Skip to content
July 28, 2026
  • Linkedin
  • Twitter
  • Facebook
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Data
    • CVE Watchtower
    • Top Exploited CVEs
    • CVE Stats by Vendor
    • Q2 2026 Report
  • Cyber Criminals
  • Data Leak
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Weekly Recap
Light/Dark Button
WhisperPair: Critical Fast Pair Flaw Exposes Headphones to Hijacking WhisperPair Vulnerability Google Fast Pair Flaw
  • Vulnerability Report

WhisperPair: Critical Fast Pair Flaw Exposes Headphones to Hijacking

Do Son January 20, 2026 0
Read More Read more about WhisperPair: Critical Fast Pair Flaw Exposes Headphones to Hijacking
Trojanized PDF Editor: “TamperedChef” Campaign Bypasses Windows SmartScreen TamperedChef Malvertising AppSuite PDF Editor
  • Malware

Trojanized PDF Editor: “TamperedChef” Campaign Bypasses Windows SmartScreen

Do Son January 20, 2026 0
Read More Read more about Trojanized PDF Editor: “TamperedChef” Campaign Bypasses Windows SmartScreen
Fake Windows Executables Target macOS: Inside the “MonetaStealer” Discovery MonetaStealer macOS Malware
  • Malware

Fake Windows Executables Target macOS: Inside the “MonetaStealer” Discovery

Do Son January 20, 2026 0
Read More Read more about Fake Windows Executables Target macOS: Inside the “MonetaStealer” Discovery
The Outlook Freeze: New Windows 11 Update Breaks POP3 Accounts in Outlook Classic Exfil Out&Look Microsoft 365 Logging Gap Outlook Classic KB5074109 freeze, January 2026 POP3 PST bug Outlook Classic POP3 freeze, KB5074109 Windows 11 bug Outlook, CPU Usage Outlook lag Outlook Lite discontinued
  • Windows

The Outlook Freeze: New Windows 11 Update Breaks POP3 Accounts in Outlook Classic

Do Son January 19, 2026 0
Read More Read more about The Outlook Freeze: New Windows 11 Update Breaks POP3 Accounts in Outlook Classic
The Patch After the Patch: Microsoft Issues Emergency Fix for Remote Desktop and Shutdown Bugs Windows 11 FAT32 limit Microsoft OOB update January 2026, Remote Desktop login shutdown bug Windows Edge Light PowerToys Ring Light
  • Windows

The Patch After the Patch: Microsoft Issues Emergency Fix for Remote Desktop and Shutdown Bugs

Do Son January 19, 2026 0
Read More Read more about The Patch After the Patch: Microsoft Issues Emergency Fix for Remote Desktop and Shutdown Bugs
The Utility of Intelligence: Sarah Friar Reveals OpenAI’s $20B Infrastructure Roadmap OpenAI confidential IPO filing OpenAI code signing certificate rotation AI private equity joint ventures OpenAI Axios Supply Chain Attack OpenAI Promptfoo acquisition OpenAI military resignation ChatGPT Plus military fraud OpenAI smart speaker Jony Ive OpenAI Frontier platform ChatGPT AI age prediction 2026, OpenAI Persona age verification Sarah Friar OpenAI infrastructure, AI Scaling Law revenue OpenAI Gumdrop AI pen, Jony Ive OpenAI hardware 2027 OpenAI New CRO, Denise Dresser Monetization Strategy OpenAI Competitive Pressure Gemini 3 Overtake OpenAI Infrastructure, AI Closed Loop Economy
  • Technology

The Utility of Intelligence: Sarah Friar Reveals OpenAI’s $20B Infrastructure Roadmap

Do Son January 19, 2026 0
Read More Read more about The Utility of Intelligence: Sarah Friar Reveals OpenAI’s $20B Infrastructure Roadmap
The Zena Evolution: Linux Mint 22.3 Arrives with Cinnamon 6.6 and Kernel 6.14 Linux Mint 22.3 Zena release, Cinnamon 6.6 new features
  • Linux

