Skip to content
September 28, 2026
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Data
    • CVE Watchtower
    • Top Exploited CVEs
    • CVE Stats by Vendor
    • Q2 2026 Report
    • CVE Alerts
    • CVE Alert Settings
    • Pricing
  • Cyber Criminals
  • Data Leak
  • Free Tools
    • CVSS 3.1 Calculator
    • Certificate Viewer
    • DNS Lookup
    • Encoder & Hash Generator
    • IP / Subnet Calculator
    • Whois Lookup
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Weekly Recap
Light/Dark Button

Weekly Recap

Weekly CVE report comparing exploited vulnerabilities from Daily Cybersecurity intelligence with the CISA KEV catalog for September 21-27, 2026
  • Weekly Recap

Weekly CVE Report: 2,825 New Flaws and 9 Exploited Bugs (Sept 21-27, 2026)

Do Son September 28, 2026 0
CVE-2023-50164 AEM Forms
  • Weekly Recap

Weekly CVE Report: 4,378 New Flaws and 10 Exploited Bugs

Do Son September 21, 2026 0
Weekly CVE report chart comparing Daily Cybersecurity exploited vulnerabilities against the CISA KEV catalog
  • Weekly Recap

Daily Cybersecurity Flagged 9 Exploited Flaws Before CISA KEV

Do Son September 14, 2026 0
This weekly CVE report covers 10 exploited vulnerabilities added to CISA KEV and 2,316 new CVEs from Aug 31 to Sep 6, 2026. Patch fast.
  • Weekly Recap

Weekly CVE Report: Daily Cybersecurity Beats CISA KEV on Exploited Flaws

Do Son September 7, 2026 0
Weekly CVE report dashboard showing new vulnerabilities and CISA KEV exploited flaws for the week
  • Weekly Recap

Weekly CVE Report: 11 Exploited Flaws Added to KEV

Do Son August 31, 2026 0

Tech News

Abstract visualization of a persistent AI agent operating in the background
  • Technology

OpenAI to Unveil Project ‘O’ at DevDay

Do Son September 28, 2026 0
GitHub login screen displaying an email verification error for an Outlook address
  • Technology

GitHub Blocks New Outlook and Hotmail Sign-Ups

Do Son September 28, 2026 0
Microsoft Office error screen showing the KB5002907 update deletes Office licenses and uninstalls applications
  • Technology

KB5002907 Update Causes Unexpected Office Deletions

Do Son September 27, 2026 0
Microsoft Copilot interface showcasing Home, Code, Autopilot, and Office tabs
  • Technology

Microsoft Unveils the Next Generation of Copilot

Do Son September 25, 2026 0

Vulnerability

Diagram of a critical Linux container escape flaw and CVE-2026-80521 attack path
  • Vulnerability Report

Linux Container Escape Flaw Details and PoC Disclosed

Do Son September 28, 2026 0
Diagram showing the exploited macOS CoreServices vulnerability attack path
  • Vulnerability Report

CVE-2026-43786: macOS CoreServices Vulnerability PoC Disclosed

Do Son September 28, 2026 0
  • Vulnerability Report

Citrix NetScaler Zero-Day RCE Flaws Exploited, Patches Released

Do Son September 27, 2026 0
Diagram showing critical ViewSonic vCast vulnerabilities and device takeover chain
  • Vulnerability Report

Critical ViewSonic vCast Vulnerabilities Enable Device Takeover

Do Son September 26, 2026 0

Cyber Security

Konni Launches Operation Conflict Compass Against Ukraine Diagram of Konni Operation Conflict Compass showing the Operation Conflict Compass infection chain
  • Cybercriminals

Konni Launches Operation Conflict Compass Against Ukraine

September 28, 2026 0
Kiteworks Mandates Global Precautionary Server Shutdown Kiteworks secure file transfer interface depicting a precautionary server shutdown
  • Cybercriminals

Kiteworks Mandates Global Precautionary Server Shutdown

September 28, 2026 0
TraderTraitor macOS Backdoors Target IT Service Firms CloudComputating - QSC framework
  • Cybercriminals

