Skip to content
June 3, 2026
  • Linkedin
  • Twitter
  • Facebook
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Watchtower
  • Cyber Criminals
  • Data Leak
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Vulnerability Report
Light/Dark Button
Why Antivirus Software Flags Your Linux ISO as Malware Linux Kernel legacy driver removal Linux kernel x86 page fault, interrupt state asymmetry fix Linux ISO, false positive CVE-2023-6200 - Linux Kernel 6.12 LTS 6.14
  • Linux

Why Antivirus Software Flags Your Linux ISO as Malware

Ddos September 2, 2025 0
The website DistroWatch, known for its coverage of Linux-related developments, has recently highlighted an issue encountered by...
Read More Read more about Why Antivirus Software Flags Your Linux ISO as Malware
Apple Is Forcing Its Suppliers to Embrace Full Automation iOS 27 Liquid Glass slider iPhone Flip rumors 2026 Setapp Mobile iOS shutdown, Apple DMA political delay tactics Apple AI pin wearable 2027, Siri Campos Gemini integration Apple AI strategy 2026, Liquid Glass interface Apple Intelligence Mac Pro Cancelled Mac Studio Future App Store antitrust, UK lawsuit iPhone Fold Hinge, Cost Optimization MacBook Pro, OLED display Apple supply chain, manufacturing automation Apple home security, smart camera Apple Earnings, AI Investment Apple EU Fine, DMA Appeal CVE-2023-23529
  • Technology

Apple Is Forcing Its Suppliers to Embrace Full Automation

Ddos September 2, 2025 0
Reports suggest that Apple is restructuring its global supply chain, not merely shifting production away from China...
Read More Read more about Apple Is Forcing Its Suppliers to Embrace Full Automation
Early Adopters Report ‘Snow Screen’ on Google Pixel 10 Pixel 10 Modem Security Rust Memory Safety
  • Android

Early Adopters Report ‘Snow Screen’ on Google Pixel 10

Ddos September 2, 2025 0
The launch of the Google Pixel 10 series is still less than ten days away, yet some...
Read More Read more about Early Adopters Report ‘Snow Screen’ on Google Pixel 10
JetBrains Makes Its Language Server Protocol API Free JetBrains, LSP API
  • Technology

JetBrains Makes Its Language Server Protocol API Free

Ddos September 2, 2025 0
The integrated development environment (IDE) tools vendor JetBrains has announced changes to its LSP API—the Language Server...
Read More Read more about JetBrains Makes Its Language Server Protocol API Free
No, There Was No “Major Gmail Security Breach” Google Self-Preferencing Fine Idealo Antitrust Damages Anthropic, Google TPUs Google DMA Compliance, Search Self-Preferencing Google Play Store Ruling, Epic Games Victory Google fine, ad tech Google lawsuit, privacy violation Gmail security, false alarm Google Play EU regulation Google Security, Phone Number Leak Google 2025 - Google China’s Anti-Monopoly Law Google monopoly, ad tech Pixel 7a battery, battery swelling
  • Data Leak

No, There Was No “Major Gmail Security Breach”

Ddos September 2, 2025 0
Recently, reports of a so-called “major Gmail security breach” spread rapidly across the internet, with headlines such...
Read More Read more about No, There Was No “Major Gmail Security Breach”
Linux Kernel Panic Triggered by Race Condition, PoC Released Linux Kernel 7.1 i486 support Linux 7.0 HIPPI support removal, legacy networking protocol retirement Linus Torvalds AI slop Linux kernel, Lorenzo Stoakes AI tool debate Linux Kernel Rust CVE-2025-68260, Android Binder Rust Race Condition TSEM Security Module Controversy, Linus Torvalds LSM Dispute Kernel Panic, PoC released Linux Kernel 6.16, File System Fixes CVE-2023-42753 - Linux Kernel Developers
  • Vulnerability

Linux Kernel Panic Triggered by Race Condition, PoC Released

Ddos September 2, 2025 0
A new Linux kernel vulnerability, tracked as CVE-2025-38617, has been analyzed by security researcher Pumpkin (@u1f383) from...
Read More Read more about Linux Kernel Panic Triggered by Race Condition, PoC Released
CVE-2025-57808: ESPHome Web Server Authentication Bypass Exposes Smart Devices ESPHome, authentication bypass
  • Vulnerability Report

CVE-2025-57808: ESPHome Web Server Authentication Bypass Exposes Smart Devices

Ddos September 2, 2025 0
The ESPHome project, a popular open-source firmware framework for ESP32- and ESP8266-based smart home devices, has disclosed...
Read More Read more about CVE-2025-57808: ESPHome Web Server Authentication Bypass Exposes Smart Devices
TinkyWinkey: A Stealthy New Keylogger Is Hunting for Credentials on Windows TinkyWinkey Keylogger, Windows malware
  • Malware

