Skip to content
September 16, 2026
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Data
    • CVE Watchtower
    • Top Exploited CVEs
    • CVE Stats by Vendor
    • Q2 2026 Report
    • CVE Alerts
    • CVE Alert Settings
    • Pricing
  • Cyber Criminals
  • Data Leak
  • Free Tools
    • CVSS 3.1 Calculator
    • Certificate Viewer
    • DNS Lookup
    • Encoder & Hash Generator
    • IP / Subnet Calculator
    • Whois Lookup
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Weekly Recap
Light/Dark Button
From CastleLoader to CastleRAT: TAG-150’s Multi-Tiered Cyber Arsenal Expands AccountDumpling Phishing Google AppSheet Abuse AI-Generated Malware PureRAT Campaign RondoDoX Botnet, Next.js React2Shell EchoGather, Paper Werewolf Salt Typhoon, Telecom Espionage BreachForums, Conor Fitzpatrick Ransomware Negotiation, DOJ Investigation MirrorFace group - Earth Kasha Emperor Dragonfly
  • Cybercriminals
  • Malware

From CastleLoader to CastleRAT: TAG-150’s Multi-Tiered Cyber Arsenal Expands

Do Son September 9, 2025 0
Read More Read more about From CastleLoader to CastleRAT: TAG-150’s Multi-Tiered Cyber Arsenal Expands
Mozilla to End Support for Firefox on 32-bit Linux in 2026 Firefox 32-bit Linux Firefox, CRLite Firefox 141, AI Tab Groups Firefox Focus Android
  • Linux
  • Technology

Mozilla to End Support for Firefox on 32-bit Linux in 2026

Do Son September 8, 2025 0
Read More Read more about Mozilla to End Support for Firefox on 32-bit Linux in 2026
Microsoft Is Discontinuing Outlook Lite: What to Do Next Exfil Out&Look Microsoft 365 Logging Gap Outlook Classic KB5074109 freeze, January 2026 POP3 PST bug Outlook Classic POP3 freeze, KB5074109 Windows 11 bug Outlook, CPU Usage Outlook lag Outlook Lite discontinued
  • Technology

Microsoft Is Discontinuing Outlook Lite: What to Do Next

Do Son September 8, 2025 0
Read More Read more about Microsoft Is Discontinuing Outlook Lite: What to Do Next
The End of an Era? Nova Launcher’s Future Is Now in Doubt Nova Launcher, Branch acquisition
  • Android

The End of an Era? Nova Launcher’s Future Is Now in Doubt

Do Son September 8, 2025 0
Read More Read more about The End of an Era? Nova Launcher’s Future Is Now in Doubt
Mozilla Keeps Extending Firefox Support for Windows 7 Firefox built-in VPN Firefox VPN data limit, Firefox VPN countries, Mozilla VPN subscription Sanitizer API Firefox 148 Security Firefox WebRTC Vulnerability CVE-2025-14321 PoC Firefox VPN Feature, Browser-Only VPN Firefox Add-ons Rollback Firefox Encryption Firefox MKV support Firefox ESR, Windows 7
  • Technology

Mozilla Keeps Extending Firefox Support for Windows 7

Do Son September 8, 2025 0
Read More Read more about Mozilla Keeps Extending Firefox Support for Windows 7
PgAdmin Flaw Exposes Accounts to OAuth Hijacking Attacks CVE-2024-2044 pgAdmin, OAuth vulnerability
  • Vulnerability

PgAdmin Flaw Exposes Accounts to OAuth Hijacking Attacks

Do Son September 8, 2025 0
Read More Read more about PgAdmin Flaw Exposes Accounts to OAuth Hijacking Attacks
CVE-2025-57807: A Critical Flaw in ImageMagick Could Lead to RCE, PoC Available ImageMagick, heap out-of-bounds write
  • Vulnerability Report

CVE-2025-57807: A Critical Flaw in ImageMagick Could Lead to RCE, PoC Available

Do Son September 8, 2025 0
Read More Read more about CVE-2025-57807: A Critical Flaw in ImageMagick Could Lead to RCE, PoC Available
Azure to Enforce MFA for All Resource Management Operations Azure outage, Front Door Microsoft Azure Surveillance, Gaza Call Records Red Sea cables, Azure outage MFA enforcement Azure outage, Red Sea cables Azure Key Vault Azure, Surveillance
  • Technology

Azure to Enforce MFA for All Resource Management Operations

Do Son September 8, 2025 0
Read More Read more about Azure to Enforce MFA for All Resource Management Operations
A New Threat to Artists: Hackers Threaten to Feed Stolen Art to AI AI extortion, artists' rights
  • Cybercriminals

A New Threat to Artists: Hackers Threaten to Feed Stolen Art to AI

Do Son September 8, 2025 0
Read More Read more about A New Threat to Artists: Hackers Threaten to Feed Stolen Art to AI
Microsoft Access 2016/2019 Is Nearing End-of-Life Smart App Control blocking Armoury Crate, ROG Ally Defender false positive 2026 Microsoft Zero-Day, Cloud Files UAF Microsoft Access end of life CVE-2025-21298 Azure Vulnerabilities
  • Technology

