Skip to content
July 27, 2026
  • Linkedin
  • Twitter
  • Facebook
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Data
    • CVE Watchtower
    • Top Exploited CVEs
    • CVE Stats by Vendor
    • Q2 2026 Report
  • Cyber Criminals
  • Data Leak
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Weekly Recap
Light/Dark Button
Fortune Favors the AI: Crypto.com CEO Drops $70M on AI.com to Launch “Synthetic Secretaries” at Super Bowl LX Kris Marszalek AI.com launch
  • Technology

Fortune Favors the AI: Crypto.com CEO Drops $70M on AI.com to Launch “Synthetic Secretaries” at Super Bowl LX

Do Son February 9, 2026 0
Read More Read more about Fortune Favors the AI: Crypto.com CEO Drops $70M on AI.com to Launch “Synthetic Secretaries” at Super Bowl LX
Code Red: 4 Critical SandboxJS Flaws (CVSS 10.0) Allow Host Takeover shell-quote command injection AI-Driven Vulnerabilities Q1 2026 Cyber Threats vm2 Sandbox Escape Node.js RCE upKeeper Privilege Escalation CVE-2026-2449 Pharos Controls Vulnerability Root Access Exploit Cybersecurity Vulnerability Roundup CVSS 10.0 Flaws Shadow Archives CVE-2026-0866 MS-Agent Prompt Injection CVE-2026-2256 basic-ftp Path Traversal CVE-2026-27699 telnetd Root Vulnerability CVE-1999-0073 Regression USR-W610 Vulnerabilities End-of-Life IoT Security IceWarp Security Update IceWarp Vulnerabilities Airleader Master Vulnerability CVE-2026-1358 ZLAN5143D Vulnerability CISA ICS Advisory Acronis Cyber Protect Vulnerability CVE-2025-30411 WAGO 852 Vulnerability OT Network Security SandboxJS Vulnerability Sandbox Escape (CVSS 10.0) Kubernetes Local Path Provisioner CVE-2025-62878 CISA Unresponsive Vendors Avation & RISS Vulnerabilities KiloView Vulnerability CVE-2026-1453 OpenClaw RCE vulnerability Johnson Controls Vulnerability CVE-2025-26385 SandboxJS Vulnerability CVE-2026-23830 ibaPDA Vulnerability CVE-2025-14988 Protobuf Vulnerability CVE-2026-0994 AVEVA Process Optimization Vulnerability CVE-2025-61937 ConnectWise PSA Vulnerability CVE-2026-0695 Aruba VIA Vulnerability CVE-2025-37186 aiohttp v3.13.3, Denial of Service (DoS) SmarterMail RCE, CVE-2025-52691 Airoha RACE, Headphone Jacking HPE OneView RCE CVE-2025-37164 FreePBX Auth Bypass, PBX Takeover ScreenConnect Config Flaw, Untrusted Extensions Ruby SAML Auth Bypass, XML Parser Differential Devolutions SQL Injection, Password Manager Flaw Vivotek Unauthenticated RCE, EOL IP Camera Flaw Lynx+ Critical Flaw, Unauthenticated Reset Firebox Default Credentials, CVE-2025-59396 Veeder-Root RCE, Critical ATG Flaw ArcGIS Server SQLi Watchdoc RCE, CVE-2025-58384 Delta DIALink Daikin Security Gateway, authentication bypass Frostbyte10, industrial controller security SunPower, vulnerability Ubiquiti UniFi Connect, EV Station Vulnerabilities Adobe Experience Manager, RCE Vulnerability UniFi Access, Command Injection LDAPNightmare - CVE-2025-1316
  • Vulnerability Report

Code Red: 4 Critical SandboxJS Flaws (CVSS 10.0) Allow Host Takeover

Do Son February 9, 2026 0
Read More Read more about Code Red: 4 Critical SandboxJS Flaws (CVSS 10.0) Allow Host Takeover
Digital Detox Mandate: EU Charges TikTok Over “Autopilot” Design and Minor Safety Failures TikTok addictive design breach TikTok, ByteDance TikTok Zero-Day - TikTok Play Store Trump Extends TikTok
  • Technology

Digital Detox Mandate: EU Charges TikTok Over “Autopilot” Design and Minor Safety Failures

