Skip to content
September 28, 2026
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Data
    • CVE Watchtower
    • Top Exploited CVEs
    • CVE Stats by Vendor
    • Q2 2026 Report
    • CVE Alerts
    • CVE Alert Settings
    • Pricing
  • Cyber Criminals
  • Data Leak
  • Free Tools
    • CVSS 3.1 Calculator
    • Certificate Viewer
    • DNS Lookup
    • Encoder & Hash Generator
    • IP / Subnet Calculator
    • Whois Lookup
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Weekly Recap
Light/Dark Button
OmegaPro Founders Charged: DOJ Unseals Indictment for $650M Global Crypto Ponzi Scheme OmegaPro, Crypto Ponzi Scheme
  • Cybercriminals

OmegaPro Founders Charged: DOJ Unseals Indictment for $650M Global Crypto Ponzi Scheme

Do Son July 9, 2025 0
Read More Read more about OmegaPro Founders Charged: DOJ Unseals Indictment for $650M Global Crypto Ponzi Scheme
Microsoft’s July 2025 Patch Tuesday: 140 Flaws Fixed, Including Zero-Day, RCEs & AMD CPU Threats Patch Tuesday, Microsoft Security
  • Vulnerability Report

Microsoft’s July 2025 Patch Tuesday: 140 Flaws Fixed, Including Zero-Day, RCEs & AMD CPU Threats

Do Son July 9, 2025 0
Read More Read more about Microsoft’s July 2025 Patch Tuesday: 140 Flaws Fixed, Including Zero-Day, RCEs & AMD CPU Threats
Philippines Hit by Surge in Chinese Cybercrime: NFC & Smishing Attacks Steal Millions from Mobile Wallets Philippines Cybercrime, NFC Fraud
  • Cybercriminals

Philippines Hit by Surge in Chinese Cybercrime: NFC & Smishing Attacks Steal Millions from Mobile Wallets

Do Son July 9, 2025 0
Read More Read more about Philippines Hit by Surge in Chinese Cybercrime: NFC & Smishing Attacks Steal Millions from Mobile Wallets
Fortinet Fixes Critical SQL Injection Flaw in FortiWeb (CVE-2025-25257, CVSS 9.6) FortiWeb, SQL Injection
  • Vulnerability Report

Fortinet Fixes Critical SQL Injection Flaw in FortiWeb (CVE-2025-25257, CVSS 9.6)

Do Son July 9, 2025 0
Read More Read more about Fortinet Fixes Critical SQL Injection Flaw in FortiWeb (CVE-2025-25257, CVSS 9.6)
Chinese State-Sponsored Hacker Xu Zewei Arrested in Italy for COVID-19 Research & Exchange Server Hacks China Cyberespionage, HAFNIUM Arrest
  • Cybercriminals

Chinese State-Sponsored Hacker Xu Zewei Arrested in Italy for COVID-19 Research & Exchange Server Hacks

Do Son July 9, 2025 0
Read More Read more about Chinese State-Sponsored Hacker Xu Zewei Arrested in Italy for COVID-19 Research & Exchange Server Hacks
Anatsa Resurfaces: Banking Trojan Targets North America via Google Play anan
  • Malware

Anatsa Resurfaces: Banking Trojan Targets North America via Google Play

Do Son July 9, 2025 0
Read More Read more about Anatsa Resurfaces: Banking Trojan Targets North America via Google Play
Critical Flaws in Phoenix Contact EV Charging Controllers Expose Infrastructure to Remote Code Execution and Unauthorized Access Phoenix Contact, Critical Vulnerabilities
  • Vulnerability Report

Critical Flaws in Phoenix Contact EV Charging Controllers Expose Infrastructure to Remote Code Execution and Unauthorized Access

Do Son July 9, 2025 0
Read More Read more about Critical Flaws in Phoenix Contact EV Charging Controllers Expose Infrastructure to Remote Code Execution and Unauthorized Access
Google’s New Android Advanced Protection Supercharges Chrome Security for High-Risk Users google-android
  • Android

Google’s New Android Advanced Protection Supercharges Chrome Security for High-Risk Users

Do Son July 8, 2025 0
Read More Read more about Google’s New Android Advanced Protection Supercharges Chrome Security for High-Risk Users
MediaTek July 2025 Security Bulletin: Heap Overflows, WLAN Flaws, and Bluetooth Risks Threaten Billions of Devices MediaTek Chipset Flaws, WLAN Buffer Overflow MediaTek Vulnerabilities, Chipset Security
  • Vulnerability Report