Microsoft Access 2016/2019 Is Nearing End-of-Life

Do Son September 8, 2025 0
Read More Read more about Microsoft Access 2016/2019 Is Nearing End-of-Life
CVE-2025-58782: Apache Jackrabbit Vulnerability Exposes Systems to JNDI Injection and RCE Apache Jackrabbit, JNDI injection CVE-2023-37895 Apache Jackrabbit, XXE Vulnerability
  • Vulnerability Report

CVE-2025-58782: Apache Jackrabbit Vulnerability Exposes Systems to JNDI Injection and RCE

Do Son September 8, 2025 0
Read More Read more about CVE-2025-58782: Apache Jackrabbit Vulnerability Exposes Systems to JNDI Injection and RCE
Microsoft Gives U.S. University Students Free Microsoft 365 Personal student discount Microsoft 365, Intelligent Services Microsoft 365 UWP, App Deprecation Microsoft 365, Startup Boost Windows 10 EOL, Microsoft 365 Support Protocol Deprecation Microsoft 365 Updates, IT Admin Alert Microsoft 365 VPN shut down Microsoft Authenticator, password manager Windows 10 Microsoft 365 Microsoft nonprofit policy, software donations
  • Technology

Microsoft Gives U.S. University Students Free Microsoft 365 Personal

Do Son September 8, 2025 0
Read More Read more about Microsoft Gives U.S. University Students Free Microsoft 365 Personal
iPhone 17 Air: A Beautifully Thin Phone, but with Major Compromises iPhone 17 Air, ultra-thin design iPhone Reverse charging Apple AI, Siri Overhaul iOS 26 Features
  • Technology

iPhone 17 Air: A Beautifully Thin Phone, but with Major Compromises

Do Son September 8, 2025 0
Read More Read more about iPhone 17 Air: A Beautifully Thin Phone, but with Major Compromises
Qualcomm CEO: Intel’s Foundry Is Not Ready for Our Chips Qualcomm support updates vs. Arm
  • Technology

Qualcomm CEO: Intel’s Foundry Is Not Ready for Our Chips

Do Son September 8, 2025 0
Read More Read more about Qualcomm CEO: Intel’s Foundry Is Not Ready for Our Chips
iOS 26 Finally Unlocks Full-Resolution Screen Recording Apple Russia payment suspension iOS 26.3 Proximity Pairing, Apple DMA compliance 2026 Tap to Pay, Apple Pay Wireless charging Always-On Display, iOS 26 iOS 26, EU App APIs Rare Earths, Apple Supply Chain
  • Technology

iOS 26 Finally Unlocks Full-Resolution Screen Recording

Do Son September 8, 2025 0
Read More Read more about iOS 26 Finally Unlocks Full-Resolution Screen Recording
Noisy Bear: A New APT Group Is Spying on Kazakhstan’s Energy Sector Noisy Bear, cyber espionage
  • Cyber Security

Noisy Bear: A New APT Group Is Spying on Kazakhstan’s Energy Sector

Do Son September 8, 2025 0
Read More Read more about Noisy Bear: A New APT Group Is Spying on Kazakhstan’s Energy Sector
Progress Patches Remote Command Execution Flaw in OpenEdge AdminServer (CVE-2025-7388) CVE-2024-46909 & CVE-2024-8785 OpenEdge, Remote Command Execution
  • Vulnerability Report

Progress Patches Remote Command Execution Flaw in OpenEdge AdminServer (CVE-2025-7388)

Do Son September 8, 2025 0
Read More Read more about Progress Patches Remote Command Execution Flaw in OpenEdge AdminServer (CVE-2025-7388)
NightshadeC2: A New Botnet Is Using “UAC Prompt Bombing” to Bypass Windows Defender NightshadeC2, UAC Prompt Bombing
  • Malware

NightshadeC2: A New Botnet Is Using “UAC Prompt Bombing” to Bypass Windows Defender

Do Son September 8, 2025 0
Read More Read more about NightshadeC2: A New Botnet Is Using “UAC Prompt Bombing” to Bypass Windows Defender
Podman Patches Symlink Traversal Vulnerability in kube play Command (CVE-2025-9566) Podman, container vulnerability
  • Vulnerability Report

Podman Patches Symlink Traversal Vulnerability in kube play Command (CVE-2025-9566)

Do Son September 8, 2025 0
Read More Read more about Podman Patches Symlink Traversal Vulnerability in kube play Command (CVE-2025-9566)
50,000 Emails a Day: How a Cloud Flaw Is Fueling Phishing Campaigns phishing-3390518_1280
  • Cybercriminals

50,000 Emails a Day: How a Cloud Flaw Is Fueling Phishing Campaigns

Do Son September 8, 2025 0
Read More Read more about 50,000 Emails a Day: How a Cloud Flaw Is Fueling Phishing Campaigns
CVE-2025-57052: Critical JSON Parsing Flaw in cJSON With CVSS 9.8, PoC Available cJSON vulnerability
  • Vulnerability Report