Do Son February 9, 2026 0
Read More Read more about Digital Detox Mandate: EU Charges TikTok Over “Autopilot” Design and Minor Safety Failures
The “Compatibility” Trap: New Mac Malware Tricks Users into Bypassing TCC OSX/Amos Stealer Electron ASAR Trojan MioLab Malware macOS Security MacSync Stealer macOS Malware ambar-src npm Malware Supply Chain Typosquatting Matryoshka Mac Malware ClickFix Crypto Scam Infostealer Evolution macOS Malware Predator Spyware Intellexa Anti-Analysis XCSSET macOS Malware, Xcode Supply Chain
  • Malware

The “Compatibility” Trap: New Mac Malware Tricks Users into Bypassing TCC

Do Son February 9, 2026 0
Read More Read more about The “Compatibility” Trap: New Mac Malware Tricks Users into Bypassing TCC
Tearing Down the Walled Garden: How Google Quick Share Finally Bridged the AirDrop Chasm Google Quick Share AirDrop Google Quick Share AirDrop interoperability, Pixel 9 AirDrop support 2026 Snapdragon AirDrop Quick Share Interoperability Quick Share AirDrop Cross-Platform File Transfer
  • Android

Tearing Down the Walled Garden: How Google Quick Share Finally Bridged the AirDrop Chasm

Do Son February 9, 2026 0
Read More Read more about Tearing Down the Walled Garden: How Google Quick Share Finally Bridged the AirDrop Chasm
The “All-in-One” Spy: DKnife Malware Hijacks Routers to Swap Downloads DKnife Malware Router AitM Framework
  • Cyber Security
  • Malware

The “All-in-One” Spy: DKnife Malware Hijacks Routers to Swap Downloads

Do Son February 9, 2026 0
Read More Read more about The “All-in-One” Spy: DKnife Malware Hijacks Routers to Swap Downloads
Double the RAM, Half the Stress: Raspberry Pi 4’s Secret Design Overhaul to Combat the 2026 Memory Crisis Raspberry Pi AI Agents Raspberry Pi 4 dual-memory revision Raspberry Pi Price Hike AI Memory Demand
  • Technology

Double the RAM, Half the Stress: Raspberry Pi 4’s Secret Design Overhaul to Combat the 2026 Memory Crisis

Do Son February 9, 2026 0
Read More Read more about Double the RAM, Half the Stress: Raspberry Pi 4’s Secret Design Overhaul to Combat the 2026 Memory Crisis
“JackMa” & ShadowGuard: TGR-STA-1030 Spies on 37 Nations via Linux Rootkit TGR-STA-1030 Espionage ShadowGuard Rootkit
  • Cyber Security
  • Malware

“JackMa” & ShadowGuard: TGR-STA-1030 Spies on 37 Nations via Linux Rootkit

Do Son February 9, 2026 0
Read More Read more about “JackMa” & ShadowGuard: TGR-STA-1030 Spies on 37 Nations via Linux Rootkit
CVE-2026-1731: Critical BeyondTrust Flaw (CVSS 9.9) Allows Pre-Auth RCE BeyondTrust Vulnerability CVE-2026-1731 CVE-2024-12356 - CVE-2025-0889 BeyondTrust Privilege Escalation, Windows Security
  • Vulnerability Report

CVE-2026-1731: Critical BeyondTrust Flaw (CVSS 9.9) Allows Pre-Auth RCE

Do Son February 9, 2026 0
Read More Read more about CVE-2026-1731: Critical BeyondTrust Flaw (CVSS 9.9) Allows Pre-Auth RCE
Stan Ghouls Target Uzbekistan and Russia with NetSupport RAT Stan Ghouls (Bloody Wolf) NetSupport RAT
  • Malware

Stan Ghouls Target Uzbekistan and Russia with NetSupport RAT

Do Son February 9, 2026 0
Read More Read more about Stan Ghouls Target Uzbekistan and Russia with NetSupport RAT
CVE-2026-25526: Critical Jinjava Flaw (CVSS 9.8) Permits Remote Code Execution Jinjava Vulnerability CVE-2026-25526 CVE-2025-59340 HubSpot RCE
  • Vulnerability Report

