Skip to content
June 20, 2026
  • Linkedin
  • Twitter
  • Facebook
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Watchtower
  • Cyber Criminals
  • Data Leak
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Vulnerability Report
Light/Dark Button
DuplexSpy RAT: New C# Malware Toolkit Emerges on GitHub RAT
  • Malware

DuplexSpy RAT: New C# Malware Toolkit Emerges on GitHub

Do Son June 9, 2025 0
CYFIRMA’s Threat Intelligence Team has published an in-depth analysis of DuplexSpy RAT, a powerful and modular remote...
Read More Read more about DuplexSpy RAT: New C# Malware Toolkit Emerges on GitHub
Destructive npm Packages Disguised as Utilities Trigger Remote System Wipes on Demand Wiping Systems
  • Malware

Destructive npm Packages Disguised as Utilities Trigger Remote System Wipes on Demand

Do Son June 9, 2025 0
The Socket Threat Research Team has disclosed two dangerous npm packages that masquerade as helpful developer tools—but...
Read More Read more about Destructive npm Packages Disguised as Utilities Trigger Remote System Wipes on Demand
Android’s Secret Tracking: Meta & Yandex Abused Localhost for User Data Android Tracking
  • Data Leak

Android’s Secret Tracking: Meta & Yandex Abused Localhost for User Data

Do Son June 9, 2025 0
A new disclosure by researchers from IMDEA Networks, Radboud University, and KU Leuven has revealed a novel...
Read More Read more about Android’s Secret Tracking: Meta & Yandex Abused Localhost for User Data
Go Fixes Three Security Flaws: Update Your Apps Now! Go Security Update
  • Vulnerability Report

Go Fixes Three Security Flaws: Update Your Apps Now!

Do Son June 9, 2025 0
The Go team has rolled out versions 1.24.4 and 1.23.10, addressing three critical security vulnerabilities affecting core...
Read More Read more about Go Fixes Three Security Flaws: Update Your Apps Now!
FormBook Returns: Exploiting CVE-2017-0199 via Malicious Excel Attachments in New Phishing Campaign Demo for CVE-2017-0199
  • Malware

FormBook Returns: Exploiting CVE-2017-0199 via Malicious Excel Attachments in New Phishing Campaign

Do Son June 9, 2025 0
FortiGuard Labs has uncovered a renewed phishing campaign that leverages the eight-year-old CVE-2017-0199 vulnerability to deploy FormBook,...
Read More Read more about FormBook Returns: Exploiting CVE-2017-0199 via Malicious Excel Attachments in New Phishing Campaign
EnigmaCyberSecurity: Brazil-Focused Banking Malware Campaign Uses RATs and Malicious Extensions Attack chain using a browser extension
  • Malware

EnigmaCyberSecurity: Brazil-Focused Banking Malware Campaign Uses RATs and Malicious Extensions

Do Son June 9, 2025 0
Positive Technologies has uncovered an ongoing, multi-stage cybercrime campaign—dubbed “EnigmaCyberSecurity”—primarily targeting Brazilian users and financial institutions. The...
Read More Read more about EnigmaCyberSecurity: Brazil-Focused Banking Malware Campaign Uses RATs and Malicious Extensions
CVE-2025-4318 (CVSS 9.5): AWS Amplify RCE Flaw Exposed with PoC – CI/CD Pipelines at Risk AWS Amplify, Remote Code Execution
  • Vulnerability Report

CVE-2025-4318 (CVSS 9.5): AWS Amplify RCE Flaw Exposed with PoC – CI/CD Pipelines at Risk

Do Son June 9, 2025 0
A critical vulnerability in AWS Amplify’s UI generation tool, @aws-amplify/codegen-ui, is putting developers—and their build pipelines—at serious...
Read More Read more about CVE-2025-4318 (CVSS 9.5): AWS Amplify RCE Flaw Exposed with PoC – CI/CD Pipelines at Risk
New Mirai Botnet Variant Targets DVR Systems via CVE-2024-3721 Mirai Botnet Variants malware CVE-2024-3721
  • Malware
  • Vulnerability Report

New Mirai Botnet Variant Targets DVR Systems via CVE-2024-3721

Do Son June 8, 2025 0
Kaspersky researchers have uncovered a fresh wave of attacks exploiting CVE-2024-3721 to deploy a revamped variant of...
Read More Read more about New Mirai Botnet Variant Targets DVR Systems via CVE-2024-3721
Fake Government Android App Found Delivering Stealer Malware Android Malware, PM KISAN YOJNA
  • Malware

Fake Government Android App Found Delivering Stealer Malware

Do Son June 8, 2025 0
Security researchers at K7 Computing have uncovered a malicious Android campaign that leverages the name of a...
Read More Read more about Fake Government Android App Found Delivering Stealer Malware
Legacy vBulletin 4.x Patch Backfires: RCE via Signed Base64 Payloads and a Full PoC vBulletin RCE
  • Vulnerability