The Zena Evolution: Linux Mint 22.3 Arrives with Cinnamon 6.6 and Kernel 6.14

Do Son January 19, 2026 0
Read More Read more about The Zena Evolution: Linux Mint 22.3 Arrives with Cinnamon 6.6 and Kernel 6.14
The Pixel 9 Zero-Click Exploit Chain That Breaks the Kernel Android zero day flaw June 2026 security bulletin RuTaxi Trojan Android Banking Malware Pixel 9 zero-click exploit, Dolby UDC vulnerability CVE-2025-54957 NexusRoute Android RAT, India E-Challan Phishing ClayRat Self-Defense, Android Accessibility Abuse Android Trojan, AntiDot Android Malware "BadPack"
  • Vulnerability Report

The Pixel 9 Zero-Click Exploit Chain That Breaks the Kernel

Do Son January 19, 2026 0
Read More Read more about The Pixel 9 Zero-Click Exploit Chain That Breaks the Kernel
Top Security Practices for Protecting Your Website Hosting Environment Salesforce vulnerability CVE-2025-9844 Salt Typhoon cyberattack
  • Technique

Top Security Practices for Protecting Your Website Hosting Environment

Do Son January 19, 2026 0
Read More Read more about Top Security Practices for Protecting Your Website Hosting Environment
One-Click Remove Background from Logo, Unleash Your Creativity Andariel APT
  • Technique

One-Click Remove Background from Logo, Unleash Your Creativity

Do Son January 19, 2026 0
Read More Read more about One-Click Remove Background from Logo, Unleash Your Creativity
PoC Exploit Released: Failed Windows Patch Leaks Kernel Secrets Windows Kernel Exploit CVE-2025-53136
  • Vulnerability

PoC Exploit Released: Failed Windows Patch Leaks Kernel Secrets

Do Son January 19, 2026 0
Read More Read more about PoC Exploit Released: Failed Windows Patch Leaks Kernel Secrets
The RAM Crunch: Why Your Next Smartphone Will Cost More in 2026 FCC Chinese lab ban iPhone NATO certification iPhone 18 Pro Deep Red iOS 27 Snow Leopard update 2026 smartphone memory shortage, IDC mobile market forecast iPhone Satellite Natural Usage iPhone 17 Speaker Issue, USB-C Static iPhone 17 Pro, MagSafe Scratches iPhone 17 Pro, professional filmmaking
  • Technology

The RAM Crunch: Why Your Next Smartphone Will Cost More in 2026

Do Son January 19, 2026 0
Read More Read more about The RAM Crunch: Why Your Next Smartphone Will Cost More in 2026
The $134 Billion Gambit: Musk Sues OpenAI While California Crackdown Hits xAI Musk $134B OpenAI lawsuit, xAI Grok deepfake cease and desist xAI Series E $20 billion funding, Grok 5 NVIDIA supercomputer trade secret theft, xAI lawsuit Grok 2, Open Source AI Grok AI, xAI Investment xAI, MacroHard
  • Technology

The $134 Billion Gambit: Musk Sues OpenAI While California Crackdown Hits xAI

Do Son January 19, 2026 0
Read More Read more about The $134 Billion Gambit: Musk Sues OpenAI While California Crackdown Hits xAI
Defending the Data Moat: Google Appeals Monopoly Ruling to Block Forced Data Sharing Low carbon cloud computing Smartphone clusters, Green technology, Data centers, Google research Google Agentic AI search G Suite legacy free commercial reclassification 2026 Agent Payments Protocol AP2 Back-Button Hijacking Google Search AI headlines Google Play Store fee reduction Google Antigravity account recovery Google Advanced Air-Cooling Alphabet $185 billion CapEx 2026 Google Aluminum OS 2026 ai-disclosure HTML attribute, Chrome AI content transparency 2026 Google monopoly appeal 2026, Search data sharing stay Change @gmail.com address, Gmail email alias feature 2025 Google Play Store external download fees, Epic vs Google 2026 billing Google Dark Web Report Retirement, Data Breach Monitoring Google Antitrust One-Year Limit Default Search Contract Term Google AI Headlines Discover Headline Distortion Aluminium OS Android ChromeOS Merge Google Accelerator Impact $31.2 Billion Funding Google Texas Investment AI Data Center Expansion Google Play payments, external billing Gmail HIBP leak Privacy Sandbox Termination, Third-Party Cookies Google Strategic Market Status, CMA Antitrust ICEBlock Removal, DOJ Pressure Google Logo, AI Branding
  • Technology