TinkyWinkey: A Stealthy New Keylogger Is Hunting for Credentials on Windows

Ddos September 2, 2025 0
Researchers at CYFIRMA have released an in-depth analysis of a newly observed Windows malware family dubbed the...
Read More Read more about TinkyWinkey: A Stealthy New Keylogger Is Hunting for Credentials on Windows
Beyond the Terminal: Anthropic Launches a Web-Based Editor for Claude Code Claude Code human error Claude AI Data Wipe, Constraining AI Tools Anthropic lawsuit, AI copyright Claude Code, web editor
  • Technology

Beyond the Terminal: Anthropic Launches a Web-Based Editor for Claude Code

Ddos September 2, 2025 0
Claude Code is currently regarded as one of the most highly rated AI coding tools, enabling developers...
Read More Read more about Beyond the Terminal: Anthropic Launches a Web-Based Editor for Claude Code
A New Era for AI Coding: OpenAI’s Codex Gets a Major Update Codex, Visual Studio Code
  • Technology

A New Era for AI Coding: OpenAI’s Codex Gets a Major Update

Ddos September 2, 2025 0
OpenAI has recently announced a major update to its AI-powered coding tool Codex, introducing a new Microsoft...
Read More Read more about A New Era for AI Coding: OpenAI’s Codex Gets a Major Update
Lazarus Subgroup Deploys Three Custom RATs in Targeted Crypto Attacks axios Supply Chain Attack WAVESHAPER.V2 SnappyBee Malware Salt Typhoon Stately Taurus ScoringMathTea RAT, Lazarus Reflective DLL
  • Cyber Security
  • Malware

Lazarus Subgroup Deploys Three Custom RATs in Targeted Crypto Attacks

Ddos September 2, 2025 0
Fox-IT and NCC Group have released a detailed joint analysis exposing how a Lazarus Group subgroup continues...
Read More Read more about Lazarus Subgroup Deploys Three Custom RATs in Targeted Crypto Attacks
Critical CVE-2025-21483 & CVE-2025-27034 in Qualcomm Modems Score CVSS 9.8 Qualcomm Security Bulletin CVE-2026-25254 RCE Qualcomm Diversification, Mobile Chip Competition CVE-2023-33025
  • Vulnerability Report

Critical CVE-2025-21483 & CVE-2025-27034 in Qualcomm Modems Score CVSS 9.8

Ddos September 2, 2025 0
Qualcomm has published its September 2025 Security Bulletin, addressing a wide range of vulnerabilities across its chipsets,...
Read More Read more about Critical CVE-2025-21483 & CVE-2025-27034 in Qualcomm Modems Score CVSS 9.8
The Master Key: Exposed JSON File Gives Attackers Full Control of Azure AD Azure AD, misconfiguration
  • Data Leak

The Master Key: Exposed JSON File Gives Attackers Full Control of Azure AD

Ddos September 2, 2025 0
Resecurity’s HUNTER Team uncovered a severe misconfiguration: sensitive Azure Active Directory (Azure AD) application credentials exposed in...
Read More Read more about The Master Key: Exposed JSON File Gives Attackers Full Control of Azure AD
CVE-2025-6203: DoS Flaw in HashiCorp Vault Allows Attackers to Crash Servers HashiCorp Vault, vulnerability CVE-2024-7594 - Vault Community Edition
  • Vulnerability Report

CVE-2025-6203: DoS Flaw in HashiCorp Vault Allows Attackers to Crash Servers

Ddos September 2, 2025 0
HashiCorp has issued a security advisory for a newly disclosed vulnerability in Vault, its widely used secrets...
Read More Read more about CVE-2025-6203: DoS Flaw in HashiCorp Vault Allows Attackers to Crash Servers
Operation HanKook Phantom: APT-37 Targets South Korean Institutions with LNK-Based Espionage Campaign North Korean Laptop Farm DPRK Insider Threat North Korea WMD Cyber Funding, Australia Sanctions Insider threat, North Korean hackers Kimsuky, cyber-espionage NPM Malware, North Korea Cyber-espionage North Korea, Remote IT Job Scam Laptop Farm - DriverEasy - Kimsuky Watering Hole Attack
  • Cyber Security

Operation HanKook Phantom: APT-37 Targets South Korean Institutions with LNK-Based Espionage Campaign

Ddos September 2, 2025 0
Researchers at Seqrite Lab have uncovered a new spear-phishing operation attributed to APT-37 (ScarCruft / InkySquid /...
Read More Read more about Operation HanKook Phantom: APT-37 Targets South Korean Institutions with LNK-Based Espionage Campaign
A Deceptive Ad Campaign Is Stealing Credentials from the Hospitality Industry the phishing page prompts for OTP codes sent via SMS
  • Cybercriminals

A Deceptive Ad Campaign Is Stealing Credentials from the Hospitality Industry

Ddos September 2, 2025 0
Okta Threat Intelligence is sounding the alarm over a large-scale phishing campaign that has been actively impersonating...
Read More Read more about A Deceptive Ad Campaign Is Stealing Credentials from the Hospitality Industry
Beyond ClickFix: A New Attack Abuses Windows Search to Deliver MetaStealer ChaCha20 Cipher
  • Malware

