Skip to content
July 31, 2026
  • Linkedin
  • Twitter
  • Facebook
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Data
    • CVE Watchtower
    • Top Exploited CVEs
    • CVE Stats by Vendor
    • Q2 2026 Report
  • Cyber Criminals
  • Data Leak
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Weekly Recap
Light/Dark Button
ChatGPT Pulse Arrives: The Proactive AI Assistant That Reshapes Your Morning Routine ChatGPT Pulse, Proactive AI
  • Technology

ChatGPT Pulse Arrives: The Proactive AI Assistant That Reshapes Your Morning Routine

Do Son September 27, 2025 0
Read More Read more about ChatGPT Pulse Arrives: The Proactive AI Assistant That Reshapes Your Morning Routine
LockBit 5.0 Ransomware: Cross-Platform Evolution Targets Windows, Linux, and ESXi LockBit 5.0, Cross-Platform Ransomware
  • Malware

LockBit 5.0 Ransomware: Cross-Platform Evolution Targets Windows, Linux, and ESXi

Do Son September 27, 2025 0
Read More Read more about LockBit 5.0 Ransomware: Cross-Platform Evolution Targets Windows, Linux, and ESXi
Salt Typhoon: China’s State-Sponsored Espionage Group Infiltrates Global Telecoms for Long-Term Cyber Warfare AccountDumpling Phishing Google AppSheet Abuse AI-Generated Malware PureRAT Campaign RondoDoX Botnet, Next.js React2Shell EchoGather, Paper Werewolf Salt Typhoon, Telecom Espionage BreachForums, Conor Fitzpatrick Ransomware Negotiation, DOJ Investigation MirrorFace group - Earth Kasha Emperor Dragonfly
  • Cyber Security

Salt Typhoon: China’s State-Sponsored Espionage Group Infiltrates Global Telecoms for Long-Term Cyber Warfare

Do Son September 27, 2025 0
Read More Read more about Salt Typhoon: China’s State-Sponsored Espionage Group Infiltrates Global Telecoms for Long-Term Cyber Warfare
Rack Security Update: High-Severity Flaw Bypasses Parameter Limit, Exposing Apps to DoS Attacks Rack DoS Bypass, CVE-2025-59830
  • Vulnerability Report

Rack Security Update: High-Severity Flaw Bypasses Parameter Limit, Exposing Apps to DoS Attacks

Do Son September 26, 2025 0
Read More Read more about Rack Security Update: High-Severity Flaw Bypasses Parameter Limit, Exposing Apps to DoS Attacks
Apple Blames EU’s DMA for Delayed iPhone Features, Citing New Security and Privacy Risks Apple Google EU alliance DMA European Commission Breach Trivy Supply Chain Attack Europa.eu Breach EU Cloud Infrastructure EU Cyber Sanctions State-Sponsored Hacking EU 2040 Emissions Target, Europe Climate Leadership AWS Azure DMA Cloud Gatekeeper DSA violation, illegal content Apple DMA Delay, iPhone Mirroring EU EU Age Verification, Google Play Integrity Corning Antitrust, EU Competition Apple EU Digital Markets Act App Store commission European Union cyberattacks - InvestAI EU Targets Musk’s X Digital Markets Act, EU fines
  • Technology

Apple Blames EU’s DMA for Delayed iPhone Features, Citing New Security and Privacy Risks

Do Son September 26, 2025 0
Read More Read more about Apple Blames EU’s DMA for Delayed iPhone Features, Citing New Security and Privacy Risks
Microsoft Makes Windows 10 Extended Security Updates FREE in Europe Due to Regulatory Pressure Windows VSM shutdown bug Windows 10 ESU, EEA Free Update Windows 10 ESU, Hardware Eligibility
  • Windows

Microsoft Makes Windows 10 Extended Security Updates FREE in Europe Due to Regulatory Pressure

Do Son September 26, 2025 0
Read More Read more about Microsoft Makes Windows 10 Extended Security Updates FREE in Europe Due to Regulatory Pressure
Microsoft Disables Azure and AI Services Used by Israeli Military for Mass Surveillance in Gaza Azure outage, Front Door Microsoft Azure Surveillance, Gaza Call Records Red Sea cables, Azure outage MFA enforcement Azure outage, Red Sea cables Azure Key Vault Azure, Surveillance
  • Data Leak

Microsoft Disables Azure and AI Services Used by Israeli Military for Mass Surveillance in Gaza

Do Son September 26, 2025 0
Read More Read more about Microsoft Disables Azure and AI Services Used by Israeli Military for Mass Surveillance in Gaza
Two Linux Kernel Vulnerabilities Expose HID Subsystem to Exploitation, PoC Published Linux HID PoC, USB Memory Leak
  • Vulnerability