CVE-2026-25526: Critical Jinjava Flaw (CVSS 9.8) Permits Remote Code Execution

Do Son February 9, 2026 0
Read More Read more about CVE-2026-25526: Critical Jinjava Flaw (CVSS 9.8) Permits Remote Code Execution
“Hard Working” Thieves: Rublevka Team Steals $10M in Solana Scam-as-a-Service FIFA website spoofing scams FBI World Cup alert Pig Butchering Scam Jingliang Su Sentencing Meta China Scam Ads, Zuckerberg Revenue Conflict Trading Bot Scam BEC Scam Rental Payment Fraud
  • Cybercriminals

“Hard Working” Thieves: Rublevka Team Steals $10M in Solana Scam-as-a-Service

Do Son February 9, 2026 0
Read More Read more about “Hard Working” Thieves: Rublevka Team Steals $10M in Solana Scam-as-a-Service
Critical RCE Flaws (CVSS 9.3) Exposed in Lexmark Printers CVE-2023-23560 Lexmark Printer Vulnerability CVE-2025-65078
  • Vulnerability

Critical RCE Flaws (CVSS 9.3) Exposed in Lexmark Printers

Do Son February 9, 2026 0
Read More Read more about Critical RCE Flaws (CVSS 9.3) Exposed in Lexmark Printers
CVE-2025-62878: Critical 10.0 Vulnerability Found in Kubernetes Local Path Provisioner shell-quote command injection AI-Driven Vulnerabilities Q1 2026 Cyber Threats vm2 Sandbox Escape Node.js RCE upKeeper Privilege Escalation CVE-2026-2449 Pharos Controls Vulnerability Root Access Exploit Cybersecurity Vulnerability Roundup CVSS 10.0 Flaws Shadow Archives CVE-2026-0866 MS-Agent Prompt Injection CVE-2026-2256 basic-ftp Path Traversal CVE-2026-27699 telnetd Root Vulnerability CVE-1999-0073 Regression USR-W610 Vulnerabilities End-of-Life IoT Security IceWarp Security Update IceWarp Vulnerabilities Airleader Master Vulnerability CVE-2026-1358 ZLAN5143D Vulnerability CISA ICS Advisory Acronis Cyber Protect Vulnerability CVE-2025-30411 WAGO 852 Vulnerability OT Network Security SandboxJS Vulnerability Sandbox Escape (CVSS 10.0) Kubernetes Local Path Provisioner CVE-2025-62878 CISA Unresponsive Vendors Avation & RISS Vulnerabilities KiloView Vulnerability CVE-2026-1453 OpenClaw RCE vulnerability Johnson Controls Vulnerability CVE-2025-26385 SandboxJS Vulnerability CVE-2026-23830 ibaPDA Vulnerability CVE-2025-14988 Protobuf Vulnerability CVE-2026-0994 AVEVA Process Optimization Vulnerability CVE-2025-61937 ConnectWise PSA Vulnerability CVE-2026-0695 Aruba VIA Vulnerability CVE-2025-37186 aiohttp v3.13.3, Denial of Service (DoS) SmarterMail RCE, CVE-2025-52691 Airoha RACE, Headphone Jacking HPE OneView RCE CVE-2025-37164 FreePBX Auth Bypass, PBX Takeover ScreenConnect Config Flaw, Untrusted Extensions Ruby SAML Auth Bypass, XML Parser Differential Devolutions SQL Injection, Password Manager Flaw Vivotek Unauthenticated RCE, EOL IP Camera Flaw Lynx+ Critical Flaw, Unauthenticated Reset Firebox Default Credentials, CVE-2025-59396 Veeder-Root RCE, Critical ATG Flaw ArcGIS Server SQLi Watchdoc RCE, CVE-2025-58384 Delta DIALink Daikin Security Gateway, authentication bypass Frostbyte10, industrial controller security SunPower, vulnerability Ubiquiti UniFi Connect, EV Station Vulnerabilities Adobe Experience Manager, RCE Vulnerability UniFi Access, Command Injection LDAPNightmare - CVE-2025-1316
  • Vulnerability Report

CVE-2025-62878: Critical 10.0 Vulnerability Found in Kubernetes Local Path Provisioner