Beyond ClickFix: A New Attack Abuses Windows Search to Deliver MetaStealer

Ddos September 2, 2025 0
For over a year, Huntress researchers have been tracking the rise of ClickFix attacks, a form of...
Read More Read more about Beyond ClickFix: A New Attack Abuses Windows Search to Deliver MetaStealer
AI Waifu RAT: A New Malware Masquerades as an AI Assistant to Hijack Your PC AI Waifu RAT, social engineering
  • Malware

AI Waifu RAT: A New Malware Masquerades as an AI Assistant to Hijack Your PC

Ddos September 2, 2025 0
Security researcher Ryingo has released a detailed analysis of a new malware strain dubbed the “AI Waifu...
Read More Read more about AI Waifu RAT: A New Malware Masquerades as an AI Assistant to Hijack Your PC
CVE-2025-58158 Flaw in Harness Gitness Allows Arbitrary File Write Harness Gitness, arbitrary file write
  • Vulnerability Report

CVE-2025-58158 Flaw in Harness Gitness Allows Arbitrary File Write

Ddos September 2, 2025 0
The open-source DevOps ecosystem has been hit with another critical security issue—this time in Harness Open Source,...
Read More Read more about CVE-2025-58158 Flaw in Harness Gitness Allows Arbitrary File Write
Beyond Phishing: Iranian-Aligned Group Abuses Omani Mailbox to Spy on Diplomats Iranian-aligned, spear-phishing
  • Cyber Security

Beyond Phishing: Iranian-Aligned Group Abuses Omani Mailbox to Spy on Diplomats

Ddos September 2, 2025 0
Recently, researchers at Dream’s Threat Intelligence Team uncovered a sophisticated spear-phishing campaign that leveraged a compromised mailbox...
Read More Read more about Beyond Phishing: Iranian-Aligned Group Abuses Omani Mailbox to Spy on Diplomats
❮ Prev Page
Next Page ❯

Search

Translation

CVE WATCHTOWER
🚨

Receive alerts for vulnerabilities being exploited in the wild.

⚡

Get notified instantly when a Proof of Concept (PoC) exploit is published.

🔍

Access critical info on vulnerabilities even when marked as "RESERVED".

🧠

Insights powered by decades of expertise and global intelligence sources.

🎯

Customize alerts with up to 10 keywords for your specific tech stack.

📊

Export the raw CVE database for SIEM integration and reporting.

Upgrade Package

🔴 Live Critical Threats

  • CVE-2026-47065CVSS 9.8
    ZDRES-232: resolveProxyClass Not Overridden - acceptMatchers Filter Bypass via java.lang.reflect.Proxy Assessment: Fully...
  • CVE-2026-35075CVSS 9.8
    An unauthenticated remote attacker can recover a default, hard coded password from...
  • CVE-2026-4035CVSS 9.1
    A vulnerability in mlflow/mlflow versions prior to 3.11.0 allows for the resolution...
  • CVE-2025-14771CVSS 9.9
    Files or directories accessible to external parties vulnerability in ABB T-MAC Plus....
  • CVE-2026-32625CVSS 9.6
    LibreChat is an enhanced ChatGPT clone that supports multiple AI providers. In...
  • CVE-2026-49448CVSS 9.8
    authentik is an open-source identity provider. Prior to versions 2025.12.6, 2026.2.4, and...
  • CVE-2026-42849CVSS 9.3
    authentik is an open-source identity provider. Prior to versions 2025.12.5 and 2026.2.3,...
  • CVE-2026-5076CVSS 9.8
    The ARMember Premium plugin for WordPress is vulnerable to an insecure password...
  • CVE-2026-38967CVSS 9.8
    CrowCpp Crow through v1.3.1 HTTP is vulnerable to response header injection via...
  • CVE-2026-0611CVSS 9.8
    Spacelabs Healthcare Sentinel versions 10.5.x and higher and 11.x.x before 11.6.0 contain...
Powered by CVE WATCHTOWER

Recent Zero-Day Vulnerabilities

  • Android Zero-Day Flaw Exploited in the Wild: June 2026 Patches Released
  • Exploited in the Wild: Critical OWA Spoofing Flaw (CVE-2026-42897) Hits On-Premises Exchange Servers
  • Exploited in the Wild: Maximum CVSS 10 SD-WAN Flaw (CVE-2026-20182) Grants Admin Control
  • Exploited in the Wild: Critical 9.8 CVSS RCE Hits Canon GUARDIANWALL MailSuite
  • Exploit Code Released: Public PoC Dumps for Windows BitLocker Bypass and SYSTEM Elevation Zero-Days
  • Exploited in the Wild: “Dirty Frag” Linux Vulnerability Grants Instant Root Access
Our Websites
  • Penetration Testing Tools
  • The Daily Information Technology
  • Daily CyberSecurity

    • About SecurityOnline.info
    • Advertise with us
    • Announcement
    • Contact
    • Contributor Register
    • Login
    • Disclaimer
    • Privacy Policy
    • About SecurityOnline.info
    • Advertise on SecurityOnline.info
    • Contact Us

    When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

    • Disclaimer
    • Privacy Policy
    • DMCA NOTICE
    • Linkedin
    • Twitter
    • Facebook
    • Youtube
    Copyright Daily CyberSecurity © All rights reserved.