Skip to content
October 4, 2026
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Data
    • CVE Watchtower
    • Top Exploited CVEs
    • CVE Stats by Vendor
    • Q2 2026 Report
    • CVE Alerts
    • CVE Alert Settings
    • Pricing
  • Cyber Criminals
  • Data Leak
  • Free Tools
    • CVSS 3.1 Calculator
    • Certificate Viewer
    • DNS Lookup
    • Encoder & Hash Generator
    • IP / Subnet Calculator
    • Whois Lookup
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Weekly Recap
Light/Dark Button
CVE-2025-22398: Dell Unity Hit by 9.8 CVSS Root-Level Command Injection Flaw Dell ECS Security Update CVE-2026-40636 Hard-coded Credentials Dell Business Price Increase, RAM and SSD Shortage 2025 Dell Data Lakehouse, Critical Privilege Escalation Authentication Bypass Vulnerability CVE-2025-22398
  • Vulnerability

CVE-2025-22398: Dell Unity Hit by 9.8 CVSS Root-Level Command Injection Flaw

Do Son March 31, 2025 0
Read More Read more about CVE-2025-22398: Dell Unity Hit by 9.8 CVSS Root-Level Command Injection Flaw
Gamaredon Exploits Troop Movement Lures to Spread Remcos via DLL Sideloading Seedworm Espionage Campaign 2026 ChromElevator Stealer DLL Sideloading SIM Swapping Crypto Theft Lazarus Comebacker, Aerospace Espionage Delete PlugX Malware
  • Cyber Security

Gamaredon Exploits Troop Movement Lures to Spread Remcos via DLL Sideloading

Do Son March 31, 2025 0
Read More Read more about Gamaredon Exploits Troop Movement Lures to Spread Remcos via DLL Sideloading
SHELBY Malware Abuses GitHub for Control and Data Theft SHELBY Malware
  • Malware

SHELBY Malware Abuses GitHub for Control and Data Theft

Do Son March 31, 2025 0
Read More Read more about SHELBY Malware Abuses GitHub for Control and Data Theft
Mitel Addresses High Severity XSS Vulnerability in MiContact Center Business CVE-2024-41714 - CVE-2025-23092
  • Vulnerability

Mitel Addresses High Severity XSS Vulnerability in MiContact Center Business

Do Son March 31, 2025 0
Read More Read more about Mitel Addresses High Severity XSS Vulnerability in MiContact Center Business
Warning: Discord’s API Exploited for Malicious Takeover Discord RAT
  • Malware

Warning: Discord’s API Exploited for Malicious Takeover

Do Son March 31, 2025 0
Read More Read more about Warning: Discord’s API Exploited for Malicious Takeover
Ubuntu Security Alert: Three Ways to Bypass User Namespace Restrictions Ubuntu 26.10 Stonking Stingray Ubuntu Security Alert: Three Ways to Bypass User Namespace Restrictions
  • Linux
  • Vulnerability

Ubuntu Security Alert: Three Ways to Bypass User Namespace Restrictions

Do Son March 31, 2025 0
Read More Read more about Ubuntu Security Alert: Three Ways to Bypass User Namespace Restrictions
Russian Intelligence Impersonates CIA in Phishing Attacks Russian Intelligence
  • Cyber Security

Russian Intelligence Impersonates CIA in Phishing Attacks

Do Son March 31, 2025 0
Read More Read more about Russian Intelligence Impersonates CIA in Phishing Attacks
Python-Powered Triton RAT Exfiltrates Data via Telegram and Evades Analysis Triton RAT
  • Malware

Python-Powered Triton RAT Exfiltrates Data via Telegram and Evades Analysis

Do Son March 31, 2025 0
Read More Read more about Python-Powered Triton RAT Exfiltrates Data via Telegram and Evades Analysis
GPU-Powered Evasion: Unpacking the Sophisticated CoffeeLoader Malware KTLVdoor backdoor - CoffeeLoader Malware
  • Malware

GPU-Powered Evasion: Unpacking the Sophisticated CoffeeLoader Malware

Do Son March 31, 2025 0
Read More Read more about GPU-Powered Evasion: Unpacking the Sophisticated CoffeeLoader Malware
Why Home Battery Backup and Solar Generators Are Essential in Today’s World ISO 27001
  • Technique

Why Home Battery Backup and Solar Generators Are Essential in Today’s World

Do Son March 30, 2025 0
Read More Read more about Why Home Battery Backup and Solar Generators Are Essential in Today’s World
Lucid: The Rising Threat of Phishing-as-a-Service Lucid PhAAS platform XinXin
  • Cyber Security

Lucid: The Rising Threat of Phishing-as-a-Service

Do Son March 30, 2025 0
Read More Read more about Lucid: The Rising Threat of Phishing-as-a-Service
CVE-2025-2294 Targets WordPress Plugin with 90,000+ Active Installs CVE-2025-2294
  • Vulnerability

