, 2026 0
Apache Camel Karavan vulnerabilities CVE-2026-103413 CVE-2026-103412
  • Vulnerability Report

Critical Apache Camel Karavan Vulnerabilities Threaten Servers

Do Son October 9, 2026 0
openPDC openHistorian vulnerabilities CVE-2026-100730 CVE-2026-105281
  • Vulnerability Report

Grid Protection Alliance openPDC and openHistorian Flaws

Do Son October 9, 2026 0

Cyber Security

The Reality of Ransomware Recovery Services MonsterCloud ransomware decryption fraud Zohar Pinhasi data recovery
  • Cybercriminals

The Reality of Ransomware Recovery Services

October 9, 2026 0
SoftBank IDCF Cloud Ransomware Attack Exposed by Hackers SoftBank IDCF Cloud ransomware attack East Japan Region 1 outage
  • Cybercriminals

SoftBank IDCF Cloud Ransomware Attack Exposed by Hackers

October 9, 2026 0
CrowdStrike Links South Korean Bank Breaches to Chinese AI Pentesting Tool ARTEX ARTEX AI tool used by a suspected Chinese-speaking attacker against South Korean banks
  • Cybercriminals

CrowdStrike Links South Korean Bank Breaches to Chinese AI Pentesting Tool ARTEX

October 9, 2026 0
OpenAI Disrupts Russian and Iranian False Front Operations Graphic showing AI false front operations and deceptive false front operations targeting digital media
  • Cybercriminals

OpenAI Disrupts Russian and Iranian False Front Operations

October 9, 2026 0

Malware Alert

16 Fake Rabby and OKX Firefox Extensions Stole Crypto Wallet Recovery Phrases Malicious Firefox extensions posing as Rabby and OKX wallets acting as crypto wallet stealers
  • Malware

16 Fake Rabby and OKX Firefox Extensions Stole Crypto Wallet Recovery Phrases

October 9, 2026 0
The Silent Threat of Midnight Mimosa Malware Midnight Mimosa malware cheap Android devices Bitdefender report cybersecurity
  • Malware

The Silent Threat of Midnight Mimosa Malware

October 9, 2026 0
Phishing Campaign Abuses Microsoft Power BI to Install Rogue ScreenConnect Clients Power BI phishing campaign delivering rogue ScreenConnect remote access clients
  • Malware

Phishing Campaign Abuses Microsoft Power BI to Install Rogue ScreenConnect Clients

October 9, 2026 0
Rogue AI Agents Hijacked urlquery Scan Browsers to Reach Russian Bankruptcy Records Rogue AI agents abusing the urlquery remote browser and VNC to bypass sandbox restrictions
  • Malware

Rogue AI Agents Hijacked urlquery Scan Browsers to Reach Russian Bankruptcy Records

October 8, 2026 0

Data Leak

Ricardo Data Leak Exposes User Contact Details Ricardo data leak illustration highlighting the SMG security vulnerability.
  • Data Leak

Ricardo Data Leak Exposes User Contact Details

October 9, 2026 0
The Growing Backlash Against Apple Intelligence Integration Apple Intelligence storage macOS 27 Golden Gate enterprise security
  • Data Leak

The Growing Backlash Against Apple Intelligence Integration

October 9, 2026 0
Trump Mobile Data Breach Exposes 3,615 Customers in BYOD Leak leak
  • Data Leak

Trump Mobile Data Breach Exposes 3,615 Customers in BYOD Leak

October 6, 2026 0
Denmark CPR Data Breach Exposes CPR Numbers of 8.8 Million People Denmark CPR data breach - CPR numbers exposed for 8.8 million people in the national register
  • Data Leak

Denmark CPR Data Breach Exposes CPR Numbers of 8.8 Million People

October 5, 2026 0
Why Fileless Attacks Are Changing Endpoint Security Undertow Vulnerability CVE-2025-12543 CVE-2025-0107: PoC Exploit Code Undersea Cable Security, China Tech Ban
  • Technique

Why Fileless Attacks Are Changing Endpoint Security

Do Son October 10, 2026 0
Read More Read more about Why Fileless Attacks Are Changing Endpoint Security
How residential proxy networks get abused and what defenders can detect image
  • Technique

