At a Glance Actor A single unattributed operator (Russian-language code comments observed) Activity Mass compromise of Dahua...
News
TL;DR The Apache Tomcat team fixed 11 vulnerabilities on August 25, 2026. The batch includes three Important...
CISA issued an alert detailing two critical FURUNO FA-50 vulnerabilities. These security flaws allow remote attackers to...
At a glance Malware family Grandoreiro banking trojan Threat actor Portuguese-speaking operators (suspected) Target or victims Bank...
TL;DR Adobe patched three critical flaws in Adobe Campaign Classic on August 25, 2026. All three score...
TL;DR Vercel patched two critical Next.js flaws that allow unauthenticated remote code execution. One is CVE-2026-75604, scoring...
TL;DR WatchGuard patched two critical flaws in its WatchGuard Agent for Windows. Both enable unauthenticated remote code...
Two severe SonicWall NetExtender vulnerabilities impact Linux users today. These security flaws allow remote attackers to write...
TL;DR Google shipped Chrome 152 to the stable channel on August 25, 2026. The Chrome 152 update...
TL;DR CISA disclosed 11 Ebyte NE2-D11 vulnerabilities on August 25, 2026. Four carry a critical 9.8 CVSS...
TL;DR Researchers published proof-of-concept exploit code for a Redis RCE vulnerability. The heap use-after-free lets a remote...
The Kaltura HTML5 Player Library contains two critical, unpatched vulnerabilities. These issues allow attackers to read local...
TL;DR OpenSSL shipped a security update on August 25, 2026, fixing nine vulnerabilities. Two rank as Moderate,...
TL;DR A critical flaw in TranslatePress lets unauthenticated attackers steal an administrator’s password reset link. Attackers can...
Security researchers have released full technical details and proof-of-concept exploit code for a critical SharePoint RCE vulnerability...
At a Glance Research BTR Reforged (Check Point Research) Component BTR.sys, the Windows Defender Boot-Time Removal driver...
Security researchers publicly disclosed a proof-of-concept exploit for CVE-2026-52923. This Linux kernel flaw carries a CVSS score...
TYPO3 developers recently patched a critical TYPO3 Powermail RCE flaw that attackers are exploiting in the wild....
At a glance Actor / Group Suspected Russian influence operators Activity Type Covert influence operation, social media...
Weidmueller recently published a security advisory addressing a critical Weidmueller router flaw alongside a high-severity bypass vulnerability....
At a glance Malware family Custom Java web shell (unnamed implant) Threat actor Clop / Cl0p (highly...
At a glance Actor / group Core Werewolf (suspected cyberespionage cluster) Activity type Phishing, remote access trojan,...