Two Linux Kernel Vulnerabilities Expose HID Subsystem to Exploitation, PoC Published

Do Son September 26, 2025 0
Read More Read more about Two Linux Kernel Vulnerabilities Expose HID Subsystem to Exploitation, PoC Published
CRITICAL Cisco Zero-Day (CVE-2025-20333, CVSS 9.9) Under Active Attack: VPN Flaw Allows Root RCE Quest KACE Vulnerability CVE-2025-32975 FortiGate SSO Bypass, Active Exploitation GoAnywhere RCE, Storm-1175 Cisco VPN RCE, ASA Zero-Day TinyColor Supply Chain Attack SK Telecom, data breach Erlang/OTP RCE, OT Network Security Ivanti CSA Attacks WordPress RCE, Theme Vulnerability
  • Vulnerability Report

CRITICAL Cisco Zero-Day (CVE-2025-20333, CVSS 9.9) Under Active Attack: VPN Flaw Allows Root RCE

Do Son September 26, 2025 0
Read More Read more about CRITICAL Cisco Zero-Day (CVE-2025-20333, CVSS 9.9) Under Active Attack: VPN Flaw Allows Root RCE
Cisco Warns of Critical RCE Flaw (CVE-2025-20363) Affecting Firewall and Router Software Cisco Secure FMC CVE-2026-20079 Cisco RCE, Firewall Vulnerability Cisco Nexus, vulnerability CVE-2024-20412 - Cisco data breach
  • Vulnerability Report

Cisco Warns of Critical RCE Flaw (CVE-2025-20363) Affecting Firewall and Router Software

Do Son September 26, 2025 0
Read More Read more about Cisco Warns of Critical RCE Flaw (CVE-2025-20363) Affecting Firewall and Router Software
Supply Chain Attack: Malicious Rust Crates Steal Solana and Ethereum Private Keys Rust Crypto Stealer, Typosquatting Attack
  • Malware

Supply Chain Attack: Malicious Rust Crates Steal Solana and Ethereum Private Keys

Do Son September 26, 2025 0
Read More Read more about Supply Chain Attack: Malicious Rust Crates Steal Solana and Ethereum Private Keys
Cisco Zero-Day CVE-2025-20362 Under Attack: VPN Flaw in ASA/FTD Exposes Restricted Resources Cisco VPN Zero-Day, ASA Vulnerability Ivanti Vulnerabilities Wing FTP Server, RCE Exploit CVE-2024-9474 Exploited: LITTLELAMB.WOOLTEA Backdoor
  • Vulnerability Report

Cisco Zero-Day CVE-2025-20362 Under Attack: VPN Flaw in ASA/FTD Exposes Restricted Resources

Do Son September 26, 2025 0
Read More Read more about Cisco Zero-Day CVE-2025-20362 Under Attack: VPN Flaw in ASA/FTD Exposes Restricted Resources
CVE-2025-54831: Apache Airflow Bug Exposes Sensitive Connection Passwords to Read-Only Users Airflow Credential Leak, UI Redaction Failure CVE-2024-39877 & CVE-2024-45784 Airflow Connection Leak, CVE-2025-54831
  • Vulnerability Report

CVE-2025-54831: Apache Airflow Bug Exposes Sensitive Connection Passwords to Read-Only Users

Do Son September 26, 2025 0
Read More Read more about CVE-2025-54831: Apache Airflow Bug Exposes Sensitive Connection Passwords to Read-Only Users
BRICKSTORM Malware: China-Linked Hackers Stealthily Target US Tech and Legal Firms for 393 Days Mercenary Akula European Financial Targeting AI-Generated Malware React2Shell Exploit UAT-8837 Critical Infrastructure Attack APT36, BOSS Linux BRICKSTORM Malware, China Espionage Curly COMrades, MucorAgent Chinese APT - HTTP Client Tools Shuckworm Cyber Espionage
  • Cyber Security
  • Malware

BRICKSTORM Malware: China-Linked Hackers Stealthily Target US Tech and Legal Firms for 393 Days

Do Son September 26, 2025 0
Read More Read more about BRICKSTORM Malware: China-Linked Hackers Stealthily Target US Tech and Legal Firms for 393 Days
GitLab Fixes High-Severity DoS Flaws: Unauthenticated Attackers Could Crash Instances GitLab security updates, GitLab patch release, CVE-2026-6552, CVE-2026-10087, CVE-2026-7250 GitLab Security Update May 2026 GitLab XSS and DoS Vulnerabilities GitLab Security Session Hijacking GitLab Security Update, CI/CD Vulnerability GitLab DoS, Security Update bypassing SAML - CVE-2024-8312 and CVE-2024-6826
  • Vulnerability Report

