Skip to content
June 28, 2026
  • Linkedin
  • Twitter
  • Facebook
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Watchtower
  • Cyber Criminals
  • Data Leak
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Vulnerability Report
Light/Dark Button
NETGEAR Patches Critical Security Vulnerabilities in WiFi Routers (CVE-2025-25246) and Access Points CVE-2022-48196 NETGEAR Security Vulnerabilities
  • Vulnerability

NETGEAR Patches Critical Security Vulnerabilities in WiFi Routers (CVE-2025-25246) and Access Points

Do Son February 6, 2025 0
Read More Read more about NETGEAR Patches Critical Security Vulnerabilities in WiFi Routers (CVE-2025-25246) and Access Points
Kimsuky Group Leverages RDP Wrapper for Persistent Cyber Espionage North Korean Laptop Farm DPRK Insider Threat North Korea WMD Cyber Funding, Australia Sanctions Insider threat, North Korean hackers Kimsuky, cyber-espionage NPM Malware, North Korea Cyber-espionage North Korea, Remote IT Job Scam Laptop Farm - DriverEasy - Kimsuky Watering Hole Attack
  • Cyber Security
  • Malware

Kimsuky Group Leverages RDP Wrapper for Persistent Cyber Espionage

Do Son February 6, 2025 0
Read More Read more about Kimsuky Group Leverages RDP Wrapper for Persistent Cyber Espionage
CVE-2024-9643 & CVE-2024-9644: Authentication Bypass in Four-Faith F3x36 Routers Puts Networks at Risk CVE-2024-9643 & CVE-2024-9644
  • Vulnerability

CVE-2024-9643 & CVE-2024-9644: Authentication Bypass in Four-Faith F3x36 Routers Puts Networks at Risk

Do Son February 6, 2025 0
Read More Read more about CVE-2024-9643 & CVE-2024-9644: Authentication Bypass in Four-Faith F3x36 Routers Puts Networks at Risk
Apache James Mail Server Hit by Double Denial-of-Service Vulnerabilities CVE-2024-45626 and CVE-2024-37358
  • Vulnerability

Apache James Mail Server Hit by Double Denial-of-Service Vulnerabilities

Do Son February 6, 2025 0
Read More Read more about Apache James Mail Server Hit by Double Denial-of-Service Vulnerabilities
BADBOX Botnet: Pre-installed Malware Targets Android Devices Android BADBOX Botnet
  • Malware

BADBOX Botnet: Pre-installed Malware Targets Android Devices

Do Son February 6, 2025 0
Read More Read more about BADBOX Botnet: Pre-installed Malware Targets Android Devices
HPE Aruba Networking Issues Security Updates for ClearPass Policy Manager CVE-2024-26305 _ CVE-2025-23058 Aruba 5G Core Open Redirect
  • Vulnerability

HPE Aruba Networking Issues Security Updates for ClearPass Policy Manager

Do Son February 6, 2025 0
Read More Read more about HPE Aruba Networking Issues Security Updates for ClearPass Policy Manager
Cyberespionage Targets Aviation: ICAO and ACAO Breached Cyberespionage
  • Data Leak

Cyberespionage Targets Aviation: ICAO and ACAO Breached

Do Son February 6, 2025 0
Read More Read more about Cyberespionage Targets Aviation: ICAO and ACAO Breached
Vitest Vulnerability Exposes Developers to Remote Code Execution – CVE-2025-24964 (CVSS 9.7) CVE-2025-24964
  • Vulnerability

Vitest Vulnerability Exposes Developers to Remote Code Execution – CVE-2025-24964 (CVSS 9.7)

Do Son February 6, 2025 0
Read More Read more about Vitest Vulnerability Exposes Developers to Remote Code Execution – CVE-2025-24964 (CVSS 9.7)
Threat Actors Continue to Exploit Legitimate RMM Tool ScreenConnect KongTuke Microsoft Teams Phishing ModeloRAT Initial Access Broker CVE-2024-38193 - Lazarus Group Threat Actors ScreenConnect
  • Cyber Security

Threat Actors Continue to Exploit Legitimate RMM Tool ScreenConnect

Do Son February 6, 2025 0
Read More Read more about Threat Actors Continue to Exploit Legitimate RMM Tool ScreenConnect
ValleyRAT Returns: Silver Fox APT Deploys New Delivery Techniques for Multi-Stage Attacks DriverFixer0428, Contagious Interview Cache Smuggling, ClickFix Evasion North Korean Cyber Espionage
  • Malware

ValleyRAT Returns: Silver Fox APT Deploys New Delivery Techniques for Multi-Stage Attacks