Defending the Data Moat: Google Appeals Monopoly Ruling to Block Forced Data Sharing

Do Son January 19, 2026 0
Read More Read more about Defending the Data Moat: Google Appeals Monopoly Ruling to Block Forced Data Sharing
Beyond Routing: Transform the OpenWrt One into a Powerful Debian Micro-Server OpenWrt One Debian, unbrickable Linux router
  • Linux

Beyond Routing: Transform the OpenWrt One into a Powerful Debian Micro-Server

Do Son January 19, 2026 0
Read More Read more about Beyond Routing: Transform the OpenWrt One into a Powerful Debian Micro-Server
Fake Malwarebytes Campaign Exploits DLL Sideloading to Drop Infostealers GuLoader Malware CloudEye Obfuscation npm, malware Ethereum, npm supply chain OAST techniques StilachiRAT macOS Malware PasivRobber
  • Malware

Fake Malwarebytes Campaign Exploits DLL Sideloading to Drop Infostealers

Do Son January 19, 2026 0
Read More Read more about Fake Malwarebytes Campaign Exploits DLL Sideloading to Drop Infostealers
CVE-2026-0695: High-Severity XSS Flaw Patched in ConnectWise PSA 2026.1 shell-quote command injection AI-Driven Vulnerabilities Q1 2026 Cyber Threats vm2 Sandbox Escape Node.js RCE upKeeper Privilege Escalation CVE-2026-2449 Pharos Controls Vulnerability Root Access Exploit Cybersecurity Vulnerability Roundup CVSS 10.0 Flaws Shadow Archives CVE-2026-0866 MS-Agent Prompt Injection CVE-2026-2256 basic-ftp Path Traversal CVE-2026-27699 telnetd Root Vulnerability CVE-1999-0073 Regression USR-W610 Vulnerabilities End-of-Life IoT Security IceWarp Security Update IceWarp Vulnerabilities Airleader Master Vulnerability CVE-2026-1358 ZLAN5143D Vulnerability CISA ICS Advisory Acronis Cyber Protect Vulnerability CVE-2025-30411 WAGO 852 Vulnerability OT Network Security SandboxJS Vulnerability Sandbox Escape (CVSS 10.0) Kubernetes Local Path Provisioner CVE-2025-62878 CISA Unresponsive Vendors Avation & RISS Vulnerabilities KiloView Vulnerability CVE-2026-1453 OpenClaw RCE vulnerability Johnson Controls Vulnerability CVE-2025-26385 SandboxJS Vulnerability CVE-2026-23830 ibaPDA Vulnerability CVE-2025-14988 Protobuf Vulnerability CVE-2026-0994 AVEVA Process Optimization Vulnerability CVE-2025-61937 ConnectWise PSA Vulnerability CVE-2026-0695 Aruba VIA Vulnerability CVE-2025-37186 aiohttp v3.13.3, Denial of Service (DoS) SmarterMail RCE, CVE-2025-52691 Airoha RACE, Headphone Jacking HPE OneView RCE CVE-2025-37164 FreePBX Auth Bypass, PBX Takeover ScreenConnect Config Flaw, Untrusted Extensions Ruby SAML Auth Bypass, XML Parser Differential Devolutions SQL Injection, Password Manager Flaw Vivotek Unauthenticated RCE, EOL IP Camera Flaw Lynx+ Critical Flaw, Unauthenticated Reset Firebox Default Credentials, CVE-2025-59396 Veeder-Root RCE, Critical ATG Flaw ArcGIS Server SQLi Watchdoc RCE, CVE-2025-58384 Delta DIALink Daikin Security Gateway, authentication bypass Frostbyte10, industrial controller security SunPower, vulnerability Ubiquiti UniFi Connect, EV Station Vulnerabilities Adobe Experience Manager, RCE Vulnerability UniFi Access, Command Injection LDAPNightmare - CVE-2025-1316
  • Vulnerability Report