GitLab Fixes High-Severity DoS Flaws: Unauthenticated Attackers Could Crash Instances

Do Son September 26, 2025 0
Read More Read more about GitLab Fixes High-Severity DoS Flaws: Unauthenticated Attackers Could Crash Instances
NVIDIA Patches High-Severity Code Injection Flaws in Megatron-LM AI Framework NVIDIA GPU Security CUDA-Q Vulnerability NVIDIA Apex Vulnerability AI Infrastructure Security NVIDIA Cumulus Linux CVE-2025-33179 NVIDIA Arm divestment NVIDIA DGX Spark, CVE-2025-33187 NVIDIA Isaac-GROOT, Code Injection Megatron-LM Vulnerability, AI Code Injection NVIDIA China NVIDIA GPUs, Hardware Kill Switches NVIDIA Megatron-LM, LLM Vulnerabilities NVIDIA Base Command Manager - CVE-2024-0138
  • Vulnerability Report

NVIDIA Patches High-Severity Code Injection Flaws in Megatron-LM AI Framework

Do Son September 26, 2025 0
Read More Read more about NVIDIA Patches High-Severity Code Injection Flaws in Megatron-LM AI Framework
AI vs. AI: Microsoft Blocks Phishing Attack Using LLM-Generated Obfuscated Code AI-Obfuscation, SVG Phishing
  • Cybercriminals

AI vs. AI: Microsoft Blocks Phishing Attack Using LLM-Generated Obfuscated Code

Do Son September 26, 2025 0
Read More Read more about AI vs. AI: Microsoft Blocks Phishing Attack Using LLM-Generated Obfuscated Code
New Lone None Stealer Malware Hijacks Crypto Wallets via Fake Copyright Takedown Notices BingX cyberattack FortiGate SSO Attacks Firewall Config Theft
  • Malware

New Lone None Stealer Malware Hijacks Crypto Wallets via Fake Copyright Takedown Notices

Do Son September 26, 2025 0
Read More Read more about New Lone None Stealer Malware Hijacks Crypto Wallets via Fake Copyright Takedown Notices
LNK Stomping: Attackers Bypass Windows Security by Stripping the ‘Mark of the Web’ LNK Stomping, MoTW Bypass
  • Cybercriminals

LNK Stomping: Attackers Bypass Windows Security by Stripping the ‘Mark of the Web’

Do Son September 26, 2025 0
Read More Read more about LNK Stomping: Attackers Bypass Windows Security by Stripping the ‘Mark of the Web’
Living Security Unveils HRMCon 2025 Speakers as Report Finds Firms Detect Just 19% of Human Risk 19_of_Human_Risk_is_undetected_1758740467IzVakQa9Ea
  • Press Release

Living Security Unveils HRMCon 2025 Speakers as Report Finds Firms Detect Just 19% of Human Risk

cybernewswire September 25, 2025 0
Read More Read more about Living Security Unveils HRMCon 2025 Speakers as Report Finds Firms Detect Just 19% of Human Risk
Two WordPress Core Vulnerabilities Disclosed Without Patch: Sensitive Data Exposure and Stored XSS WordPress Privilege Escalation CVE-2026-1492 Sneeit Framework RCE, Unauthenticated Code Execution Post SMTP, Account Takeover WordPress Vulnerability, Unpatched XSS WordPress Vulnerability, PHP Object Injection WordPress AI Engine, Privilege Escalation CVE-2024-43153 & CVE-2024-43234
  • Vulnerability Report

Two WordPress Core Vulnerabilities Disclosed Without Patch: Sensitive Data Exposure and Stored XSS

Do Son September 25, 2025 0
Read More Read more about Two WordPress Core Vulnerabilities Disclosed Without Patch: Sensitive Data Exposure and Stored XSS
NVIDIA Open-Sources Audio2Face: Generative AI for Lifelike Character Animation is Now Free NVIDIA Audio2Face, AI Facial Animation
  • Technology

NVIDIA Open-Sources Audio2Face: Generative AI for Lifelike Character Animation is Now Free

Do Son September 25, 2025 0
Read More Read more about NVIDIA Open-Sources Audio2Face: Generative AI for Lifelike Character Animation is Now Free
❮ Prev Page
Next Page ❯

Search

Translation

CVE WATCHTOWER
🚨

Receive alerts for vulnerabilities being exploited in the wild.

⚡

Get notified instantly when a Proof of Concept (PoC) exploit is published.

🔍

Access critical info on vulnerabilities even when marked as "RESERVED".

