Skip to content
October 5, 2026
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Data
    • CVE Watchtower
    • Top Exploited CVEs
    • CVE Stats by Vendor
    • Q2 2026 Report
    • CVE Alerts
    • CVE Alert Settings
    • Pricing
  • Cyber Criminals
  • Data Leak
  • Free Tools
    • CVSS 3.1 Calculator
    • Certificate Viewer
    • DNS Lookup
    • Encoder & Hash Generator
    • IP / Subnet Calculator
    • Whois Lookup
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Weekly Recap
Light/Dark Button
Critical Flaws Expose SICK DL100 Devices to Code Execution and Password Hacks CVE-2024-10025 CVE-2025-27593 & CVE-2025-27595
  • Vulnerability

Critical Flaws Expose SICK DL100 Devices to Code Execution and Password Hacks

Do Son March 18, 2025 0
Read More Read more about Critical Flaws Expose SICK DL100 Devices to Code Execution and Password Hacks
Fans-CRM: Best Creator Tool for OnlyFans VPN & Content Management 1
  • Technique

Fans-CRM: Best Creator Tool for OnlyFans VPN & Content Management

Do Son March 18, 2025 0
Read More Read more about Fans-CRM: Best Creator Tool for OnlyFans VPN & Content Management
Massive Ad Fraud Campaign Deployed 331 Apps, Resulting in 60 Million Downloads Ad Fraud Campaign
  • Malware

Massive Ad Fraud Campaign Deployed 331 Apps, Resulting in 60 Million Downloads

Do Son March 18, 2025 0
Read More Read more about Massive Ad Fraud Campaign Deployed 331 Apps, Resulting in 60 Million Downloads
SquareX Launches “Year of Browser Bugs” (YOBB) to Expose Critical Security Blind Spots Press_Release_Image_20250317_01_SquareX_Year_of_Br_1742208078h25SzkK9RV
  • Press Release

SquareX Launches “Year of Browser Bugs” (YOBB) to Expose Critical Security Blind Spots

cybernewswire March 18, 2025 0
Read More Read more about SquareX Launches “Year of Browser Bugs” (YOBB) to Expose Critical Security Blind Spots
Google’s New YouTube Warning: No Ad Blockers or Lose Your Account? YouTube Shorts, digital well-being YouTube AI doppelgängers Shorts, Gemini 3 Playables games
  • Technology

Google’s New YouTube Warning: No Ad Blockers or Lose Your Account?

Do Son March 18, 2025 0
Read More Read more about Google’s New YouTube Warning: No Ad Blockers or Lose Your Account?
iOS 18.3.2 Bug? iCloud Mail Push Notifications Broken iCloud Mail iOS 18.3.2
  • Technology

iOS 18.3.2 Bug? iCloud Mail Push Notifications Broken

Do Son March 18, 2025 0
Read More Read more about iOS 18.3.2 Bug? iCloud Mail Push Notifications Broken
CVE-2024-27564: Attackers Exploit OpenAI Vulnerability in the Wild CVE-2024-27564
  • Vulnerability

CVE-2024-27564: Attackers Exploit OpenAI Vulnerability in the Wild

Do Son March 18, 2025 0
Read More Read more about CVE-2024-27564: Attackers Exploit OpenAI Vulnerability in the Wild
Multiple Security Vulnerabilities Plague PHP, Exposing Applications to Risk CVE-2024-1874 PHP Vulnerabilities
  • Vulnerability

Multiple Security Vulnerabilities Plague PHP, Exposing Applications to Risk

Do Son March 17, 2025 0
Read More Read more about Multiple Security Vulnerabilities Plague PHP, Exposing Applications to Risk
CVE-2025-27591: Privilege Escalation Vulnerability Found in Below Linux Tool CVE-2025-27591
  • Vulnerability

CVE-2025-27591: Privilege Escalation Vulnerability Found in Below Linux Tool

Do Son March 17, 2025 0
Read More Read more about CVE-2025-27591: Privilege Escalation Vulnerability Found in Below Linux Tool
Thousands of Fake Crypto Investment Platforms Uncovered in Widespread Scam Campaign TASPEN, mobile malware North Korean IT Worker Fraud
  • Cyber Security

Thousands of Fake Crypto Investment Platforms Uncovered in Widespread Scam Campaign

Do Son March 17, 2025 0
Read More Read more about Thousands of Fake Crypto Investment Platforms Uncovered in Widespread Scam Campaign
Severe Apache Camel Exploit (CVE-2025-29891) Disclosed – Technical Details and PoC Released Apache Camel K Vulnerability CVE-2026-45760 Build Deputy Apache Camel Security CVE-2026-23552 CVE-2025-27636 CVE-2025-29891 PoC
  • Vulnerability

Severe Apache Camel Exploit (CVE-2025-29891) Disclosed – Technical Details and PoC Released