Legacy vBulletin 4.x Patch Backfires: RCE via Signed Base64 Payloads and a Full PoC

Do Son June 7, 2025 0
Security researcher Egidio Romano (EgiX) uncovers a fascinating PHP Object Injection (POI) vulnerability in legacy versions of...
Read More Read more about Legacy vBulletin 4.x Patch Backfires: RCE via Signed Base64 Payloads and a Full PoC
AI-Augmented Hackers: The Untold Reality of Professional Hacker-for-Hire in 2025 SonicWall Reconnaissance Akira Ransomware residential proxy malware TraderTraitor BreachForums Honeypot, French Interior Ministry Leak
  • Technique

AI-Augmented Hackers: The Untold Reality of Professional Hacker-for-Hire in 2025

Do Son June 7, 2025 0
Table of Contents The Unseen Shift: Hackers and AI Join Forces Why the Old Rules Don’t Work...
Read More Read more about AI-Augmented Hackers: The Untold Reality of Professional Hacker-for-Hire in 2025
Nintendo Switch 2 Hacked? Early Exploit Uncovered! Nintendo tariff lawsuit 2026 Nintendo Switch 2, MIG Tool Nintendo Switch 2, USB-C Restrictions Nintendo Switch 2, Vulnerability
  • Vulnerability Report

Nintendo Switch 2 Hacked? Early Exploit Uncovered!

Do Son June 7, 2025 0
Nintendo’s recently launched Switch 2 console has already had a vulnerability discovered by enthusiasts. Security researcher David...
Read More Read more about Nintendo Switch 2 Hacked? Early Exploit Uncovered!
Unpatched XSS Vulnerability in Jenkins Gatling Plugin Puts Users at Risk (CVE-2025-5806) Jenkins Security Vulnerability
  • Vulnerability Report

Unpatched XSS Vulnerability in Jenkins Gatling Plugin Puts Users at Risk (CVE-2025-5806)

Do Son June 7, 2025 0
The Jenkins community has issued a high-severity security advisory for a newly disclosed vulnerability in the Gatling...
Read More Read more about Unpatched XSS Vulnerability in Jenkins Gatling Plugin Puts Users at Risk (CVE-2025-5806)
Claude Gov: Anthropic’s AI Brain for U.S. National Security AI, National Security Claude Gov
  • Technology

Claude Gov: Anthropic’s AI Brain for U.S. National Security

Do Son June 7, 2025 0
Anthropic has recently unveiled Claude Gov, an artificial intelligence model specifically developed for U.S. national security agencies....
Read More Read more about Claude Gov: Anthropic’s AI Brain for U.S. National Security
Apple’s App Store shaken: Court ends ‘Apple tax’ on external purchases Apple HomePad delay Tesla CarPlay integration 2026 Apple CarPlay AI integration 2026 Apple 2026 product roadmap rumors, foldable iPhone release date Apple Vision Pro sales slump, Vision Pro production cut Russia FaceTime Ban Network Blockade Apple Apple 2026 Roadmap, iPhone Foldable, Apple Intelligence Apple Maps ads, iOS monetization Apple, Digital Markets Act FCC Leak, iPhone 16e Schematics iPhone Fold Apple Made in India Apple US Investment, Indian Tariffs Apple Leadership, Tim Cook Tenure Siri Redesign, Apple AI Apple App Store Apple EU, Digital Markets Act CVE-2022-32898 Third-Party iOS Apps Apple Antitrust, DOJ Lawsuit
  • Technology

Apple’s App Store shaken: Court ends ‘Apple tax’ on external purchases

Do Son June 7, 2025 0
The court has recently denied Apple’s request to suspend the enforcement of a ruling that allows users...
Read More Read more about Apple’s App Store shaken: Court ends ‘Apple tax’ on external purchases
Popular Chrome Extensions Caught Leaking Sensitive User Data via Unencrypted HTTP os
  • Data Leak

Popular Chrome Extensions Caught Leaking Sensitive User Data via Unencrypted HTTP

Do Son June 7, 2025 0
A new report by Symantec Threat Hunter Team uncovers that several widely-used Chrome extensions—some with millions of...
Read More Read more about Popular Chrome Extensions Caught Leaking Sensitive User Data via Unencrypted HTTP
TA397’s Global Targeting Tactics Reveal Indian State-Backed Cyber Operations TA397, India Cyber Espionage
  • Cyber Security

TA397’s Global Targeting Tactics Reveal Indian State-Backed Cyber Operations

Do Son June 7, 2025 0
A new report from Proofpoint Threat Research, in collaboration with Threatray, reveals mounting evidence that TA397 (also...
Read More Read more about TA397’s Global Targeting Tactics Reveal Indian State-Backed Cyber Operations
Signal Phishing Alert: Sophisticated Campaign Targets Armenian Civil Society & Government Signal Phishing, Armenia Cyberattack
  • Cyber Security