CVE-2026-0695: High-Severity XSS Flaw Patched in ConnectWise PSA 2026.1

Do Son January 19, 2026 0
Read More Read more about CVE-2026-0695: High-Severity XSS Flaw Patched in ConnectWise PSA 2026.1
DragonForce: The Rise of a New “Ransomware Cartel” Built on LockBit and Conti DNA INC Ransom Pacific Cyber Threats OysterLoader Malware Rhysida Ransomware Black Basta Ransomware BYOVD Technique Velociraptor Abuse, Storm-2603 Ransomware Crypto24, Ransomware Ransomware Payments, UK Legislation ZACROS data breach
  • Malware

DragonForce: The Rise of a New “Ransomware Cartel” Built on LockBit and Conti DNA

Do Son January 19, 2026 0
Read More Read more about DragonForce: The Rise of a New “Ransomware Cartel” Built on LockBit and Conti DNA
Fake Productivity Tools: 5 Malicious Chrome Extensions Hijack Enterprise Sessions Amazon Ads Blocker Affiliate Link Hijacking Malicious browser extensions
  • Malware

Fake Productivity Tools: 5 Malicious Chrome Extensions Hijack Enterprise Sessions

Do Son January 19, 2026 0
Read More Read more about Fake Productivity Tools: 5 Malicious Chrome Extensions Hijack Enterprise Sessions
Sitting Ducks and Scammy Notifications: Inside a Global Malvertising Operation Sitting Ducks Vulnerability Push Notification Scam
  • Cybercriminals

Sitting Ducks and Scammy Notifications: Inside a Global Malvertising Operation

Do Son January 19, 2026 0
Read More Read more about Sitting Ducks and Scammy Notifications: Inside a Global Malvertising Operation
Unpatched RCE: Livewire Filemanager Upload Flaw (CVE-2025-14894) Exposes Laravel Apps Livewire Filemanager RCE CVE-2025-14894
  • Vulnerability Report

Unpatched RCE: Livewire Filemanager Upload Flaw (CVE-2025-14894) Exposes Laravel Apps

Do Son January 19, 2026 0
Read More Read more about Unpatched RCE: Livewire Filemanager Upload Flaw (CVE-2025-14894) Exposes Laravel Apps
KnownSec Data Leak Exposes State-Aligned Cyber Espionage Pipeline Kali365 phishing platform EmEditor Supply Chain Attack, WALSHAM INVESTMENTS LIMITED EggStreme, fileless malware North Korea Cybercrime, Remote IT Job Fraud RedDelta APT
  • Data Leak

KnownSec Data Leak Exposes State-Aligned Cyber Espionage Pipeline

Do Son January 19, 2026 0
Read More Read more about KnownSec Data Leak Exposes State-Aligned Cyber Espionage Pipeline
❮ Prev Page
Next Page ❯

Search

Translation

CVE WATCHTOWER
🚨

Receive alerts for vulnerabilities being exploited in the wild.

⚡

Get notified instantly when a Proof of Concept (PoC) exploit is published.

🔍

Access critical info on vulnerabilities even when marked as "RESERVED".

🧠

Insights powered by decades of expertise and global intelligence sources.

🎯

Customize alerts with up to 10 keywords for your specific tech stack.

📊

Export the raw CVE database for SIEM integration and reporting.