Do Son March 17, 2025 0
Read More Read more about Severe Apache Camel Exploit (CVE-2025-29891) Disclosed – Technical Details and PoC Released
North Korean Hackers Deploy DocSwap Malware Disguised as Security App North Korean Laptop Farm DPRK Insider Threat North Korea WMD Cyber Funding, Australia Sanctions Insider threat, North Korean hackers Kimsuky, cyber-espionage NPM Malware, North Korea Cyber-espionage North Korea, Remote IT Job Scam Laptop Farm - DriverEasy - Kimsuky Watering Hole Attack
  • Malware

North Korean Hackers Deploy DocSwap Malware Disguised as Security App

Do Son March 17, 2025 0
Read More Read more about North Korean Hackers Deploy DocSwap Malware Disguised as Security App
HPE Cray Vulnerability (CVE-2024-540385): Authentication Bypass Threat, CVSS 10 Alert HPE HP-UX - CVE-2024-42500 CVE-2024-540385
  • Vulnerability

HPE Cray Vulnerability (CVE-2024-540385): Authentication Bypass Threat, CVSS 10 Alert

Do Son March 17, 2025 0
Read More Read more about HPE Cray Vulnerability (CVE-2024-540385): Authentication Bypass Threat, CVSS 10 Alert
Impossible Recovery? Beating Akira Ransomware with GPUs Decrypt Akira Ransomware
  • Malware

Impossible Recovery? Beating Akira Ransomware with GPUs

Do Son March 17, 2025 0
Read More Read more about Impossible Recovery? Beating Akira Ransomware with GPUs
SocGholish Malware Facilitates RansomHub Distribution GuLoader Malware CloudEye Obfuscation npm, malware Ethereum, npm supply chain OAST techniques StilachiRAT macOS Malware PasivRobber
  • Malware

SocGholish Malware Facilitates RansomHub Distribution

Do Son March 17, 2025 0
Read More Read more about SocGholish Malware Facilitates RansomHub Distribution
Cyberattackers Prey on Health Fears in Sophisticated Phishing Campaign Health Phishing Campaign
  • Cyber Security

Cyberattackers Prey on Health Fears in Sophisticated Phishing Campaign

Do Son March 17, 2025 0
Read More Read more about Cyberattackers Prey on Health Fears in Sophisticated Phishing Campaign
CVE-2025-1316: Edimax Network Cameras Exploited to Spread Mirai Malware Mirai Botnet Variants malware CVE-2024-3721
  • Vulnerability

CVE-2025-1316: Edimax Network Cameras Exploited to Spread Mirai Malware

Do Son March 17, 2025 0
Read More Read more about CVE-2025-1316: Edimax Network Cameras Exploited to Spread Mirai Malware
AI vs. Copyright: OpenAI, Google Seek US Exemptions Google Self-Preferencing Fine Idealo Antitrust Damages Anthropic, Google TPUs Google DMA Compliance, Search Self-Preferencing Google Play Store Ruling, Epic Games Victory Google fine, ad tech Google lawsuit, privacy violation Gmail security, false alarm Google Play EU regulation Google Security, Phone Number Leak Google 2025 - Google China’s Anti-Monopoly Law Google monopoly, ad tech Pixel 7a battery, battery swelling
  • Technology

AI vs. Copyright: OpenAI, Google Seek US Exemptions

Do Son March 17, 2025 0
Read More Read more about AI vs. Copyright: OpenAI, Google Seek US Exemptions
AI Cheating? Student Uses AI, Lands Top Tech Internships AI Cheating
  • Technology

AI Cheating? Student Uses AI, Lands Top Tech Internships

Do Son March 17, 2025 0
Read More Read more about AI Cheating? Student Uses AI, Lands Top Tech Internships
Apple, Google Unite: RCS 3.0 Brings Cross-Platform Encryption RCS 3.0 protocol
  • Technology

Apple, Google Unite: RCS 3.0 Brings Cross-Platform Encryption

Do Son March 17, 2025 0
Read More Read more about Apple, Google Unite: RCS 3.0 Brings Cross-Platform Encryption
Microsoft’s Oops: Update Uninstalls Copilot AI Windows 11 26H1, Copilot+ PC AI content, monetization AI Code Review, Microsoft Engineering Microsoft Copilot Studio Uninstall Copilot AI Windows 11 LTSC
  • Windows

Microsoft’s Oops: Update Uninstalls Copilot AI

Do Son March 17, 2025 0
Read More Read more about Microsoft’s Oops: Update Uninstalls Copilot AI
Cyver Core Reports 50% Reduction in Pentest Reporting Time with Generative AI How_GenAI_Reduces_Pressure_on_Overwhelmed_Cybersec_1741794068TXVOeylqvv
  • Press Release

Cyver Core Reports 50% Reduction in Pentest Reporting Time with Generative AI

cybernewswire March 17, 2025 0
Read More Read more about Cyver Core Reports 50% Reduction in Pentest Reporting Time with Generative AI
❮ Prev Page
Next Page ❯

Search

Translation

CVE ALERTS
📈

EPSS Spike Alerts
Catch risk spikes before they make headlines.

🎯

Custom EPSS/CVSS
Set score thresholds to effectively filter noise.

🛡️

Exploit Intel
Real-world exploit signals beyond the KEV catalog.

🐙

GitHub Issues
Auto-create alert tickets without duplication.

