Skip to content
June 20, 2026
  • Linkedin
  • Twitter
  • Facebook
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Watchtower
  • Cyber Criminals
  • Data Leak
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Vulnerability Report
Light/Dark Button
“Boto Cor-de-Rosa”: Banking Malware Astaroth Pivots to WhatsApp in New Campaign NATS-as-C2 Sysdig CVE-2026-33017 Langflow RCE Microsoft Phone Link Hijack CloudZ Pheno Plugin Insider Threat BlackCat (ALPHV) OFAC Sanctions DPRK IT Workers Transparent Tribe APT36 React2Shell, EtherRAT SideWinder Espionage, Netlify Phishing DDNS Abuse, C2 Infrastructure Hacking Health Club
  • Cybercriminals

“Boto Cor-de-Rosa”: Banking Malware Astaroth Pivots to WhatsApp in New Campaign

Do Son January 12, 2026 0
The notorious Brazilian banking malware Astaroth has evolved again, this time turning one of the world’s most...
Read More Read more about “Boto Cor-de-Rosa”: Banking Malware Astaroth Pivots to WhatsApp in New Campaign
Pig Butchering-as-a-Service: How “Penguin” Industrialized Global Fraud Pig Butchering-as-a-Service (PBaaS) Crypto Fraud Economy
  • Cybercriminals

Pig Butchering-as-a-Service: How “Penguin” Industrialized Global Fraud

Do Son January 12, 2026 0
The world of “pig butchering” scams has evolved from chaotic boiler rooms into a streamlined, automated service...
Read More Read more about Pig Butchering-as-a-Service: How “Penguin” Industrialized Global Fraud
CVE-2026-22184 (CVSS 9.3): Critical zlib Flaw Opens Door to Global Buffer Overflow zlib Vulnerability CVE-2026-22184
  • Vulnerability Report

CVE-2026-22184 (CVSS 9.3): Critical zlib Flaw Opens Door to Global Buffer Overflow

Do Son January 12, 2026 0
A critical vulnerability has been discovered in zlib, the lossless data-compression engine used on “virtually any computer...
Read More Read more about CVE-2026-22184 (CVSS 9.3): Critical zlib Flaw Opens Door to Global Buffer Overflow
RustyWater Rising: MuddyWater Drops PowerShell for Stealthy Rust Implants axios Supply Chain Attack WAVESHAPER.V2 SnappyBee Malware Salt Typhoon Stately Taurus ScoringMathTea RAT, Lazarus Reflective DLL
  • Cyber Security
  • Malware

RustyWater Rising: MuddyWater Drops PowerShell for Stealthy Rust Implants

Do Son January 12, 2026 0
The notorious MuddyWater APT group has overhauled its arsenal, ditching its traditional scripting tools for a sophisticated...
Read More Read more about RustyWater Rising: MuddyWater Drops PowerShell for Stealthy Rust Implants
Unpatched & Exposed: Legacy Vivotek Cameras Broadcast Live Video to All Fortra BoKS vulnerability OS command injection, CVE-2026-9862 Altium Enterprise Server Vulnerability CVE-2026-9129 Path Traversal Patreon OAuth Vulnerability Identity Collision DRC INSIGHT Vulnerability Exam Data Hijacking Horner Automation PLC Industrial Brute Force Honeywell IQ4x Vulnerability CVE-2026-3611 DJI Romo vacuum security flaw Python Cryptography Vulnerability CVE-2026-26007 Open5GS Vulnerability CVE-2026-0622 Vivotek IP7137 Vulnerabilities CVE-2025-66049 Forcepoint DLP Vulnerability CVE-2025-14026 Cellopoint Secure Email Gateway - CVE-2024-9043
  • Vulnerability Report

Unpatched & Exposed: Legacy Vivotek Cameras Broadcast Live Video to All

Do Son January 12, 2026 0
Owners of legacy Vivotek IP7137 surveillance cameras have been dealt a harsh reality check: their devices are...
Read More Read more about Unpatched & Exposed: Legacy Vivotek Cameras Broadcast Live Video to All
China-Nexus Actor UAT-7290 Caught Targeting Telecoms in South Asia and Europe illegal streaming networks complex criminal enterprises UAT-7290 China-nexus Espionage Adversarial Misuse of Generative AI
  • Cyber Security