CVE-2025-57052: Critical JSON Parsing Flaw in cJSON With CVSS 9.8, PoC Available

Do Son September 8, 2025 0
Read More Read more about CVE-2025-57052: Critical JSON Parsing Flaw in cJSON With CVSS 9.8, PoC Available
Anthropic to Pay Authors $1.5B in Landmark AI Copyright Settlement Anthropic Claude Code telemetry rollback response and developer community controversy Claude Code human error Claude AI Data Wipe, Constraining AI Tools Anthropic lawsuit, AI copyright Claude Code, web editor
  • Technology

Anthropic to Pay Authors $1.5B in Landmark AI Copyright Settlement

Do Son September 8, 2025 0
Read More Read more about Anthropic to Pay Authors $1.5B in Landmark AI Copyright Settlement
❮ Prev Page
Next Page ❯

Search

Translation

CVE ALERTS
📧

Email Delivery
Get threat intel straight to your inbox.

♾️

Unlimited Vendors
Track every technology in your stack.

🚨

All New CVE Alerts
Be the first to know about new flaws.

⚙️

Custom EPSS Threshold
Filter noise, focus on real risks.

💬

Slack & Teams Webhook
Integrate directly into your SecOps.

🚫

100% Ad-Free
Enjoy an uninterrupted reading experience.

$7/mo
Subscribe Now

🚨 Active Exploits in the Wild

  • CVE-2026-89026CVSS 9.8
    The Issabel Framework, the web framework supporting Issabel PBX software, before commit b97dbaf contains a hard-coded HS256 JWT...
    Admin intel📅 Updated: Sep 16, 2026
  • CVE-2026-58704
    In Cellular Modem, there is a possible permission bypass due to a logic error in the code. This...
    Admin intel📅 Updated: Sep 16, 2026
  • CVE-2026-87886
    Exploitation of this vulnerability has been detected in the wild in limited, targeted attacks against Acronis Backup plugin...
    Admin intel📅 Updated: Sep 16, 2026
  • CVE-2026-87827CVSS 10.0
    Certain KGUARD DVR devices running vulnerable firmware expose a system command execution service on all network interfaces without...
    Admin intel📅 Updated: Sep 15, 2026
  • CVE-2026-78006CVSS 9.8
    The The Events Calendar plugin for WordPress is vulnerable to Remote Code Execution in all versions up to,...
    Admin intel📅 Updated: Sep 15, 2026
  • CVE-2026-39364
    Vite is a frontend tooling framework for JavaScript. From 7.1.0 to before 7.3.2 and 8.0.5, on the Vite...
    Admin intel📅 Updated: Sep 15, 2026
  • CVE-2026-27540CVSS 9.0
    Unrestricted Upload of File with Dangerous Type vulnerability in Rymera Web Co Pty Ltd. Woocommerce Wholesale Lead Capture...
    Admin intel📅 Updated: Sep 15, 2026
  • CVE-2026-76461CVSS 9.8
    A vulnerability in the email parsing of Cisco AsyncOS Software for Cisco Secure Email Gateway could allow an...
    CISA KEV📅 Added to KEV: Sep 14, 2026
Powered by CVE Watchtower

🔴 Live Critical Threats

  • CVE-2026-27565CVSS 9.8
    An unauthenticated remote attacker can upload a malicious IODD file that places...
  • CVE-2026-27546CVSS 9.8
    An unauthenticated remote attacker can exploit an authentication bypass in the _account_log...
  • CVE-2026-73447CVSS 9.1
    A privileged attacker can exploit certain operation to execute arbitrary commands with...
  • CVE-2026-12793CVSS 9.8
    The JetFormBuilder — Dynamic Blocks Form Builder plugin for WordPress is vulnerable...
  • CVE-2026-14349CVSS 9.8
    The TrueBooker – Appointment Booking and Scheduler System plugin for WordPress is...
  • CVE-2026-73807CVSS 9.8
    The mySCADA myPRO Manager command API does not properly enforce authentication for...
  • CVE-2026-81855CVSS 9.1
    A hardcoded cryptographic client authentication key vulnerability exists in the robot testing...
  • CVE-2026-78225CVSS 9.0
    A hardcoded cryptographic server key vulnerability exists in the deployer-ng Update Controller...
  • CVE-2026-61560CVSS 9.8
    `@zereight/mcp-gitlab` is a Model Context Protocol server for GitLab. Prior to version...
  • CVE-2026-73437CVSS 9.6
    On affected platforms running Arista EOS with Dynamic Host Configuration Protocol (DHCP)...
Powered by CVE WATCHTOWER

Daily CyberSecurity

  • About SecurityOnline.info
  • Advertise with us
  • Announcement
  • Contact
  • Contributor Register
  • Login
  • Disclaimer
  • DCMA
  • Privacy Policy
  • About SecurityOnline.info
  • Advertise on SecurityOnline.info
  • Contact Us

When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

  • CVE Watchtower
  • CVE Statistics by Vendor 2026
  • Q2 2026 Report
  • Top Exploited CVEs
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube
© 2017 - 2026 Daily CyberSecurity. All Rights Reserved.