Do Son February 6, 2025 0
Read More Read more about ValleyRAT Returns: Silver Fox APT Deploys New Delivery Techniques for Multi-Stage Attacks
GreenSpot APT Phishes 163.com Users with Spoofed Domains Oracle EBS Zero-Day, GRACEFUL SPIDER Cracked Software, Supply Chain Attack Black Basta - NOVA stealer
  • Cyber Security

GreenSpot APT Phishes 163.com Users with Spoofed Domains

Do Son February 6, 2025 0
Read More Read more about GreenSpot APT Phishes 163.com Users with Spoofed Domains
Windows 10 ESU Program: A Lifeline for Holdouts, But at What Cost? Windows 10 MSMQ Bug, KB5071546 Write Permissions Windows 10 Lawsuit Windows 10 ESU, Free Security Updates Windows 10 ESU program
  • Technology
  • Windows

Windows 10 ESU Program: A Lifeline for Holdouts, But at What Cost?

Do Son February 6, 2025 0
Read More Read more about Windows 10 ESU Program: A Lifeline for Holdouts, But at What Cost?
Gemini 2.0 Unleashed: Pro, Flash-Lite, & More Google Gemini, audio files Gemini AI, Google AI Google Gemini 2.0 Flash Thinking iOS
  • Technology

Gemini 2.0 Unleashed: Pro, Flash-Lite, & More

Do Son February 6, 2025 0
Read More Read more about Gemini 2.0 Unleashed: Pro, Flash-Lite, & More
Arch Linux on WSL 2: Microsoft Confirms Official Support Arch Linux WSL2
  • Linux
  • Vulnerability

Arch Linux on WSL 2: Microsoft Confirms Official Support

Do Son February 5, 2025 0
Read More Read more about Arch Linux on WSL 2: Microsoft Confirms Official Support
CVE-2025-20124 (CVSS 9.9) & CVE-2025-20125 (CVSS 9.1): Cisco Patches Critical Flaws in Identity Services Engine CVE-2025-20124 CVE-2025-20125
  • Vulnerability

CVE-2025-20124 (CVSS 9.9) & CVE-2025-20125 (CVSS 9.1): Cisco Patches Critical Flaws in Identity Services Engine

Do Son February 5, 2025 0
Read More Read more about CVE-2025-20124 (CVSS 9.9) & CVE-2025-20125 (CVSS 9.1): Cisco Patches Critical Flaws in Identity Services Engine
F5 Warns of TLS Session Resumption Vulnerability in NGINX (CVE-2025-23419) NGINX JavaScript Module Vulnerability CVE-2026-8711 NGINX 1.30.1 Security Update CVE-2026-42945 RCE NGINX Vulnerability CVE-2026-1642 NGINX Github - CVE-2025-23419
  • Vulnerability

F5 Warns of TLS Session Resumption Vulnerability in NGINX (CVE-2025-23419)

Do Son February 5, 2025 0
Read More Read more about F5 Warns of TLS Session Resumption Vulnerability in NGINX (CVE-2025-23419)
XE Group Exploits Zero-Day Vulnerabilities in VeraCore – CVE-2024-57968 & CVE-2025-25181 Winos 4.0 Malware Silver Fox APT RapperBot BVIEC cyberattack - CNC group DAMASCENED PEACOCK, malware analysis
  • Cyber Security
  • Vulnerability

XE Group Exploits Zero-Day Vulnerabilities in VeraCore – CVE-2024-57968 & CVE-2025-25181

Do Son February 5, 2025 0
Read More Read more about XE Group Exploits Zero-Day Vulnerabilities in VeraCore – CVE-2024-57968 & CVE-2025-25181
Malicious Go Package Exploits Caching for Stealthy Persistence Malicious Go Package Exploits Caching for Stealthy Persistence
  • Malware

Malicious Go Package Exploits Caching for Stealthy Persistence

Do Son February 5, 2025 0
Read More Read more about Malicious Go Package Exploits Caching for Stealthy Persistence
Zyxel Routers Under Attack: Default Credentials (CVE-2025-0890) and Code Injection (CVE-2024-40891), No Patch! CVE-2025-0890
  • Vulnerability

Zyxel Routers Under Attack: Default Credentials (CVE-2025-0890) and Code Injection (CVE-2024-40891), No Patch!

Do Son February 5, 2025 0
Read More Read more about Zyxel Routers Under Attack: Default Credentials (CVE-2025-0890) and Code Injection (CVE-2024-40891), No Patch!
Kubernetes Policy Enforcement at Risk: OPA Gatekeeper Bypass Exposes Security Flaws Ingress-Nginx Vulnerability Kubernetes RCE Vulnerability CVE-2025-9708 Kubernetes Security, Image Builder Vulnerability CVE-2024-10220 - OPA Gatekeeper Bypass
  • Vulnerability

Kubernetes Policy Enforcement at Risk: OPA Gatekeeper Bypass Exposes Security Flaws

Do Son February 5, 2025 0
Read More Read more about Kubernetes Policy Enforcement at Risk: OPA Gatekeeper Bypass Exposes Security Flaws
❮ Prev Page
Next Page ❯

Search

Translation

CVE WATCHTOWER
🚨

Receive alerts for vulnerabilities being exploited in the wild.