TraderTraitor macOS Backdoors Target IT Service Firms

September 28, 2026 0
TeamFiltration Password Spray Campaign Hits Chile illegal streaming networks complex criminal enterprises UAT-7290 China-nexus Espionage Adversarial Misuse of Generative AI
  • Cybercriminals

TeamFiltration Password Spray Campaign Hits Chile

September 25, 2026 0

Malware Alert

PamStealer macOS Malware Spreads via Fake Wavel Crypto App Diagram of the new PamStealer macOS infostealer showing how the PamStealer macOS infostealer infects Apple devices
  • Malware

PamStealer macOS Malware Spreads via Fake Wavel Crypto App

September 28, 2026 0
RemControl Android Banking Trojan Steals Bank PINs RemControl Android banking trojan blocking Play Protect, RemControl malware fake TVTap app delivery
  • Malware

RemControl Android Banking Trojan Steals Bank PINs

September 28, 2026 0
Malicious Terraform Providers Spread Graphalgo Go Malware Diagram to detect malicious Terraform providers and stop malicious Terraform providers in CI/CD
  • Malware

Malicious Terraform Providers Spread Graphalgo Go Malware

September 25, 2026 0
CLOSEDQUORUM AI Malware Uses LLMs for Autonomous C2 Diagram of the autonomous CLOSEDQUORUM AI malware architecture showing how CLOSEDQUORUM AI malware queries language models
  • Malware

CLOSEDQUORUM AI Malware Uses LLMs for Autonomous C2

September 25, 2026 0

Data Leak

Meta Muse Secretly Used Humans for AI Phone Calls Meta Muse AI agent phone calling feature secretly handed off to human contractors
  • Data Leak

Meta Muse Secretly Used Humans for AI Phone Calls

September 24, 2026 0
ShinyHunters Syndicate Alleges Major FBI Network Compromise Bling Libra
  • Data Leak

ShinyHunters Syndicate Alleges Major FBI Network Compromise

September 24, 2026 0
Leaked GitHub App Private Keys Expose Critical Infrastructure Diagram showing leaked GitHub App private keys and how GitHub App private keys compromise repositories
  • Data Leak

Leaked GitHub App Private Keys Expose Critical Infrastructure

September 23, 2026 0
OpenAI’s Project Lily Employs Humans to Read ChatGPT Chats Project Lily workspace illustration showing contractors reviewing ChatGPT user dialogues
  • Data Leak

OpenAI’s Project Lily Employs Humans to Read ChatGPT Chats

September 16, 2026 0
Optimizing Windows 11 by Disabling 8.3 Short File Names Windows 11 File Explorer interface demonstrating optimized file operation performance
  • Windows

Optimizing Windows 11 by Disabling 8.3 Short File Names

Do Son September 28, 2026 0
Read More Read more about Optimizing Windows 11 by Disabling 8.3 Short File Names
Windows 11 Enhances Mouse Visibility and Customization Windows11-hover
  • Windows

Windows 11 Enhances Mouse Visibility and Customization

Do Son September 28, 2026 0
Read More Read more about Windows 11 Enhances Mouse Visibility and Customization
Canonical Overhauls Ubuntu Kernel Release Cycle Ubuntu Linux kernel update pipeline demonstrating the new overlapping two-week cycle
  • Linux

Canonical Overhauls Ubuntu Kernel Release Cycle

Do Son September 28, 2026 0
Read More Read more about Canonical Overhauls Ubuntu Kernel Release Cycle
Weekly CVE Report: 2,825 New Flaws and 9 Exploited Bugs (Sept 21-27, 2026) Weekly CVE report comparing exploited vulnerabilities from Daily Cybersecurity intelligence with the CISA KEV catalog for September 21-27, 2026
  • Weekly Recap

Weekly CVE Report: 2,825 New Flaws and 9 Exploited Bugs (Sept 21-27, 2026)

Do Son September 28, 2026 0
Read More Read more about Weekly CVE Report: 2,825 New Flaws and 9 Exploited Bugs (Sept 21-27, 2026)
Auctions as a Conversion Tool: How Bidding Increases Engagement in eCommerce tech
  • Technique