MediaTek July 2025 Security Bulletin: Heap Overflows, WLAN Flaws, and Bluetooth Risks Threaten Billions of Devices

Do Son July 8, 2025 0
Read More Read more about MediaTek July 2025 Security Bulletin: Heap Overflows, WLAN Flaws, and Bluetooth Risks Threaten Billions of Devices
SAP’s July 2025 Patch Day Brings 27 New Notes, Multiple Critical RCE & Deserialization Flaws (CVSS 10.0) SAP security patch day critical security vulnerabilities SAP SQL Injection April 2026 Patch Day SAP Security, Critical Vulnerabilities Security Patch Day CVE-2025-42944
  • Vulnerability Report

SAP’s July 2025 Patch Day Brings 27 New Notes, Multiple Critical RCE & Deserialization Flaws (CVSS 10.0)

Do Son July 8, 2025 0
Read More Read more about SAP’s July 2025 Patch Day Brings 27 New Notes, Multiple Critical RCE & Deserialization Flaws (CVSS 10.0)
AI-Designed Drugs Head to Human Trials: Google DeepMind’s Isomorphic Labs Marks Historic Milestone Sundar Pichai ChatGPT, Generative AI Rivalry Google AI Pro, student verification AI Overview, Publishers Drug Discovery AI, Isomorphic Labs Google AI Overviews, Antitrust Complaint Google AI Studio Google One AI, student offer Google Samsung Antitrust Gemini Gemini AI, Child Safety
  • Technology

AI-Designed Drugs Head to Human Trials: Google DeepMind’s Isomorphic Labs Marks Historic Milestone

Do Son July 8, 2025 0
Read More Read more about AI-Designed Drugs Head to Human Trials: Google DeepMind’s Isomorphic Labs Marks Historic Milestone
Free Software Foundation Under Siege: Ongoing DDoS & Relentless AI Web Crawler Attacks Since 2024 MadeYouReset, HTTP/2 vulnerability FSF, AI Scraping Attacks OracleIV botnet
  • Cybercriminals

Free Software Foundation Under Siege: Ongoing DDoS & Relentless AI Web Crawler Attacks Since 2024

Do Son July 8, 2025 0
Read More Read more about Free Software Foundation Under Siege: Ongoing DDoS & Relentless AI Web Crawler Attacks Since 2024
Elon Musk to Livestream Grok 4 AI Unveiling on July 9: Multimodal, 130K Context & Coding Power AI coding, grok-code-fast-1 xAI Grok 3 Grok 4, AI Model Baby Grok, xAI for Kids
  • Technology

Elon Musk to Livestream Grok 4 AI Unveiling on July 9: Multimodal, 130K Context & Coding Power

Do Son July 8, 2025 0
Read More Read more about Elon Musk to Livestream Grok 4 AI Unveiling on July 9: Multimodal, 130K Context & Coding Power
FCC Reallocates 6GHz Wi-Fi Band to Mobile Carriers: Threatens Next-Gen Wi-Fi Speeds & Innovation Wi-Fi fuzzer FCC Spectrum, 6GHz Reallocation
  • Technology

FCC Reallocates 6GHz Wi-Fi Band to Mobile Carriers: Threatens Next-Gen Wi-Fi Speeds & Innovation

Do Son July 8, 2025 0
Read More Read more about FCC Reallocates 6GHz Wi-Fi Band to Mobile Carriers: Threatens Next-Gen Wi-Fi Speeds & Innovation
Jack Dorsey Unveils “Bitchat”: New Bluetooth-Only App Offers Decentralized, Internet-Free Messaging Jack Dorsey, Decentralized Messaging
  • Technology

Jack Dorsey Unveils “Bitchat”: New Bluetooth-Only App Offers Decentralized, Internet-Free Messaging

Do Son July 8, 2025 0
Read More Read more about Jack Dorsey Unveils “Bitchat”: New Bluetooth-Only App Offers Decentralized, Internet-Free Messaging
Microsoft Edge Achieves Sub-300ms FCP: Browser UI Now Loads Instantly Microsoft Edge Google account login interface and synchronization settings Browser Choice Alliance letter Microsoft Edge cleartext credentials memory dump Microsoft Edge auto-startup Microsoft Edge Collections sunset, export Edge Collections CSV Edge IE Mode Zero-Day, Chakra Exploit Windows Search, Microsoft Edge AI video translation, Edge browser Microsoft Editor, Edge Edge Developer tools Windows 10 ESU, Microsoft Edge Microsoft Edge, FCP Optimization CVE-2023-36735 Edge, AI Search
  • Technology