Signal Phishing Alert: Sophisticated Campaign Targets Armenian Civil Society & Government

Do Son June 7, 2025 0
In early March 2025, Armenia became the focal point of a sophisticated spear-phishing campaign that leveraged encrypted...
Read More Read more about Signal Phishing Alert: Sophisticated Campaign Targets Armenian Civil Society & Government
CISA Alert: Critical Vulnerabilities Found in CyberData SIP Emergency Intercom Devices CyberData Vulnerabilities, SIP Intercom Security
  • Vulnerability Report

CISA Alert: Critical Vulnerabilities Found in CyberData SIP Emergency Intercom Devices

Do Son June 7, 2025 0
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued a critical advisory warning of multiple high-impact...
Read More Read more about CISA Alert: Critical Vulnerabilities Found in CyberData SIP Emergency Intercom Devices
New Zero-Click iPhone Exploit “NICKNAME” Targeted High-Profile Individuals Across the US and EU iMessage Vulnerability, Zero-Click Exploit NICKNAME vulnerability
  • Vulnerability Report

New Zero-Click iPhone Exploit “NICKNAME” Targeted High-Profile Individuals Across the US and EU

Do Son June 6, 2025 0
In a significant revelation, iVerify’s Research Team has uncovered a previously unknown zero-click iMessage vulnerability—dubbed “NICKNAME”—that was...
Read More Read more about New Zero-Click iPhone Exploit “NICKNAME” Targeted High-Profile Individuals Across the US and EU
❮ Prev Page
Next Page ❯

Search

Translation

CVE WATCHTOWER
🚨

Receive alerts for vulnerabilities being exploited in the wild.

⚡

Get notified instantly when a Proof of Concept (PoC) exploit is published.

🔍

Access critical info on vulnerabilities even when marked as "RESERVED".

🧠

Insights powered by decades of expertise and global intelligence sources.

🎯

Customize alerts with up to 10 keywords for your specific tech stack.

📊

Export the raw CVE database for SIEM integration and reporting.

Upgrade Package

🔴 Live Critical Threats

  • CVE-2026-11551CVSS 9.8
    The Branda plugin for WordPress is vulnerable to privilege escalation via account...
  • CVE-2026-56081CVSS 9.1
    Cap-go before 12.128.2 contains an authentication logic flaw that lets an attacker...
  • CVE-2026-56073CVSS 9.4
    Cap-go before 12.128.2 contains an authentication bypass vulnerability in OTP verification that...
  • CVE-2026-55447CVSS 9.6
    ### Summary All components based on `BaseFileComponent` are vulnerable to the following...
  • CVE-2026-48584CVSS 9.9
    Execution with unnecessary privileges in Azure Synapse allows an authorized attacker to...
  • CVE-2026-48582CVSS 9.6
    Missing authorization in Microsoft Exchange Online allows an authorized attacker to elevate...
  • CVE-2026-45480CVSS 10.0
    Improper authentication in Azure Active Directory allows an unauthorized attacker to elevate...
  • CVE-2026-55255CVSS 9.9
    ## Summary Insecure Direct Object Reference (IDOR) vulnerability in `/api/v1/responses` endpoint allows...
  • CVE-2026-54782CVSS 10.0
    ### Impact Full impersonation of any principal the trusted STS could have...
  • CVE-2026-48773CVSS 9.8
    ProxySQL is a proxy for MySQL and its forks, as well as...
Powered by CVE WATCHTOWER

Recent Zero-Day Vulnerabilities

  • GreatXML BitLocker Bypass: Public PoC Exploit Disclosed
  • Check Point VPN Vulnerability Exploited in the Wild with Ransomware Links
  • Weekly Threat Intelligence: June 1 to June 7, 2026
  • Cisco SD-WAN Vulnerability Exploited in the Wild with Root RCE Risks
  • Android Zero-Day Flaw Exploited in the Wild: June 2026 Patches Released
  • Exploited in the Wild: Critical OWA Spoofing Flaw (CVE-2026-42897) Hits On-Premises Exchange Servers
Our Websites
  • Penetration Testing Tools
  • The Daily Information Technology
  • Daily CyberSecurity

    • About SecurityOnline.info
    • Advertise with us
    • Announcement
    • Contact
    • Contributor Register
    • Login
    • Disclaimer
    • Privacy Policy
    • About SecurityOnline.info
    • Advertise on SecurityOnline.info
    • Contact Us

    When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

    • Disclaimer
    • Privacy Policy
    • DMCA NOTICE
    • Linkedin
    • Twitter
    • Facebook
    • Youtube
    © 2017 - 2026 Daily CyberSecurity. All Rights Reserved.