Auctions as a Conversion Tool: How Bidding Increases Engagement in eCommerce

Do Son September 25, 2026 0
Read More Read more about Auctions as a Conversion Tool: How Bidding Increases Engagement in eCommerce
MongoDB Driver Vulnerabilities Fixed Across Ecosystem Diagram illustrating critical MongoDB driver vulnerabilities and patched MongoDB driver vulnerabilities
  • Vulnerability Report

MongoDB Driver Vulnerabilities Fixed Across Ecosystem

Do Son September 25, 2026 0
Read More Read more about MongoDB Driver Vulnerabilities Fixed Across Ecosystem
High-Severity Apache Qpid Broker-J Vulnerabilities Fixed Diagram showing Apache Qpid Broker-J vulnerabilities and attack mechanisms
  • Vulnerability Report

High-Severity Apache Qpid Broker-J Vulnerabilities Fixed

Do Son September 25, 2026 0
Read More Read more about High-Severity Apache Qpid Broker-J Vulnerabilities Fixed
Norwegian Cruise Line Vulnerability Permits Keycard Replay card-80442
  • Vulnerability Report

Norwegian Cruise Line Vulnerability Permits Keycard Replay

Do Son September 25, 2026 0
Read More Read more about Norwegian Cruise Line Vulnerability Permits Keycard Replay
Salmon Introduces Execution Verification Infrastructure (EVI) for Securing AI Agents and Autonomous Systems image_26_1790250272WOIo9JWZto
  • Press Release

Salmon Introduces Execution Verification Infrastructure (EVI) for Securing AI Agents and Autonomous Systems

cybernewswire September 25, 2026 0
Read More Read more about Salmon Introduces Execution Verification Infrastructure (EVI) for Securing AI Agents and Autonomous Systems
Google Project Suncatcher: Pioneering Orbital AI Data Centers Google Project Suncatcher orbital AI data center satellite
  • Technology

Google Project Suncatcher: Pioneering Orbital AI Data Centers

Do Son September 25, 2026 0
Read More Read more about Google Project Suncatcher: Pioneering Orbital AI Data Centers
High-Severity PHP Vulnerabilities Patched Across Multiple Branches Diagram illustrating critical PHP vulnerabilities and patched PHP vulnerabilities
  • Vulnerability Report

High-Severity PHP Vulnerabilities Patched Across Multiple Branches

Do Son September 25, 2026 0
Read More Read more about High-Severity PHP Vulnerabilities Patched Across Multiple Branches
Exploited SharePoint RCE Vulnerability Details Disclosed Diagram illustrating the exploited SharePoint RCE vulnerability attack flow
  • Vulnerability Report

Exploited SharePoint RCE Vulnerability Details Disclosed

Do Son September 25, 2026 0
Read More Read more about Exploited SharePoint RCE Vulnerability Details Disclosed
WordPress Must-Use Plugin Malware Uses EtherHiding Analysis of stealthy WordPress must-use plugin malware and WordPress must-use plugin malware architecture
  • Malware

WordPress Must-Use Plugin Malware Uses EtherHiding

Do Son September 25, 2026 0
Read More Read more about WordPress Must-Use Plugin Malware Uses EtherHiding
Critical ServiceNow Vulnerabilities Fixed in AI Platform Diagram showing critical ServiceNow vulnerabilities and attack paths in the AI Platform
  • Vulnerability Report

Critical ServiceNow Vulnerabilities Fixed in AI Platform

Do Son September 25, 2026 0
Read More Read more about Critical ServiceNow Vulnerabilities Fixed in AI Platform
Critical Eufy Robot Vacuum Vulnerabilities Allow System Takeover Diagram illustrating Eufy robot vacuum vulnerabilities and OS command injection paths
  • Vulnerability Report