China-Nexus Actor UAT-7290 Caught Targeting Telecoms in South Asia and Europe

Do Son January 12, 2026 0
Cisco Talos has pulled the curtain back on UAT-7290, a threat actor operating out of the China-nexus...
Read More Read more about China-Nexus Actor UAT-7290 Caught Targeting Telecoms in South Asia and Europe
Game Over? Critical InputPlumber Flaws Expose Linux Gamers to Hijacking InputPlumber Vulnerability CVE-2025-66005
  • Vulnerability Report

Game Over? Critical InputPlumber Flaws Expose Linux Gamers to Hijacking

Do Son January 12, 2026 0
A utility designed to enhance the Linux gaming experience has been found to harbor critical security vulnerabilities...
Read More Read more about Game Over? Critical InputPlumber Flaws Expose Linux Gamers to Hijacking
Does Password Strength Matter In The Days of AI Cyber Attacks? cybersecurity Advertise
  • Technique

Does Password Strength Matter In The Days of AI Cyber Attacks?

Do Son January 10, 2026 0
Password advice used to be straightforward enough. Pick something hard to guess, change it sometimes, don’t stick...
Read More Read more about Does Password Strength Matter In The Days of AI Cyber Attacks?
The Atomic Engine: Meta Secures 6.6 GW of Nuclear Power to Fuel its AI Future Meta nuclear energy deals 6.6GW, Prometheus supercluster Ohio power
  • Technology

The Atomic Engine: Meta Secures 6.6 GW of Nuclear Power to Fuel its AI Future

Do Son January 10, 2026 0
As the architectural complexity and parameter counts of AI models expand exponentially, the colossal power consumption of...
Read More Read more about The Atomic Engine: Meta Secures 6.6 GW of Nuclear Power to Fuel its AI Future
The Frictionless Frontier: Microsoft Launches “Copilot Checkout” at NRF 2026 Microsoft Copilot Checkout NRF 2026, agentic commerce AI shopping
  • Technology

The Frictionless Frontier: Microsoft Launches “Copilot Checkout” at NRF 2026

Do Son January 10, 2026 0
At the NRF 2026 retail exhibition held concurrently with CES 2026, Microsoft inaugurated “Copilot Checkout,” a feature...
Read More Read more about The Frictionless Frontier: Microsoft Launches “Copilot Checkout” at NRF 2026
The Gemini Overhaul: Google Unlocks Free AI Writing and “AI Inbox” for Gmail Gmail Gemini 3 update January 2026, Gmail AI Inbox free vs premium
  • Technology

The Gemini Overhaul: Google Unlocks Free AI Writing and “AI Inbox” for Gmail

Do Son January 10, 2026 0
Following the rollout for Workspace clientele, Google has announced a suite of Gemini-powered enhancements for the general...
Read More Read more about The Gemini Overhaul: Google Unlocks Free AI Writing and “AI Inbox” for Gmail
No Manifesto Needed: Linus Torvalds Blasts “AI Slop” Fearmongering Linux Kernel 7.1 release Linux Kernel update, AMD ZEN 6 support, Linux driver fixes Linux Kernel 7.1 i486 support Linux 7.0 HIPPI support removal, legacy networking protocol retirement Linus Torvalds AI slop Linux kernel, Lorenzo Stoakes AI tool debate Linux Kernel Rust CVE-2025-68260, Android Binder Rust Race Condition TSEM Security Module Controversy, Linus Torvalds LSM Dispute Kernel Panic, PoC released Linux Kernel 6.16, File System Fixes CVE-2023-42753 - Linux Kernel Developers
  • Linux

No Manifesto Needed: Linus Torvalds Blasts “AI Slop” Fearmongering

Do Son January 10, 2026 0
It appears the burgeoning wave of AI-generated code has yet to penetrate the Linux kernel as deeply...
Read More Read more about No Manifesto Needed: Linus Torvalds Blasts “AI Slop” Fearmongering
The Exit Strategy: Microsoft Finally Grants Admins a Way to Uninstall Copilot Windows 11 Build 26220.7535 Copilot removal, Remove Microsoft Copilot App Group Policy
  • Windows