Do Son February 9, 2026 0
Read More Read more about CVE-2025-62878: Critical 10.0 Vulnerability Found in Kubernetes Local Path Provisioner
APT28 Weaponizes Office Flaw to Spy on NATO & Military NATS-as-C2 Sysdig CVE-2026-33017 Langflow RCE Microsoft Phone Link Hijack CloudZ Pheno Plugin Insider Threat BlackCat (ALPHV) OFAC Sanctions DPRK IT Workers Transparent Tribe APT36 React2Shell, EtherRAT SideWinder Espionage, Netlify Phishing DDNS Abuse, C2 Infrastructure Hacking Health Club
  • Cyber Security
  • Malware

APT28 Weaponizes Office Flaw to Spy on NATO & Military

Do Son February 9, 2026 0
Read More Read more about APT28 Weaponizes Office Flaw to Spy on NATO & Military
Silent Army: SystemBC Botnet Infects 10,000+ IPs & Government Networks Global distribution of IP addresses map
  • Malware

Silent Army: SystemBC Botnet Infects 10,000+ IPs & Government Networks

Do Son February 9, 2026 0
Read More Read more about Silent Army: SystemBC Botnet Infects 10,000+ IPs & Government Networks
CVE-2026-1868: Critical GitLab Gateway Flaw (CVSS 9.9) Allows RCE GitLab AI Gateway Vulnerability CVE-2026-1868 CVE-2025-0314 GitLab Security Update CVE-2025-9222
  • Vulnerability Report

CVE-2026-1868: Critical GitLab Gateway Flaw (CVSS 9.9) Allows RCE

Do Son February 8, 2026 0
Read More Read more about CVE-2026-1868: Critical GitLab Gateway Flaw (CVSS 9.9) Allows RCE
Apple’s Golden Jubilee: Foldables, “Synthetic” Siri, and the Rise of Tim Cook’s Successor Vibe Coding apps Vibe Coding App Store surge Vibe Coding App Store Apple 50th Anniversary hardware Brazil CADE Apple settlement, iOS third-party app stores Brazil Tim Cook Succession Apple CEO Rumors App Store Mini Apps 15% Commission Fee iOS Japan Sideloading, Third-Party App Stores Web App Store, App Discovery Apple Age Verification, Texas SB2420 Apple AI acquisitions App Store, Antitrust Apple WebKit, Japan Regulations App Store Age Ratings, Parental Controls Apple App Store, Epic Games Lawsuit
  • Technology

Apple’s Golden Jubilee: Foldables, “Synthetic” Siri, and the Rise of Tim Cook’s Successor

Do Son February 8, 2026 0
Read More Read more about Apple’s Golden Jubilee: Foldables, “Synthetic” Siri, and the Rise of Tim Cook’s Successor
The Print Purge: Microsoft Officially Kills Legacy V3 and V4 Drivers in Windows 11 Windows 11 app updates Windows Insider preview build, Calculator app update, built-in Windows apps Windows 11 KB5089549 network lag Windows 11 Home to Pro Education upgrade Windows 11 Start menu update Windows 11 update KB5079391 Windows 11 KB5085516 OOB update Windows 11 C drive permission error Windows 11 C drive access denied Windows native NVMe driver UEFI Secure Boot certificate rotation Windows 11 printer driver policy Windows 11 printer driver deprecation Windows 11 Build 26300 Sysmon Windows 11 Storage settings restriction Windows 11 Build 26300.7674, Windows Insider channel migration 2026 Windows 11 Update Fix KB5073455 shutdown bug, Secure Launch restart loop Windows 11 File Explorer search performance, Search Indexer RAM usage fix Windows 11 Gaming PC Specs, NVMe DirectStorage Windows 10 End of Support Windows 11 Slow Adoption Windows 11 Crash Loop KB5062553 Bug Update and Shut Down, KB5067036 Windows authentication, Kerberos bug Windows 11 fix, localhost bug Windows 11 Update Restart, Update and Shut Down Windows SMBv1 Windows 11 Arm, Easy Anti-Cheat Windows 11 error, Pluton Windows 11 24H2, Easy Anti-Cheat Windows Firewall Bug, Microsoft Update Error Windows 11, JScript9Legacy Windows Activation, TSforge Windows 11 Update, Firewall Error Windows 11 25H2, Annual Update Windows Resiliency Initiative, Kernel Security Windows 11 Upgrade, ESU Program Windows 11 Recall, Data Export Windows 11 Easy Anti-Cheat Windows 11 Update, Cumulative Update Windows Update, ACPI.sys Windows Updates, Enterprise Software Windows 11 Start Data Encryption Standard Printing Problems Windows 11 updates Estimated installation time Smart App Control, Windows 11 security
  • Windows