Critical Eufy Robot Vacuum Vulnerabilities Allow System Takeover

Do Son September 25, 2026 0
Read More Read more about Critical Eufy Robot Vacuum Vulnerabilities Allow System Takeover
Exploited F5 BIG-IP RCE Vulnerability Details and PoC Disclosed Diagram showing the exploited F5 BIG-IP RCE vulnerability attack chain
  • Vulnerability Report

Exploited F5 BIG-IP RCE Vulnerability Details and PoC Disclosed

Do Son September 25, 2026 0
Read More Read more about Exploited F5 BIG-IP RCE Vulnerability Details and PoC Disclosed
CVE-2026-96512: Sudo Security Vulnerability Allows Privilege Escalation Diagram explaining the Sudo security vulnerability and CVE-2026-96512 mitigation
  • Vulnerability Report

CVE-2026-96512: Sudo Security Vulnerability Allows Privilege Escalation

Do Son September 25, 2026 0
Read More Read more about CVE-2026-96512: Sudo Security Vulnerability Allows Privilege Escalation
CISA Adds WSO2 and Adobe Flaws to KEV Catalog Diagram illustrating exploited CISA KEV vulnerabilities affecting WSO2 and Adobe
  • Vulnerability Report

CISA Adds WSO2 and Adobe Flaws to KEV Catalog

Do Son September 25, 2026 0
Read More Read more about CISA Adds WSO2 and Adobe Flaws to KEV Catalog
RustyTux: Public PoC Exploit Targets Linux Kernel Privilege Escalation Flaw RustyTux Linux kernel privilege escalation exploit chaining an ESP-in-TCP use-after-free race to a root shell on CentOS and Ubuntu
  • Vulnerability Report

RustyTux: Public PoC Exploit Targets Linux Kernel Privilege Escalation Flaw

Do Son September 25, 2026 0
Read More Read more about RustyTux: Public PoC Exploit Targets Linux Kernel Privilege Escalation Flaw
SCOUTz Prospect Intelligence Platform Launches for MSPs with 30-Day Beta SCOUTz_-_Header_Banner_1200x720_1790189561nFevdYxfGB
  • Press Release

SCOUTz Prospect Intelligence Platform Launches for MSPs with 30-Day Beta

cybernewswire September 24, 2026 0
Read More Read more about SCOUTz Prospect Intelligence Platform Launches for MSPs with 30-Day Beta
Microsoft Explores Intrusive In-Game Advertising Microsoft game ad patent concept showing a paused game screen for promotional content
  • Technology

Microsoft Explores Intrusive In-Game Advertising

Do Son September 24, 2026 0
Read More Read more about Microsoft Explores Intrusive In-Game Advertising
Windows 11 Update Breaks Always On VPN Connections Windows 11 Always On VPN connection stuck after the September 2026 update with a port in use error
  • Windows

Windows 11 Update Breaks Always On VPN Connections

Do Son September 24, 2026 0
Read More Read more about Windows 11 Update Breaks Always On VPN Connections
Next Page ❯

Search

Translation

CVE ALERTS
📈

EPSS Spike Alerts
Catch risk spikes before they make headlines.

🎯

Custom EPSS/CVSS
Set score thresholds to effectively filter noise.

🛡️

Exploit Intel
Real-world exploit signals beyond the KEV catalog.

🐙

GitHub Issues
Auto-create alert tickets without duplication.

📬

Weekly Digest
Clean summaries, eliminating email spam.

🏷️

Watchlist Groups
Tag vulnerabilities by team (Infra/AppSec/SOC).

🔀

Smart Routing
Route chat channels based on severity levels.

🚨

RBP Tracker
Early warning detection and tracking system.