⚡

Get notified instantly when a Proof of Concept (PoC) exploit is published.

🔍

Access critical info on vulnerabilities even when marked as "RESERVED".

🧠

Insights powered by decades of expertise and global intelligence sources.

🎯

Customize alerts with up to 10 keywords for your specific tech stack.

📊

Export the raw CVE database for SIEM integration and reporting.

Upgrade Package

🚨 Active Exploits in the Wild

  • CVE-2026-28496CVSS 9.4
    FOSSBilling is a free, open-source billing and client management system. Versions prior to 0.8.0 have a Server-Side Template...
    Admin intel🗓 Updated: Jun 25, 2026
  • CVE-2026-12569
    PTC Windchill and FlexPLM contains an improper input validation vulnerability allowing an unauthenticated, remote attacker to execute arbitrary...
    🗓 Added to KEV: Jun 25, 2026
  • CVE-2025-67038CVSS 9.8
    Lantronix EDS5000 contains a code injection vulnerability that could allow attackers to inject arbitrary OS commands into the...
    🗓 Added to KEV: Jun 23, 2026
  • CVE-2026-34910CVSS 10.0
    Ubiquiti UniFi OS contains an improper input validation vulnerability which could allow a malicious actor with access to...
    🗓 Added to KEV: Jun 23, 2026
  • CVE-2026-34909CVSS 10.0
    Ubiquiti UniFi OS contains a path traversal vulnerability which could allow a malicious actor with access to the...
    🗓 Added to KEV: Jun 23, 2026
  • CVE-2026-34908CVSS 10.0
    Ubiquiti UniFi OS contains an improper access control vulnerability which could allow a malicious actor with access to...
    🗓 Added to KEV: Jun 23, 2026
  • CVE-2026-20230CVSS 8.6
    A vulnerability in Cisco Unified Communications Manager (Unified CM) and Cisco Unified Communications Manager Session Management Edition (Unified...
    Admin intel🗓 Updated: Jun 22, 2026
  • CVE-2026-20253CVSS 9.8
    Splunk Enterprise contains a missing authentication for critical function vulnerability which could allow an unauthenticated user to create...
    🗓 Added to KEV: Jun 18, 2026
Powered by CVE Watchtower

🔴 Live Critical Threats

  • CVE-2026-58053CVSS 9.9
    Gitea act_runner with the Docker backend (through act 0.262.0) passes a workflow's...
  • CVE-2026-12415CVSS 9.8
    The Invoice Generator plugin for WordPress is vulnerable to privilege escalation due...
  • CVE-2026-28701CVSS 9.8
    Various versions of Daktronics Controller Firmware could allow authenticated and unauthenticated remote...
  • CVE-2026-53576CVSS 10.0
    Kestra is an open-source, event-driven orchestration platform. Prior to 1.0.45 and 1.3.21,...
  • CVE-2026-49869CVSS 10.0
    Kestra is an open-source, event-driven orchestration platform. Prior to 1.0.45 and 1.3.21,...
  • CVE-2026-54350CVSS 10.0
    Budibase is an open-source low-code platform. Prior to 3.39.12, an unauthenticated visitor...
  • CVE-2026-54352CVSS 9.6
    Budibase is an open-source low-code platform. Prior to 3.39.9, `POST /api/pwa/process-zip` at...
  • CVE-2026-53309CVSS 9.8
    In the Linux kernel, the following vulnerability has been resolved: ocfs2/dlm: fix...
  • CVE-2026-52785CVSS 9.9
    OpenProject is open-source, web-based project management software. Prior to 17.3.3 and 17.4.1,...
  • CVE-2026-52782CVSS 9.9
    OpenProject is open-source, web-based project management software. Prior to 17.3.3 and 17.4.1,...
Powered by CVE WATCHTOWER

Our Websites
  • Penetration Testing Tools
  • The Daily Information Technology
  • Daily CyberSecurity

    • About SecurityOnline.info
    • Advertise with us
    • Announcement
    • Contact
    • Contributor Register
    • Login
    • Disclaimer
    • Privacy Policy
    • About SecurityOnline.info
    • Advertise on SecurityOnline.info
    • Contact Us

    When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

    • Disclaimer
    • Privacy Policy
    • DMCA NOTICE
    • Linkedin
    • Twitter
    • Facebook
    • Youtube
    © 2017 - 2026 Daily CyberSecurity. All Rights Reserved.