The Print Purge: Microsoft Officially Kills Legacy V3 and V4 Drivers in Windows 11

Do Son February 8, 2026 0
Read More Read more about The Print Purge: Microsoft Officially Kills Legacy V3 and V4 Drivers in Windows 11
The AI Bureau is Open: OpenAI Frontier Arrives to Govern the Global Explosion of “Synthetic Employees” OpenAI confidential IPO filing OpenAI code signing certificate rotation AI private equity joint ventures OpenAI Axios Supply Chain Attack OpenAI Promptfoo acquisition OpenAI military resignation ChatGPT Plus military fraud OpenAI smart speaker Jony Ive OpenAI Frontier platform ChatGPT AI age prediction 2026, OpenAI Persona age verification Sarah Friar OpenAI infrastructure, AI Scaling Law revenue OpenAI Gumdrop AI pen, Jony Ive OpenAI hardware 2027 OpenAI New CRO, Denise Dresser Monetization Strategy OpenAI Competitive Pressure Gemini 3 Overtake OpenAI Infrastructure, AI Closed Loop Economy
  • Technology

The AI Bureau is Open: OpenAI Frontier Arrives to Govern the Global Explosion of “Synthetic Employees”

Do Son February 8, 2026 0
Read More Read more about The AI Bureau is Open: OpenAI Frontier Arrives to Govern the Global Explosion of “Synthetic Employees”
Swipe Left on Anonymity: Apple Tightens App Store Rules to Ban Random and Anonymous Chat Apps Apple vs Epic Supreme Court Apple App Store Guidelines update Apple Clips Discontinued, Video App EOL Apple EU DMA
  • Technology

Swipe Left on Anonymity: Apple Tightens App Store Rules to Ban Random and Anonymous Chat Apps

Do Son February 8, 2026 0
Read More Read more about Swipe Left on Anonymity: Apple Tightens App Store Rules to Ban Random and Anonymous Chat Apps
The “Synthetic TikTok” Arrives: Meta Spins Out “Vibes” as a Dedicated Home for AI Video Slop Instagram account recovery flaw Meta incident notification Meta AI data center Louisiana Meta AI news partnerships Meta AI Shopping Assistant Meta Vibes standalone app Meta Oversight Board account ban, Instagram permanent suspension review Meta Compute initiative 2026, personal superintelligence nuclear power Meta AI News Licensing Publisher Content Deal Meta Project Mercury Omnilingual ASR 1600 Languages Meta $600B Investment, AI Data Centers Meta AI strategy, Llama models Meta AI Glasses, Smart Glasses
  • Technology

The “Synthetic TikTok” Arrives: Meta Spins Out “Vibes” as a Dedicated Home for AI Video Slop

Do Son February 8, 2026 0
Read More Read more about The “Synthetic TikTok” Arrives: Meta Spins Out “Vibes” as a Dedicated Home for AI Video Slop
❮ Prev Page
Next Page ❯

Search

Translation

CVE WATCHTOWER
🚨

Receive alerts for vulnerabilities being exploited in the wild.

⚡

Get notified instantly when a Proof of Concept (PoC) exploit is published.

🔍

Access critical info on vulnerabilities even when marked as "RESERVED".

🧠

Insights powered by decades of expertise and global intelligence sources.

🎯

Customize alerts with up to 10 keywords for your specific tech stack.

📊

Export the raw CVE database for SIEM integration and reporting.