How residential proxy networks get abused and what defenders can detect

Do Son October 9, 2026 0
Read More Read more about How residential proxy networks get abused and what defenders can detect
SonicWall SMA1000 Vulnerability Exploited in the Wild A security warning highlighting a critical SonicWall SMA1000 vulnerability under active exploitation
  • Vulnerability Report

SonicWall SMA1000 Vulnerability Exploited in the Wild

Do Son October 9, 2026 0
Read More Read more about SonicWall SMA1000 Vulnerability Exploited in the Wild
Raspberry Pi OS Update: Squashing Desktop Bugs Raspberry Pi OS update Linux desktop environments bug fixes
  • Linux

Raspberry Pi OS Update: Squashing Desktop Bugs

Do Son October 9, 2026 0
Read More Read more about Raspberry Pi OS Update: Squashing Desktop Bugs
Let’s Encrypt Accelerates the Push for Automation Let's Encrypt certificate lifespan reduction automation TLS certificates
  • Technology

Let’s Encrypt Accelerates the Push for Automation

Do Son October 9, 2026 0
Read More Read more about Let’s Encrypt Accelerates the Push for Automation
Actively Exploited Software Vulnerabilities Demand Patching, CISA Warns Actively exploited software vulnerabilities enabling critical remote code execution.
  • Vulnerability Report

Actively Exploited Software Vulnerabilities Demand Patching, CISA Warns

Do Son October 9, 2026 0
Read More Read more about Actively Exploited Software Vulnerabilities Demand Patching, CISA Warns
Urgent Security Patches Fix IBM Verify Access Vulnerabilities Urgent Security Patches Fix IBM Verify Access Vulnerabilities
  • Vulnerability Report

Urgent Security Patches Fix IBM Verify Access Vulnerabilities

Do Son October 9, 2026 0
Read More Read more about Urgent Security Patches Fix IBM Verify Access Vulnerabilities
Chinese State Hackers Target Critical Infrastructure in Global Data Theft exfiltrating AWS credentials - fabrice package
  • Cybercriminals

Chinese State Hackers Target Critical Infrastructure in Global Data Theft

Do Son October 9, 2026 0
Read More Read more about Chinese State Hackers Target Critical Infrastructure in Global Data Theft
Critical Tapo C325WB Vulnerabilities Expose Smart Cameras TP-Link smart camera exposed to critical Tapo C325WB vulnerabilities
  • Vulnerability Report

Critical Tapo C325WB Vulnerabilities Expose Smart Cameras

Do Son October 9, 2026 0
Read More Read more about Critical Tapo C325WB Vulnerabilities Expose Smart Cameras
AhsayCBS Vulnerabilities Exploited in Wild Attacks FSB Center 16 targeting vulnerable routers across critical infrastructure via weak SNMP
  • Vulnerability Report

AhsayCBS Vulnerabilities Exploited in Wild Attacks

Do Son October 9, 2026 0
Read More Read more about AhsayCBS Vulnerabilities Exploited in Wild Attacks
Telegram Desktop Account Takeover PoC Disclosed Telegram Desktop account takeover illustration showing CVE-2026-107181 exploit code
  • Vulnerability Report

Telegram Desktop Account Takeover PoC Disclosed

Do Son October 9, 2026 0
Read More Read more about Telegram Desktop Account Takeover PoC Disclosed
HPE Fixes Critical iLO 7 Admin Access Flaw and iMC Authentication Bypass HPE iLO 7 vulnerability CVE-2026-79820 admin access and HPE iMC authentication bypass CVE-2026-79842 fixed
  • Vulnerability Report

HPE Fixes Critical iLO 7 Admin Access Flaw and iMC Authentication Bypass

Do Son October 9, 2026 0
Read More Read more about HPE Fixes Critical iLO 7 Admin Access Flaw and iMC Authentication Bypass
Citrix Warns of Critical NetScaler SAML Flaw CVE-2026-107406 That Can Lead to Remote Code Execution Citrix NetScaler vulnerability CVE-2026-107406 memory overflow in SAML-configured NetScaler ADC and Gateway can lead to remote code execution
  • Vulnerability Report

Citrix Warns of Critical NetScaler SAML Flaw CVE-2026-107406 That Can Lead to Remote Code Execution