The Exit Strategy: Microsoft Finally Grants Admins a Way to Uninstall Copilot

Do Son January 10, 2026 0
Microsoft has integrated its artificial intelligence utility, Microsoft Copilot, into the Windows 11 architecture; however, this inclusion...
Read More Read more about The Exit Strategy: Microsoft Finally Grants Admins a Way to Uninstall Copilot
Iran Tests Academic “Whitelists” Amid Nationwide 2026 Blackout Iran internet blackout 2026, academic ASN connectivity surge
  • Technology

Iran Tests Academic “Whitelists” Amid Nationwide 2026 Blackout

Do Son January 10, 2026 0
Iran has currently severed all access to the international internet due to internal domestic unrest. Observational data...
Read More Read more about Iran Tests Academic “Whitelists” Amid Nationwide 2026 Blackout
The End of Offline Era: Microsoft Kills Phone Activation After 24 Years HTTP.sys RCE vulnerability, Windows HTTP stack exploit, CVE-2026-47291 Netlogon RCE vulnerability Exploited in the wild Secure Boot certificate renewal 2026, Windows 11 UEFI update Community-First AI Infrastructure, Microsoft self-funding energy mandate aka.ms/aoh online portal CVE-2025-55681, Windows DWM Elevation Windows Administrator Protection, CVE-2025-60718 Microsoft AI Compute, IREN Infrastructure Microsoft Japan PPA, Renewable Energy Microsoft AI Investment, Cloud Expansion Microsoft Azure, Startup Credits Infinite Workday, AI in Work Microsoft Russia, Bankruptcy AI code generation, Microsoft AI Microsoft Layoffs, Restructuring
  • Windows

The End of Offline Era: Microsoft Kills Phone Activation After 24 Years

Do Son January 9, 2026 0
Earlier reports indicated that vigilant observers had discovered the quiet decommissioning of Microsoft’s venerable telephone activation system....
Read More Read more about The End of Offline Era: Microsoft Kills Phone Activation After 24 Years
Collateral Damage: Microsoft Defender Blocks Official MAS Script in Malware War Microsoft Activation Scripts block, Trojan:PowerShell/FakeMas.DA!MTB
  • Malware

Collateral Damage: Microsoft Defender Blocks Official MAS Script in Malware War

Do Son January 9, 2026 0
Microsoft is evidently cognizant of the Microsoft Activation Scripts (MAS), a popular open-source utility; moreover, the corporation...
Read More Read more about Collateral Damage: Microsoft Defender Blocks Official MAS Script in Malware War
The AI Physician: OpenAI Launches “ChatGPT Health” to Sync Your Medical Records ChatGPT Health portal integration, AI medical data privacy 2026
  • Technology

The AI Physician: OpenAI Launches “ChatGPT Health” to Sync Your Medical Records

Do Son January 9, 2026 0
OpenAI has unveiled a specialized portal entitled “ChatGPT Health,” a nascent feature that empowers users to integrate...
Read More Read more about The AI Physician: OpenAI Launches “ChatGPT Health” to Sync Your Medical Records
The $20B Handover: Apple Card Dumps Goldman Sachs for JPMorgan Chase Apple Card JPMorgan Chase transition, Goldman Sachs Apple Card exit 2026 Apple Wallet Digital Passport TSA Digital ID
  • Technology

The $20B Handover: Apple Card Dumps Goldman Sachs for JPMorgan Chase

Do Son January 9, 2026 0
Apple has recently announced a definitive strategic alliance with JPMorgan Chase, the premier financial institution in the...
Read More Read more about The $20B Handover: Apple Card Dumps Goldman Sachs for JPMorgan Chase
Public Exploit Released: Critical Trend Micro Flaw Grants SYSTEM Access libheif Vulnerability CVE-2025-65586 Trend Micro RCE CVE-2025-69258 SessionReaper CVE-2025-54236 VS Code Marketplace, supply chain attack npm Supply Chain, Toptal Compromise Ruckus AP Vulnerability
  • Vulnerability Report