Upgrade Package

🚨 Active Exploits in the Wild

  • CVE-2026-16723CVSS 9.0
    A remote code execution (RCE) vulnerability exists in fastjson 1.2.68 through 1.2.83. This vulnerability is exploitable under fastjson\'s stock...
    Admin intel📅 Updated: Jul 25, 2026
  • CVE-2026-16232CVSS 9.1
    An authentication bypass vulnerability in the Check Point SmartConsole login process allows an unauthenticated remote attacker to obtain...
    CISA KEV📅 Added to KEV: Jul 22, 2026
  • CVE-2026-50522CVSS 9.8
    Deserialization of untrusted data in Microsoft Office SharePoint allows an unauthorized attacker to execute code over a network.
    Admin intelCISA KEV📅 Added to KEV: Jul 22, 2026📅 Updated: Jul 21, 2026
  • CVE-2026-63030CVSS 9.8
    WordPress 6.9.x before 6.9.5 and 7.0.x before 7.0.2 is affected by a REST API batch endpoint route confusion...
    Admin intelCISA KEV📅 Added to KEV: Jul 21, 2026📅 Updated: Jul 21, 2026
  • CVE-2026-60137CVSS 5.9
    WordPress 6.8.x before 6.8.6, 6.9.x before 6.9.5, and 7.0.x before 7.0.2 does not properly sanitise the author__not_in parameter...
    Admin intelCISA KEV📅 Added to KEV: Jul 21, 2026📅 Updated: Jul 21, 2026
  • CVE-2026-0770CVSS 9.8
    Langflow exec_globals Inclusion of Functionality from Untrusted Control Sphere Remote Code Execution Vulnerability. This vulnerability allows remote attackers...
    CISA KEV📅 Added to KEV: Jul 21, 2026
  • CVE-2021-27137CVSS 8.1
    An issue was discovered in router/upnp/src/ssdp.c in DD-WRT before 45724. An unsafe strcpy in the UPnP handling functionality...
    CISA KEV📅 Added to KEV: Jul 21, 2026
  • CVE-2026-6875CVSS 9.5
    ServiceNow has addressed a remote code execution vulnerability that was identified in the ServiceNow AI platform. This vulnerability...
    Admin intel📅 Updated: Jul 18, 2026
Powered by CVE Watchtower

🔴 Live Critical Threats

  • CVE-2026-64530CVSS 9.8
    In the Linux kernel, the following vulnerability has been resolved: net/sched: cls_api:...
  • CVE-2026-66013CVSS 9.3
    OpenRemote before 1.26.2 contains an authentication bypass vulnerability in the console registration...
  • CVE-2026-66012CVSS 10.0
    SiYuan before v3.7.2 contains a missing authorization vulnerability in the POST /mcp...
  • CVE-2026-64523CVSS 9.8
    In the Linux kernel, the following vulnerability has been resolved: net/handshake: Take...
  • CVE-2026-64459CVSS 9.8
    In the Linux kernel, the following vulnerability has been resolved: tcp: restore...
  • CVE-2026-64450CVSS 9.1
    In the Linux kernel, the following vulnerability has been resolved: tipc: fix...
  • CVE-2026-64439CVSS 9.8
    In the Linux kernel, the following vulnerability has been resolved: crypto: krb5...
  • CVE-2026-64410CVSS 9.8
    In the Linux kernel, the following vulnerability has been resolved: netfilter: flowtable:...
  • CVE-2026-64399CVSS 9.8
    In the Linux kernel, the following vulnerability has been resolved: ksmbd: add...
  • CVE-2026-64397CVSS 9.8
    In the Linux kernel, the following vulnerability has been resolved: ksmbd: serialize...
Powered by CVE WATCHTOWER

Our Websites
  • Penetration Testing Tools
  • The Daily Information Technology
  • Top Exploited CVEs
  • Daily CyberSecurity

    • About SecurityOnline.info
    • Advertise with us
    • Announcement
    • Contact
    • Contributor Register
    • Login
    • Disclaimer
    • DCMA
    • Privacy Policy
    • About SecurityOnline.info
    • Advertise on SecurityOnline.info
    • Contact Us

    When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

    • CVE Watchtower
    • CVE Statistics by Vendor 2026
    • Q2 2026 Report
    • Top Exploited CVEs
    • Linkedin
    • Twitter
    • Facebook
    • Youtube
    © 2017 - 2026 Daily CyberSecurity. All Rights Reserved.