CVE-2025-2294 Targets WordPress Plugin with 90,000+ Active Installs

Do Son March 30, 2025 0
Read More Read more about CVE-2025-2294 Targets WordPress Plugin with 90,000+ Active Installs
PJobRAT’s Evolution: New Campaign Steals Data from Android Screenshots from the interface of the malicious SaangalLite app
  • Malware

PJobRAT’s Evolution: New Campaign Steals Data from Android

Do Son March 30, 2025 0
Read More Read more about PJobRAT’s Evolution: New Campaign Steals Data from Android
Minimalist BSOD: Windows 11 Changes Crash Screen Design Windows BOSD
  • Windows

Minimalist BSOD: Windows 11 Changes Crash Screen Design

Do Son March 29, 2025 0
Read More Read more about Minimalist BSOD: Windows 11 Changes Crash Screen Design
Google Changes Android: What It Means for Developers Android Zero-Click RCE CVE-2026-0073 Android sideloading CVE-2024-43096, CVE-2024-43770, CVE-2024-43771, CVE-2024-49747 and, CVE-2024-49748
  • Android
  • Technology

Google Changes Android: What It Means for Developers

Do Son March 29, 2025 0
Read More Read more about Google Changes Android: What It Means for Developers
Microsoft’s “Startup Boost”: Faster Office, Higher Memory Use Office 2019 Mac read only Microsoft Office Startup Boost Office 2016 update KB5002700
  • Technology

Microsoft’s “Startup Boost”: Faster Office, Higher Memory Use

Do Son March 29, 2025 0
Read More Read more about Microsoft’s “Startup Boost”: Faster Office, Higher Memory Use
CISA Warns of RESURGE Malware: Exploiting Ivanti Vulnerability NTLM Vulnerabilities, CVE-2024-43451 CVE-2024-37361 - RESURGE Malware
  • Malware
  • Vulnerability

CISA Warns of RESURGE Malware: Exploiting Ivanti Vulnerability

Do Son March 29, 2025 0
Read More Read more about CISA Warns of RESURGE Malware: Exploiting Ivanti Vulnerability
VMware Sues Siemens: Unlicensed Software Use Alleged VMware Lawsuit Siemens
  • Technology

VMware Sues Siemens: Unlicensed Software Use Alleged

Do Son March 29, 2025 0
Read More Read more about VMware Sues Siemens: Unlicensed Software Use Alleged
SquareX Discloses Browser-Native Ransomware that Puts Millions at Risk SquareX_Browser-Native_Ransomware_1200x720px_CN_17429575245ugV3DPkdm
  • Press Release

SquareX Discloses Browser-Native Ransomware that Puts Millions at Risk

cybernewswire March 28, 2025 0
Read More Read more about SquareX Discloses Browser-Native Ransomware that Puts Millions at Risk
5 Common Ways to Find Hidden Spy Apps on Android (and How to Remove Them) Img_2025_03_28_17_08_08
  • Technique

5 Common Ways to Find Hidden Spy Apps on Android (and How to Remove Them)

Do Son March 28, 2025 0
Read More Read more about 5 Common Ways to Find Hidden Spy Apps on Android (and How to Remove Them)
JAMining launches free BTC cloud mining service to create a new model of passive income in cryptocurrency Img_2025_03_28_14_08_30
  • Technique

JAMining launches free BTC cloud mining service to create a new model of passive income in cryptocurrency

Do Son March 28, 2025 0
Read More Read more about JAMining launches free BTC cloud mining service to create a new model of passive income in cryptocurrency
CVE-2025-31103: Zero-Day Vulnerability Discovered in a-blog cms, Act Now to Protect Your Web Server Weaver E-cology RCE CVE-2026-22679 CVE-2026-20127 Cisco SD-WAN Exploitation AI-Driven Cyberattack ARXON Malware React Server Components Vulnerability CVE-2025-55182 FortiWeb Auth Bypass, Unauthenticated Admin Takeover RayInitiator Bootkit, LINE VIPER CVE-2025-59689 Department of the Treasury cybersecurity - CVE-2025-0108 PoC CVE-2025-31103 Dior Data Breach SK Telecom data breach, long-term intrusion
  • Vulnerability

CVE-2025-31103: Zero-Day Vulnerability Discovered in a-blog cms, Act Now to Protect Your Web Server

Do Son March 28, 2025 0
Read More Read more about CVE-2025-31103: Zero-Day Vulnerability Discovered in a-blog cms, Act Now to Protect Your Web Server
❮ Prev Page
Next Page ❯

Search

Translation

CVE ALERTS
📈

EPSS Spike Alerts
Catch risk spikes before they make headlines.

🎯

Custom EPSS/CVSS
Set score thresholds to effectively filter noise.

🛡️

Exploit Intel
Real-world exploit signals beyond the KEV catalog.