Microsoft Edge Achieves Sub-300ms FCP: Browser UI Now Loads Instantly

Do Son July 8, 2025 0
Read More Read more about Microsoft Edge Achieves Sub-300ms FCP: Browser UI Now Loads Instantly
iOS 26 Beta 3 Unleashed: Apple Refines “Liquid Glass” UI, Boosting Readability in Music, Safari & More Apple Russia payment suspension iOS 26.3 Proximity Pairing, Apple DMA compliance 2026 Tap to Pay, Apple Pay Wireless charging Always-On Display, iOS 26 iOS 26, EU App APIs Rare Earths, Apple Supply Chain
  • Technology

iOS 26 Beta 3 Unleashed: Apple Refines “Liquid Glass” UI, Boosting Readability in Music, Safari & More

Do Son July 8, 2025 0
Read More Read more about iOS 26 Beta 3 Unleashed: Apple Refines “Liquid Glass” UI, Boosting Readability in Music, Safari & More
Galaxy Z Fold7 & Flip7 Leaked: Samsung’s Thinnest Foldables Yet Unveiling July 9 at Unpacked Samsung Foldables, Galaxy Z
  • Technology

Galaxy Z Fold7 & Flip7 Leaked: Samsung’s Thinnest Foldables Yet Unveiling July 9 at Unpacked

Do Son July 8, 2025 0
Read More Read more about Galaxy Z Fold7 & Flip7 Leaked: Samsung’s Thinnest Foldables Yet Unveiling July 9 at Unpacked
Apple Appeals €500M EU DMA Fine: Challenges “Unprecedented” Ruling on App Store Policies iOS 27 Liquid Glass slider iPhone Flip rumors 2026 Setapp Mobile iOS shutdown, Apple DMA political delay tactics Apple AI pin wearable 2027, Siri Campos Gemini integration Apple AI strategy 2026, Liquid Glass interface Apple Intelligence Mac Pro Cancelled Mac Studio Future App Store antitrust, UK lawsuit iPhone Fold Hinge, Cost Optimization MacBook Pro, OLED display Apple supply chain, manufacturing automation Apple home security, smart camera Apple Earnings, AI Investment Apple EU Fine, DMA Appeal CVE-2023-23529
  • Technology

Apple Appeals €500M EU DMA Fine: Challenges “Unprecedented” Ruling on App Store Policies

Do Son July 8, 2025 0
Read More Read more about Apple Appeals €500M EU DMA Fine: Challenges “Unprecedented” Ruling on App Store Policies
Galaxy S25 Edge Breaks Sales Records in Europe, Outselling All Previous Plus Models Samsung zero-day Samsung Galaxy S25 Edge, Sales Performance Samsung Account, Inactive Accounts One UI 7 Samsung Update
  • Technology

Galaxy S25 Edge Breaks Sales Records in Europe, Outselling All Previous Plus Models

Do Son July 8, 2025 0
Read More Read more about Galaxy S25 Edge Breaks Sales Records in Europe, Outselling All Previous Plus Models
MongoDB Flaws Allow Privilege Escalation & DoS MongoDB Vulnerability CVE-2026-25611 MongoDB zlib vulnerability, CVE-2025-14847 MongoDB Vulnerabilities, Data Access CVE-2024-6376 CVE-2025-0755
  • Vulnerability

MongoDB Flaws Allow Privilege Escalation & DoS

Do Son July 8, 2025 0
Read More Read more about MongoDB Flaws Allow Privilege Escalation & DoS
NetSupport RAT Returns: Weaponized via WordPress & “ClickFix” for Remote Access NetSupport RAT, ClickFix Technique
  • Malware

NetSupport RAT Returns: Weaponized via WordPress & “ClickFix” for Remote Access

Do Son July 8, 2025 0
Read More Read more about NetSupport RAT Returns: Weaponized via WordPress & “ClickFix” for Remote Access
❮ Prev Page
Next Page ❯

Search

Translation

CVE ALERTS
📈

EPSS Spike Alerts
Catch risk spikes before they make headlines.

🎯

Custom EPSS/CVSS
Set score thresholds to effectively filter noise.

🛡️

Exploit Intel
Real-world exploit signals beyond the KEV catalog.

🐙

GitHub Issues
Auto-create alert tickets without duplication.

📬

Weekly Digest
Clean summaries, eliminating email spam.

🏷️

Watchlist Groups
Tag vulnerabilities by team (Infra/AppSec/SOC).

🔀

Smart Routing
Route chat channels based on severity levels.

🚨

RBP Tracker
Early warning detection and tracking system.