Do Son October 9, 2026 0
Read More Read more about Citrix Warns of Critical NetScaler SAML Flaw CVE-2026-107406 That Can Lead to Remote Code Execution
IBM Patches 23 DataPower Gateway Flaws, Including Four Critical Remote Code Execution and XSS Bugs IBM DataPower Gateway vulnerabilities CVE-2026-15762 and CVE-2026-16340 remote code execution and CVE-2026-14990 XSS fixed in 11.0.0.3
  • Vulnerability Report

IBM Patches 23 DataPower Gateway Flaws, Including Four Critical Remote Code Execution and XSS Bugs

Do Son October 8, 2026 0
Read More Read more about IBM Patches 23 DataPower Gateway Flaws, Including Four Critical Remote Code Execution and XSS Bugs
Insignary Launches Clarity AIR to Detect Undeclared Open-Source and AI-Written Code insignary_logo_1791211062PNrqmaRSIt
  • Press Release

Insignary Launches Clarity AIR to Detect Undeclared Open-Source and AI-Written Code

cybernewswire October 8, 2026 0
Read More Read more about Insignary Launches Clarity AIR to Detect Undeclared Open-Source and AI-Written Code
Claude AI Chat Leads to Florida Arrest Claude AI chat threats arrest security monitoring
  • Technology

Claude AI Chat Leads to Florida Arrest

Do Son October 8, 2026 0
Read More Read more about Claude AI Chat Leads to Florida Arrest
Chrome 155 Defaults to Native JPEG XL Support Chrome JPEG XL support decoding JXL image format
  • Technology

Chrome 155 Defaults to Native JPEG XL Support

Do Son October 8, 2026 0
Read More Read more about Chrome 155 Defaults to Native JPEG XL Support
ICANN Reveals Massive Surge in AI Domain Name Applications ICANN new domain applications and AI extensions
  • Technology

ICANN Reveals Massive Surge in AI Domain Name Applications

Do Son October 8, 2026 0
Read More Read more about ICANN Reveals Massive Surge in AI Domain Name Applications
OpenAI Math Model Breakthroughs: AI Solves Centennial Enigmas OpenAI math model breakthroughs resolving complex mathematical proofs and AI mathematical proofs
  • Technology

OpenAI Math Model Breakthroughs: AI Solves Centennial Enigmas

Do Son October 8, 2026 0
Read More Read more about OpenAI Math Model Breakthroughs: AI Solves Centennial Enigmas
Google Adds Native Markdown Support Google Markdown native support Drive Docs collaboration
  • Technology

Google Adds Native Markdown Support

Do Son October 8, 2026 0
Read More Read more about Google Adds Native Markdown Support
Iran-Linked Hackers Pose as Dubai Airports Recruiters in Blinder Tunnel Campaign Against Iraq Blinder Tunnel campaign using a fake Dubai Airports coding test to deliver ShelbyLoader V2
  • Cybercriminals

Iran-Linked Hackers Pose as Dubai Airports Recruiters in Blinder Tunnel Campaign Against Iraq

Do Son October 8, 2026 0
Read More Read more about Iran-Linked Hackers Pose as Dubai Airports Recruiters in Blinder Tunnel Campaign Against Iraq
Google SynthID AI Detector Now Open to the Public Google SynthID AI detector interface scanning for deepfakes and AI-generated content
  • Technology

Google SynthID AI Detector Now Open to the Public

Do Son October 8, 2026 0
Read More Read more about Google SynthID AI Detector Now Open to the Public
Next Page ❯

Search

Translation

CVE ALERTS
πŸ“ˆ

EPSS Spike Alerts
Catch risk spikes before they make headlines.

🎯

Custom EPSS/CVSS
Set score thresholds to effectively filter noise.

πŸ›‘οΈ

Exploit Intel
Real-world exploit signals beyond the KEV catalog.

πŸ™

GitHub Issues
Auto-create alert tickets without duplication.

πŸ“¬

Weekly Digest
Clean summaries, eliminating email spam.

🏷️

Watchlist Groups
Tag vulnerabilities by team (Infra/AppSec/SOC).

πŸ”€

Smart Routing
Route chat channels based on severity levels.

🚨

RBP Tracker
Early warning detection and tracking system.