🧠

Insights powered by decades of expertise and global intelligence sources.

🎯

Customize alerts with up to 10 keywords for your specific tech stack.

📊

Export the raw CVE database for SIEM integration and reporting.

Upgrade Package

🚨 Active Exploits in the Wild

  • CVE-2026-18072CVSS 9.8
    The Advanced Responsive Video Embedder for Rumble, Odysee, YouTube, Vimeo, Kick … plugin for WordPress is vulnerable to...
    Admin intel📅 Updated: Jul 29, 2026
  • CVE-2026-20316CVSS 5.3
    A vulnerability in the web interface of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthenticated,...
    CISA KEV📅 Added to KEV: Jul 29, 2026
  • CVE-2026-16812CVSS 10.0
    VeloCloud Orchestrator (VCO) on-prem has a security issue where this issue may allow a remote attacker to access...
    Admin intelCISA KEV📅 Added to KEV: Jul 27, 2026📅 Updated: Jul 27, 2026
  • CVE-2025-68686CVSS 5.9
    An Exposure of Sensitive Information to an Unauthorized Actor vulnerability [CWE-200] vulnerability in Fortinet FortiOS 7.6.0 through 7.6.1,...
    CISA KEV📅 Added to KEV: Jul 27, 2026
  • CVE-2026-16723CVSS 9.0
    A remote code execution (RCE) vulnerability exists in fastjson 1.2.68 through 1.2.83. This vulnerability is exploitable under fastjson\'s stock...
    Admin intel📅 Updated: Jul 25, 2026
  • CVE-2026-16232CVSS 9.1
    An authentication bypass vulnerability in the Check Point SmartConsole login process allows an unauthenticated remote attacker to obtain...
    CISA KEV📅 Added to KEV: Jul 22, 2026
  • CVE-2026-50522CVSS 9.8
    Deserialization of untrusted data in Microsoft Office SharePoint allows an unauthorized attacker to execute code over a network.
    Admin intelCISA KEV📅 Added to KEV: Jul 22, 2026📅 Updated: Jul 21, 2026
  • CVE-2026-63030CVSS 9.8
    WordPress 6.9.x before 6.9.5 and 7.0.x before 7.0.2 is affected by a REST API batch endpoint route confusion...
    Admin intelCISA KEV📅 Added to KEV: Jul 21, 2026📅 Updated: Jul 21, 2026
Powered by CVE Watchtower

🔴 Live Critical Threats

  • CVE-2026-14483CVSS 9.8
    The Realtyna Organic IDX plugin + WPL Real Estate plugin for WordPress...
  • CVE-2026-63223CVSS 9.8
    CodeIgniter is a PHP full-stack web framework. Prior to 4.7.4, the is_image...
  • CVE-2026-63221CVSS 9.4
    CodeIgniter is a PHP full-stack web framework. From 4.3.0 through 4.7.3, Query...
  • CVE-2026-18452CVSS 10.0
    DMS+ (Non-Mobile) developed by Rich Source has a Use of Hard-coded Credentials...
  • CVE-2026-66421CVSS 9.3
    OpenClaw Dashboard contains a stored cross-site scripting vulnerability that allows unauthenticated remote...
  • CVE-2026-68503CVSS 9.8
    LazyOwn RedTeam/APT Framework is an AI-powered C2 and red-team operations framework. Prior...
  • CVE-2026-68502CVSS 9.8
    LazyOwn RedTeam/APT Framework is an AI-powered C2 and red-team operations framework. Prior...
  • CVE-2026-66803CVSS 10.0
    Improper access control in Azure Cosmos DB allows an unauthorized attacker to...
  • CVE-2026-66418CVSS 9.3
    OpenClaw Dashboard v3.0.0 contains a stored cross-site scripting vulnerability that allows unauthenticated...
  • CVE-2026-12946CVSS 9.9
    IBM Langflow OSS 1.0.0 through 1.10.0 could allow a remote attacker to...
Powered by CVE WATCHTOWER

Our Websites
  • Penetration Testing Tools
  • The Daily Information Technology
  • Top Exploited CVEs
  • Daily CyberSecurity

    • About SecurityOnline.info
    • Advertise with us
    • Announcement
    • Contact
    • Contributor Register
    • Login
    • Disclaimer
    • DCMA
    • Privacy Policy
    • About SecurityOnline.info
    • Advertise on SecurityOnline.info
    • Contact Us

    When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

    • CVE Watchtower
    • CVE Statistics by Vendor 2026
    • Q2 2026 Report
    • Top Exploited CVEs
    • Linkedin
    • Twitter
    • Facebook
    • Youtube
    © 2017 - 2026 Daily CyberSecurity. All Rights Reserved.