Public Exploit Released: Critical Trend Micro Flaw Grants SYSTEM Access

Do Son January 9, 2026 0
Trend Micro has issued a critical security alert for users of Apex Central (on-premise), patching a dangerous...
Read More Read more about Public Exploit Released: Critical Trend Micro Flaw Grants SYSTEM Access
Bluetooth Broken? Apache NimBLE Flaws Enable Spoofing & Eavesdropping Apache NimBLE Vulnerabilities Bluetooth Spoofing
  • Vulnerability Report

Bluetooth Broken? Apache NimBLE Flaws Enable Spoofing & Eavesdropping

Do Son January 9, 2026 0
The Apache Software Foundation has issued urgent patches for Apache NimBLE, the open-source Bluetooth 5.4 stack used...
Read More Read more about Bluetooth Broken? Apache NimBLE Flaws Enable Spoofing & Eavesdropping
❮ Prev Page
Next Page ❯

Search

Translation

CVE WATCHTOWER
🚨

Receive alerts for vulnerabilities being exploited in the wild.

⚡

Get notified instantly when a Proof of Concept (PoC) exploit is published.

🔍

Access critical info on vulnerabilities even when marked as "RESERVED".

🧠

Insights powered by decades of expertise and global intelligence sources.

🎯

Customize alerts with up to 10 keywords for your specific tech stack.

📊

Export the raw CVE database for SIEM integration and reporting.

Upgrade Package

🔴 Live Critical Threats

  • CVE-2026-11551CVSS 9.8
    The Branda plugin for WordPress is vulnerable to privilege escalation via account...
  • CVE-2026-56081CVSS 9.1
    Cap-go before 12.128.2 contains an authentication logic flaw that lets an attacker...
  • CVE-2026-56073CVSS 9.4
    Cap-go before 12.128.2 contains an authentication bypass vulnerability in OTP verification that...
  • CVE-2026-55447CVSS 9.6
    ### Summary All components based on `BaseFileComponent` are vulnerable to the following...
  • CVE-2026-48584CVSS 9.9
    Execution with unnecessary privileges in Azure Synapse allows an authorized attacker to...
  • CVE-2026-48582CVSS 9.6
    Missing authorization in Microsoft Exchange Online allows an authorized attacker to elevate...
  • CVE-2026-45480CVSS 10.0
    Improper authentication in Azure Active Directory allows an unauthorized attacker to elevate...
  • CVE-2026-55255CVSS 9.9
    ## Summary Insecure Direct Object Reference (IDOR) vulnerability in `/api/v1/responses` endpoint allows...
  • CVE-2026-54782CVSS 10.0
    ### Impact Full impersonation of any principal the trusted STS could have...
  • CVE-2026-48773CVSS 9.8
    ProxySQL is a proxy for MySQL and its forks, as well as...
Powered by CVE WATCHTOWER

Recent Zero-Day Vulnerabilities

  • GreatXML BitLocker Bypass: Public PoC Exploit Disclosed
  • Check Point VPN Vulnerability Exploited in the Wild with Ransomware Links
  • Weekly Threat Intelligence: June 1 to June 7, 2026
  • Cisco SD-WAN Vulnerability Exploited in the Wild with Root RCE Risks
  • Android Zero-Day Flaw Exploited in the Wild: June 2026 Patches Released
  • Exploited in the Wild: Critical OWA Spoofing Flaw (CVE-2026-42897) Hits On-Premises Exchange Servers
Our Websites
  • Penetration Testing Tools
  • The Daily Information Technology
  • Daily CyberSecurity

    • About SecurityOnline.info
    • Advertise with us
    • Announcement
    • Contact
    • Contributor Register
    • Login
    • Disclaimer
    • Privacy Policy
    • About SecurityOnline.info
    • Advertise on SecurityOnline.info
    • Contact Us

    When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

    • Disclaimer
    • Privacy Policy
    • DMCA NOTICE
    • Linkedin
    • Twitter
    • Facebook
    • Youtube
    © 2017 - 2026 Daily CyberSecurity. All Rights Reserved.