📬

Weekly Digest
Clean summaries, eliminating email spam.

🏷️

Watchlist Groups
Tag vulnerabilities by team (Infra/AppSec/SOC).

🔀

Smart Routing
Route chat channels based on severity levels.

🚨

RBP Tracker
Early warning detection and tracking system.

Subscribe – $7/mo or try free for 14 days →

🚨 Active Exploits in the Wild

  • CVE-2026-88779CVSS 8.7
    Vulnerability in NetScaler ADC and NetScaler Gateway. This issue affects ADC: before 14.1-73.41, before 13.1-64.28, before 14.1-73.41 FIPS,...
    Admin intelCISA KEV📅 Added to KEV: Oct 4, 2026📅 Updated: Oct 4, 2026
  • CVE-2026-102490CVSS 8.5
    All versions of Zammad including the latest alpha enable the local zammad user to escalate privileges to root.
    Admin intelCISA KEV📅 Added to KEV: Oct 2, 2026📅 Updated: Oct 2, 2026
  • CVE-2026-102489CVSS 8.7
    Zammad versions 6.3.0 to 6.5.4 are vulnerable a session hijack vulnerability that leads to remote code execution as...
    Admin intelCISA KEV📅 Added to KEV: Oct 2, 2026📅 Updated: Oct 2, 2026
  • CVE-2026-100382CVSS 10.0
    Improper Neutralization of Special Elements used in an OS Command (\'OS Command Injection\') vulnerability in Wikimedia Foundation Mediawiki...
    Admin intel📅 Updated: Oct 1, 2026
  • CVE-2026-104286CVSS 9.8
    An improper limitation of a pathname to a restricted directory ('path traversal') vulnerability in Fortinet FortiMail 8.0.0 through...
    CISA KEV📅 Added to KEV: Oct 1, 2026
  • CVE-2026-76504CVSS 9.8
    A vulnerability in the API session-based authentication management of Cisco Catalyst SD-WAN Manager could allow an unauthenticated, remote...
    Admin intelCISA KEV📅 Added to KEV: Sep 30, 2026📅 Updated: Sep 30, 2026
  • CVE-2026-86950CVSS 8.8
    An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.7.1 and...
    Admin intelCISA KEV📅 Added to KEV: Sep 29, 2026📅 Updated: Sep 29, 2026
  • CVE-2026-88772
    Memory overflow vulnerability leading to remote code execution or denial of service.
    Admin intelCISA KEV📅 Added to KEV: Sep 27, 2026📅 Updated: Sep 27, 2026
Powered by CVE Watchtower

Critical Vulnerabilities

  • CVE-2026-105223CVSS 9.1
    maclof kubernetes-client 0.17.0 before 0.32.0 disables TLS certificate verification in parseKubeconfig() and parseKubeconfigFile() when a kubeconfig lacks certificate-authority-data,...
    📅 Updated: Oct 5, 2026
  • CVE-2026-105216CVSS 9.1
    go-micro before 6.0.0 contains an improper certificate validation vulnerability that allows network attackers to impersonate services because the...
    📅 Updated: Oct 5, 2026
  • CVE-2026-105222CVSS 9.1
    The alexpechkarev/google-maps Laravel package through 12.16 disables TLS certificate verification by default because the bundled config sets ssl_verify_peer...
    📅 Updated: Oct 5, 2026
  • CVE-2026-105294CVSS 9.1
    Legcord 1.1.0 through 1.3.0 contains a configuration injection vulnerability that allows script in the Discord page to write...
    📅 Updated: Oct 5, 2026
  • CVE-2026-105293CVSS 9.2
    Legcord 1.1.0 through 1.3.0 contains a path traversal vulnerability in theme IPC handlers that allows script in the...
    📅 Updated: Oct 5, 2026
  • CVE-2026-105221CVSS 9.1
    The gist RubyGem before 6.1.0 contains an improper certificate validation vulnerability that allows on-path attackers to intercept HTTPS...
    📅 Updated: Oct 4, 2026
  • CVE-2026-105218CVSS 9.1
    gopay before 1.5.119 disables TLS certificate verification in defaultClient() in pkg/xhttp/client.go, allowing man-in-the-middle attackers to impersonate payment provider...
    📅 Updated: Oct 4, 2026
  • CVE-2026-105086CVSS 9.3
    WWBN AVideo 12.4 through 29.2.0 contains a stored cross-site scripting vulnerability that allows authenticated uploaders to inject HTML...
    📅 Updated: Oct 4, 2026
Powered by CVE Watchtower

Daily CyberSecurity

  • About SecurityOnline.info
  • Advertise with us
  • Announcement
  • Contact
  • Contributor Register
  • Login
  • Disclaimer
  • DCMA
  • Privacy Policy
  • About SecurityOnline.info
  • Advertise on SecurityOnline.info
  • Contact Us

When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

  • CVE Watchtower
  • CVE Statistics by Vendor 2026
  • Q2 2026 Report
  • Top Exploited CVEs
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube
© 2017 - 2026 Daily CyberSecurity. All Rights Reserved.