🐙

GitHub Issues
Auto-create alert tickets without duplication.

📬

Weekly Digest
Clean summaries, eliminating email spam.

🏷️

Watchlist Groups
Tag vulnerabilities by team (Infra/AppSec/SOC).

🔀

Smart Routing
Route chat channels based on severity levels.

🚨

RBP Tracker
Early warning detection and tracking system.

Subscribe – $7/mo or try free for 14 days →

🚨 Active Exploits in the Wild

  • CVE-2026-88779CVSS 8.7
    Vulnerability in NetScaler ADC and NetScaler Gateway. This issue affects ADC: before 14.1-73.41, before 13.1-64.28, before 14.1-73.41 FIPS,...
    Admin intel📅 Updated: Oct 4, 2026
  • CVE-2026-102490CVSS 8.5
    All versions of Zammad including the latest alpha enable the local zammad user to escalate privileges to root.
    Admin intelCISA KEV📅 Added to KEV: Oct 2, 2026📅 Updated: Oct 2, 2026
  • CVE-2026-102489CVSS 8.7
    Zammad versions 6.3.0 to 6.5.4 are vulnerable a session hijack vulnerability that leads to remote code execution as...
    Admin intelCISA KEV📅 Added to KEV: Oct 2, 2026📅 Updated: Oct 2, 2026
  • CVE-2026-100382CVSS 10.0
    Improper Neutralization of Special Elements used in an OS Command (\'OS Command Injection\') vulnerability in Wikimedia Foundation Mediawiki...
    Admin intel📅 Updated: Oct 1, 2026
  • CVE-2026-104286CVSS 9.8
    An improper limitation of a pathname to a restricted directory ('path traversal') vulnerability in Fortinet FortiMail 8.0.0 through...
    CISA KEV📅 Added to KEV: Oct 1, 2026
  • CVE-2026-76504CVSS 9.8
    A vulnerability in the API session-based authentication management of Cisco Catalyst SD-WAN Manager could allow an unauthenticated, remote...
    Admin intelCISA KEV📅 Added to KEV: Sep 30, 2026📅 Updated: Sep 30, 2026
  • CVE-2026-86950CVSS 8.8
    An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.7.1 and...
    Admin intelCISA KEV📅 Added to KEV: Sep 29, 2026📅 Updated: Sep 29, 2026
  • CVE-2026-88772
    Memory overflow vulnerability leading to remote code execution or denial of service.
    Admin intelCISA KEV📅 Added to KEV: Sep 27, 2026📅 Updated: Sep 27, 2026
Powered by CVE Watchtower

Critical Vulnerabilities

  • CVE-2026-105086CVSS 9.3
    WWBN AVideo 12.4 through 29.2.0 contains a stored cross-site scripting vulnerability that allows authenticated uploaders to inject HTML...
    📅 Updated: Oct 4, 2026
  • CVE-2026-105089CVSS 9.3
    WWBN AVideo through 29.2.0 contains a stored cross-site scripting vulnerability that allows users with upload permission to inject...
    📅 Updated: Oct 4, 2026
  • CVE-2026-82042CVSS 9.3
    UTMStack before 11.2.16 contains an authentication bypass vulnerability that allows remote attackers to gain full administrative API access...
    📅 Updated: Oct 4, 2026
  • CVE-2026-105215CVSS 9.3
    ZITADEL before 3.4.14 and 4.x before 4.16.2 contains an authentication bypass in the hosted Login V1 UI because...
    📅 Updated: Oct 4, 2026
  • CVE-2026-105211CVSS 9.2
    ZITADEL before 4.17.1 contains an authentication bypass vulnerability in Login V2 that allows unauthenticated attackers to take over...
    📅 Updated: Oct 4, 2026
  • CVE-2026-105209CVSS 9.3
    ZITADEL 3.x before 3.4.15 and 4.x before 4.17.1 contains an improper authorization vulnerability: when issuing passkey or passwordless...
    📅 Updated: Oct 4, 2026
  • CVE-2026-105207CVSS 9.3
    ZITADEL 3.0.0 through 3.4.15 and 4.0.0 before 4.17.3 creates links between user accounts and external identity providers without...
    📅 Updated: Oct 4, 2026
  • CVE-2026-103355CVSS 9.3
    Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Unlimited Elements Unlimited Elements...
    📅 Updated: Oct 4, 2026
Powered by CVE Watchtower

Daily CyberSecurity

  • About SecurityOnline.info
  • Advertise with us
  • Announcement
  • Contact
  • Contributor Register
  • Login
  • Disclaimer
  • DCMA
  • Privacy Policy
  • About SecurityOnline.info
  • Advertise on SecurityOnline.info
  • Contact Us

When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

  • CVE Watchtower
  • CVE Statistics by Vendor 2026
  • Q2 2026 Report
  • Top Exploited CVEs
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube
© 2017 - 2026 Daily CyberSecurity. All Rights Reserved.