Subscribe – $7/mo or try free for 14 days →

🚨 Active Exploits in the Wild

  • CVE-2026-88772
    Memory overflow vulnerability leading to remote code execution or denial of service.
    Admin intelCISA KEV📅 Added to KEV: Sep 27, 2026📅 Updated: Sep 27, 2026
  • CVE-2026-88771
    Remote code execution due to improper input validation that can allow an unauthenticated attacker to execute arbitrary commands.
    Admin intelCISA KEV📅 Added to KEV: Sep 27, 2026📅 Updated: Sep 27, 2026
  • CVE-2026-65660CVSS 8.8
    Improper control of generation of code (\'code injection\') in Microsoft Office SharePoint allows an authorized attacker to execute...
    Admin intelCISA KEV📅 Added to KEV: Sep 25, 2026📅 Updated: Sep 25, 2026
  • CVE-2026-5430CVSS 10.0
    The JWT authentication mechanism accepts tokens signed with algorithms other than those explicitly configured or supported. This allows...
    CISA KEV📅 Added to KEV: Sep 24, 2026
  • CVE-2026-71362CVSS 9.1
    Adobe Commerce is affected by an Incorrect Authorization vulnerability that could result in privilege escalation. An attacker could...
    CISA KEV📅 Added to KEV: Sep 24, 2026
  • CVE-2026-48842CVSS 8.1
    Roundcube Webmail 1.6.x before 1.6.16 and 1.7.x before 1.7.1 has Pre-authentication SQL injection in the virtuser_query plugin via...
    Admin intel📅 Updated: Sep 23, 2026
  • CVE-2026-87902
    Unauthenticated path traversal in page-template resolution leading to conditional RCE An unauthenticated attacker can make get_page_template() page-template resolution...
    Admin intelCISA KEV📅 Added to KEV: Sep 25, 2026📅 Updated: Sep 23, 2026
  • CVE-2026-94127CVSS 9.8
    When a BIG-IP APM access policy and an OAuth profile is configured on a virtual server, specific malicious...
    Admin intelCISA KEV📅 Added to KEV: Sep 22, 2026📅 Updated: Sep 22, 2026
Powered by CVE Watchtower

Critical Vulnerabilities

  • CVE-2026-101187CVSS 9.4
    A weakness has been identified in Ziroom ZHOME A0101 1.0.1.0. This vulnerability affects the function pop_usb_device of the...
    📅 Updated: Sep 28, 2026
  • CVE-2026-102268CVSS 9.1
    PyJWT is a Python implementation of JSON Web Token standards. Prior to 2.14.0, is_pem_format in jwt/utils.py is affected...
    📅 Updated: Sep 28, 2026
  • CVE-2026-46649CVSS 9.1
    Joplin is an open source note-taking and to-do application that organises notes and lists into notebooks. Prior to...
    📅 Updated: Sep 28, 2026
  • CVE-2026-19759CVSS 9.4
    An Incorrect Authorization vulnerability in the task configuration in Google Cloud Application Integration versions prior to 2026-06-17 on Google...
    📅 Updated: Sep 28, 2026
  • CVE-2026-100606CVSS 9.2
    Flowise through 3.1.4 (Enterprise/platform mode with SSO enabled) contains an authentication bypass in the SSO login path. When...
    📅 Updated: Sep 28, 2026
  • CVE-2026-101110CVSS 9.3
    Joomla Extension - ordasoft.com - Unauthenticated SQL Injection in Book Library (Free) < 6.4.6 - site/booklibrary.php’s books() function...
    📅 Updated: Sep 28, 2026
  • CVE-2026-100752CVSS 9.3
    Joomla Extension - ordasoft.com - Unauthenticated SQL Injection in Real Estate Manager (Free) < 6.7.9 - site/realestatemanager.php builds...
    📅 Updated: Sep 28, 2026
  • CVE-2026-101108CVSS 9.3
    Joomla Extension - ordasoft.com - Unauthenticated SQL Injection in Vehicle Manager (Free) < 6.5.8 - site/vehiclemanager.php reads the...
    📅 Updated: Sep 28, 2026
Powered by CVE Watchtower

Daily CyberSecurity

  • About SecurityOnline.info
  • Advertise with us
  • Announcement
  • Contact
  • Contributor Register
  • Login
  • Disclaimer
  • DCMA
  • Privacy Policy
  • About SecurityOnline.info
  • Advertise on SecurityOnline.info
  • Contact Us

When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

  • CVE Watchtower
  • CVE Statistics by Vendor 2026
  • Q2 2026 Report
  • Top Exploited CVEs
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube
© 2017 - 2026 Daily CyberSecurity. All Rights Reserved.