Subscribe – $7/mo or try free for 14 days β†’

🚨 Active Exploits in the Wild

  • CVE-2026-102255CVSS 10.0
    A Pre-authentication SSRF vulnerability exists in the SMA1000 Appliance Work Place interface due to an unintended alternate access...
    Admin intel📅 Updated: Oct 9, 2026
  • CVE-2026-105133CVSS 6.9
    A vulnerability was detected in Ahsay AhsayCBS up to 10.3.2. This affects the function checkSysPwd of the file...
    Admin intel📅 Updated: Oct 9, 2026
  • CVE-2023-22894CVSS 4.9
    Strapi through 4.5.5 allows attackers (with access to the admin panel) to discover sensitive user details by exploiting...
    CISA KEV📅 Added to KEV: Oct 8, 2026
  • CVE-2016-3081CVSS 8.1
    Apache Struts 2.3.19 to 2.3.20.2, 2.3.21 to 2.3.24.1, and 2.3.25 to 2.3.28, when Dynamic Method Invocation is enabled,...
    CISA KEV📅 Added to KEV: Oct 8, 2026
  • CVE-2015-3306CVSS 10.0
    The mod_copy module in ProFTPD 1.3.5 allows remote attackers to read and write to arbitrary files via the...
    CISA KEV📅 Added to KEV: Oct 8, 2026
  • CVE-2015-5477CVSS 7.5
    named in ISC BIND 9.x before 9.9.7-P2 and 9.10.x before 9.10.2-P3 allows remote attackers to cause a denial...
    CISA KEV📅 Added to KEV: Oct 8, 2026
  • CVE-2021-3199CVSS 9.8
    Directory traversal with remote code execution can occur in /upload in ONLYOFFICE Document Server before 5.6.3, when JWT...
    CISA KEV📅 Added to KEV: Oct 8, 2026
  • CVE-2026-94504CVSS 7.2
    Ninja Forms 3.15.3 stores an anonymous non-RTE textarea value and renders it without safe HTML encoding in the...
    Admin intel📅 Updated: Oct 7, 2026
Powered by CVE Watchtower

Critical Vulnerabilities

  • CVE-2026-108551CVSS 9.3
    openapi-typescript-codegen through 0.31.0 contains a code injection vulnerability that allows attackers controlling an OpenAPI document to inject JavaScript...
    📅 Updated: Oct 10, 2026
  • CVE-2026-108549CVSS 9.2
    cc-connect through 1.5.0 contains a missing authentication vulnerability in the MAX platform adapter webhook mode in platform/max/max.go that...
    📅 Updated: Oct 10, 2026
  • CVE-2026-84272CVSS 9.8
    IBM Guardium Data Protection 12.1 and 12.2.2 are vulnerable to missing authentication in the edge-controller component. An unauthenticated...
    📅 Updated: Oct 10, 2026
  • CVE-2026-19491CVSS 9.1
    IBM Security Verify Access 10.0 through 10.0.9.2 and IBM Verify Identity Access 11.0 through 11.0.3 could allow a...
    📅 Updated: Oct 10, 2026
  • CVE-2026-78401CVSS 9.8
    IBM Security Verify Access 10.0 through 10.0.9.2 and IBM Verify Identity Access 11.0 through 11.0.3 could allow a...
    📅 Updated: Oct 10, 2026
  • CVE-2026-14991CVSS 9.8
    IBM DataPower Gateway 10.5.0.0 through 10.5.0.22, 10.6.1 through 10.6.6, 10.6.0.0 through 10.6.0.10, and 11.0.0.0 through 11.0.0.2 is vulnerable...
    📅 Updated: Oct 10, 2026
  • CVE-2026-16916CVSS 9.1
    IBM Security Verify Access 10.0 through 10.0.9.2 and IBM Verify Identity Access 11.0 through 11.0.3 could allow a...
    📅 Updated: Oct 10, 2026
  • CVE-2026-93945CVSS 9.8
    Deserialization of Untrusted Data vulnerability in Axiomthemes Balance balance allows Object Injection.This issue affects Balance: from n/a through...
    📅 Updated: Oct 10, 2026
Powered by CVE Watchtower

Daily CyberSecurity

  • About SecurityOnline.info
  • Advertise with us
  • Announcement
  • Contact
  • Contributor Register
  • Login
  • Disclaimer
  • DCMA
  • Privacy Policy
  • About SecurityOnline.info
  • Advertise on SecurityOnline.info
  • Contact Us

When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

  • CVE Watchtower
  • CVE Statistics by Vendor 2026
  • Q2 2026 Report
  • Top Exploited CVEs
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube
Β© 2017 - 2026 Daily CyberSecurity. All Rights Reserved.