Subscribe – $7/mo or try free for 14 days →

🚨 Active Exploits in the Wild

  • CVE-2026-88772
    Memory overflow vulnerability leading to remote code execution or denial of service.
    Admin intelCISA KEV📅 Added to KEV: Sep 27, 2026📅 Updated: Sep 27, 2026
  • CVE-2026-88771
    Remote code execution due to improper input validation that can allow an unauthenticated attacker to execute arbitrary commands.
    Admin intelCISA KEV📅 Added to KEV: Sep 27, 2026📅 Updated: Sep 27, 2026
  • CVE-2026-65660CVSS 8.8
    Improper control of generation of code (\'code injection\') in Microsoft Office SharePoint allows an authorized attacker to execute...
    Admin intelCISA KEV📅 Added to KEV: Sep 25, 2026📅 Updated: Sep 25, 2026
  • CVE-2026-5430CVSS 10.0
    The JWT authentication mechanism accepts tokens signed with algorithms other than those explicitly configured or supported. This allows...
    CISA KEV📅 Added to KEV: Sep 24, 2026
  • CVE-2026-71362CVSS 9.1
    Adobe Commerce is affected by an Incorrect Authorization vulnerability that could result in privilege escalation. An attacker could...
    CISA KEV📅 Added to KEV: Sep 24, 2026
  • CVE-2026-48842CVSS 8.1
    Roundcube Webmail 1.6.x before 1.6.16 and 1.7.x before 1.7.1 has Pre-authentication SQL injection in the virtuser_query plugin via...
    Admin intel📅 Updated: Sep 23, 2026
  • CVE-2026-87902
    Unauthenticated path traversal in page-template resolution leading to conditional RCE An unauthenticated attacker can make get_page_template() page-template resolution...
    Admin intelCISA KEV📅 Added to KEV: Sep 25, 2026📅 Updated: Sep 23, 2026
  • CVE-2026-94127CVSS 9.8
    When a BIG-IP APM access policy and an OAuth profile is configured on a virtual server, specific malicious...
    Admin intelCISA KEV📅 Added to KEV: Sep 22, 2026📅 Updated: Sep 22, 2026
Powered by CVE Watchtower

Critical Vulnerabilities

  • CVE-2026-20192CVSS 10.0
    As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Identity Services Engine (ISE)...
    📅 Updated: Sep 28, 2026
  • CVE-2026-101039CVSS 10.0
    A vulnerability was identified in FAST FAC1900R 20190827_2.0.2. Affected by this issue is the function copy_msg_element of the...
    📅 Updated: Sep 28, 2026
  • CVE-2026-88771CVSS 9.5
    Improper input validation vulnerability in Citrix NetScaler ADC and Citrix NetScaler Gateway. This issue affects ADC: before 14.1-73.37,...
    CISA KEV📅 Added to KEV: Sep 27, 2026📅 Updated: Sep 28, 2026
  • CVE-2026-101001CVSS 10.0
    A vulnerability was identified in Netcore NBR200V2 1.3.241127.071246. This impacts the function eval of the file /www/cgi-bin/network_tools of...
    📅 Updated: Sep 28, 2026
  • CVE-2026-101007CVSS 9.3
    A vulnerability has been found in aaPanel BaoTa up to 11.8.0. This issue affects the function InputSql of...
    📅 Updated: Sep 28, 2026
  • CVE-2026-101038CVSS 9.4
    A vulnerability was determined in FAST FAC1200R 5.0_20201119_1.0.2. Affected by this vulnerability is the function MmtAtePrase of the...
    📅 Updated: Sep 28, 2026
  • CVE-2026-81867CVSS 9.4
    A Deserialization of Untrusted Data vulnerability in the JavaScript Task in Google Cloud Application Integration versions prior to...
    📅 Updated: Sep 28, 2026
  • CVE-2026-19759CVSS 9.4
    An Incorrect Authorization vulnerability in the task configuration in Google Cloud Application Integration versions prior to 2026-06-17 on Google...
    📅 Updated: Sep 28, 2026
Powered by CVE Watchtower

Daily CyberSecurity

  • About SecurityOnline.info
  • Advertise with us
  • Announcement
  • Contact
  • Contributor Register
  • Login
  • Disclaimer
  • DCMA
  • Privacy Policy
  • About SecurityOnline.info
  • Advertise on SecurityOnline.info
  • Contact Us

When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

  • CVE Watchtower
  • CVE Statistics by Vendor 2026
  • Q2 2026 Report
  • Top Exploited CVEs
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube
© 2017 - 2026 Daily CyberSecurity. All Rights Reserved.