Upgrade Package

🚨 Active Exploits in the Wild

  • CVE-2026-16812CVSS 10.0
    VeloCloud Orchestrator (VCO) on-prem has a security issue where this issue may allow a remote attacker to access...
    Admin intelCISA KEV📅 Added to KEV: Jul 27, 2026📅 Updated: Jul 27, 2026
  • CVE-2025-68686CVSS 5.9
    An Exposure of Sensitive Information to an Unauthorized Actor vulnerability [CWE-200] vulnerability in Fortinet FortiOS 7.6.0 through 7.6.1,...
    CISA KEV📅 Added to KEV: Jul 27, 2026
  • CVE-2026-16723CVSS 9.0
    A remote code execution (RCE) vulnerability exists in fastjson 1.2.68 through 1.2.83. This vulnerability is exploitable under fastjson\'s stock...
    Admin intel📅 Updated: Jul 25, 2026
  • CVE-2026-16232CVSS 9.1
    An authentication bypass vulnerability in the Check Point SmartConsole login process allows an unauthenticated remote attacker to obtain...
    CISA KEV📅 Added to KEV: Jul 22, 2026
  • CVE-2026-50522CVSS 9.8
    Deserialization of untrusted data in Microsoft Office SharePoint allows an unauthorized attacker to execute code over a network.
    Admin intelCISA KEV📅 Added to KEV: Jul 22, 2026📅 Updated: Jul 21, 2026
  • CVE-2026-63030CVSS 9.8
    WordPress 6.9.x before 6.9.5 and 7.0.x before 7.0.2 is affected by a REST API batch endpoint route confusion...
    Admin intelCISA KEV📅 Added to KEV: Jul 21, 2026📅 Updated: Jul 21, 2026
  • CVE-2026-60137CVSS 5.9
    WordPress 6.8.x before 6.8.6, 6.9.x before 6.9.5, and 7.0.x before 7.0.2 does not properly sanitise the author__not_in parameter...
    Admin intelCISA KEV📅 Added to KEV: Jul 21, 2026📅 Updated: Jul 21, 2026
  • CVE-2026-0770CVSS 9.8
    Langflow exec_globals Inclusion of Functionality from Untrusted Control Sphere Remote Code Execution Vulnerability. This vulnerability allows remote attackers...
    CISA KEV📅 Added to KEV: Jul 21, 2026
Powered by CVE Watchtower

🔴 Live Critical Threats

  • CVE-2026-55579CVSS 9.8
    Pheditor is a single-file editor and file manager written in PHP. From...
  • CVE-2026-48030CVSS 9.9
    Pheditor is a single-file editor and file manager written in PHP. From...
  • CVE-2026-63077CVSS 9.8
    In JetBrains TeamCity before 2026.1.3, 2025.11.7 unauthenticated remote code execution was possible...
  • CVE-2026-17191CVSS 9.1
    An input validation vulnerability exists in an API component of the orchestrator....
  • CVE-2026-51303CVSS 9.8
    A use-after-free (UAF) vulnerability was discovered in the core parsing component of...
  • CVE-2025-50455CVSS 9.1
    SQL injection vulnerability exists in the order_by parameter of the /customers/search endpoint...
  • CVE-2026-16812CVSS 10.0
    VeloCloud Orchestrator (VCO) on-prem has a security issue where this issue may...
  • CVE-2026-66395CVSS 9.6
    SiYuan desktop before v3.7.2 contains a reflected cross-site scripting vulnerability in the...
  • CVE-2026-59550CVSS 9.3
    Unauthenticated SQL Injection in AWP Classifieds
  • CVE-2026-59549CVSS 9.3
    Unauthenticated SQL Injection in rtMedia for WordPress, BuddyPress and bbPress
Powered by CVE WATCHTOWER

Our Websites
  • Penetration Testing Tools
  • The Daily Information Technology
  • Top Exploited CVEs
  • Daily CyberSecurity

    • About SecurityOnline.info
    • Advertise with us
    • Announcement
    • Contact
    • Contributor Register
    • Login
    • Disclaimer
    • DCMA
    • Privacy Policy
    • About SecurityOnline.info
    • Advertise on SecurityOnline.info
    • Contact Us

    When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

    • CVE Watchtower
    • CVE Statistics by Vendor 2026
    • Q2 2026 Report
    • Top Exploited CVEs
    • Linkedin
    • Twitter
    • Facebook
    • Youtube
    © 2017 - 2026 Daily CyberSecurity. All Rights Reserved.