Skip to content
October 5, 2026
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Data
    • CVE Watchtower
    • Top Exploited CVEs
    • CVE Stats by Vendor
    • Q2 2026 Report
    • CVE Alerts
    • CVE Alert Settings
    • Pricing
  • Cyber Criminals
  • Data Leak
  • Free Tools
    • CVSS 3.1 Calculator
    • Certificate Viewer
    • DNS Lookup
    • Encoder & Hash Generator
    • IP / Subnet Calculator
    • Whois Lookup
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Weekly Recap
Light/Dark Button
CVE-2025-26701 (CVSS 10): Percona PMM OVA Users at Risk of Unauthorized Access CVE-2025-26701
  • Vulnerability

CVE-2025-26701 (CVSS 10): Percona PMM OVA Users at Risk of Unauthorized Access

Do Son March 14, 2025 0
Read More Read more about CVE-2025-26701 (CVSS 10): Percona PMM OVA Users at Risk of Unauthorized Access
Squid Werewolf APT Masquerades as Recruiters in Espionage Campaign Targeting Key Employees WhatsApp Worm, Brazilian Banking Trojan LAPSUS$ Alliance, Scattered Spider Ransomware, Cybercrime RedCurl APT group Russian Cyberespionage, ApolloShadow Malware
  • Cyber Security

Squid Werewolf APT Masquerades as Recruiters in Espionage Campaign Targeting Key Employees

Do Son March 14, 2025 0
Read More Read more about Squid Werewolf APT Masquerades as Recruiters in Espionage Campaign Targeting Key Employees
Head Mare and Twelve: Inside the Collaboration Targeting Russian Companies two hacktivist groups: Head Mare and Twelve
  • Cyber Security
  • Malware

Head Mare and Twelve: Inside the Collaboration Targeting Russian Companies

Do Son March 14, 2025 0
Read More Read more about Head Mare and Twelve: Inside the Collaboration Targeting Russian Companies
The Financial Toolkit Every Business Owner Needs toolkit
  • Technique

The Financial Toolkit Every Business Owner Needs

Do Son March 14, 2025 0
Read More Read more about The Financial Toolkit Every Business Owner Needs
Retaining Your Talent: Building a Development Plan That Works build
  • Technique

Retaining Your Talent: Building a Development Plan That Works

Do Son March 14, 2025 0
Read More Read more about Retaining Your Talent: Building a Development Plan That Works
Google, Apple, and Microsoft Rush to Patch Actively Exploited Zero-Day Vulnerability Google Zero-Day Vulnerability
  • Vulnerability

Google, Apple, and Microsoft Rush to Patch Actively Exploited Zero-Day Vulnerability

Do Son March 13, 2025 0
Read More Read more about Google, Apple, and Microsoft Rush to Patch Actively Exploited Zero-Day Vulnerability
Juniper Issues Urgent Fix for Actively Exploited Junos OS Flaw – CVE-2025-21590 GUARDIANWALL MailSuite Exploit CVE-2026-32661 FileZen Vulnerability CVE-2026-25108 Ivanti EPMM Vulnerability Dormant Backdoor Fortinet Authentication Bypass CVE-2026-24858 VMware vCenter Server Flaw CVE-2025-21590
  • Vulnerability

Juniper Issues Urgent Fix for Actively Exploited Junos OS Flaw – CVE-2025-21590

Do Son March 13, 2025 0
Read More Read more about Juniper Issues Urgent Fix for Actively Exploited Junos OS Flaw – CVE-2025-21590
JSPSpy Webshells Found with Custom File Management Tool JSPSpy web shell
  • Malware

JSPSpy Webshells Found with Custom File Management Tool

Do Son March 13, 2025 0
Read More Read more about JSPSpy Webshells Found with Custom File Management Tool
Bitdefender BOX v1 Vulnerabilities Expose Smart Homes to Remote Attacks CVE-2024-13871 & CVE-2024-13872
  • Vulnerability

Bitdefender BOX v1 Vulnerabilities Expose Smart Homes to Remote Attacks

Do Son March 13, 2025 0
Read More Read more about Bitdefender BOX v1 Vulnerabilities Expose Smart Homes to Remote Attacks
Ramadan Scam Alert: Crypto Traps, Fake Giveaways Explode Crypto Drain Conspiracy, Malicious MobileConfig phone phishing Cryptocurrency Phishing
  • Cyber Security

Ramadan Scam Alert: Crypto Traps, Fake Giveaways Explode

Do Son March 13, 2025 0
Read More Read more about Ramadan Scam Alert: Crypto Traps, Fake Giveaways Explode
Cisco Alerts on Public Disclosure of CVE-2025-20115 – BGP Flaw Puts Networks at Risk Cisco ISE Root Escalation * Read-Only Admin Exploit Cisco Secure FMC Vulnerability CVE-2026-20131 Cisco Meeting Management Vulnerability CVE-2026-20098 Cisco vulnerability, RCE flaw CVE-2025-20265 Cisco Meraki, VPN Vulnerability Cisco Nexus Dashboard - CVE-2024-20424 CVE-2025-20115 Cisco Vulnerability CVE-2018-0171 Privilege Escalation Cisco Unified Intelligence Center
  • Vulnerability

Cisco Alerts on Public Disclosure of CVE-2025-20115 – BGP Flaw Puts Networks at Risk

Do Son March 13, 2025 0
Read More Read more about Cisco Alerts on Public Disclosure of CVE-2025-20115 – BGP Flaw Puts Networks at Risk
New Sobolan Malware Campaign Targets Jupyter Notebooks and Cloud-Native Environments Sobolan malware
  • Malware

New Sobolan Malware Campaign Targets Jupyter Notebooks and Cloud-Native Environments

Do Son March 13, 2025 0
Read More Read more about New Sobolan Malware Campaign Targets Jupyter Notebooks and Cloud-Native Environments
RMM Tools: The New Weapon of Choice for Cybercriminals Weapon RMM Tools
  • Cyber Security

RMM Tools: The New Weapon of Choice for Cybercriminals

Do Son March 13, 2025 0
Read More Read more about RMM Tools: The New Weapon of Choice for Cybercriminals
Lazarus Breaches IIS: Web Shells & Evolving C2 Tactics Unveiled RedHat Hacker web shell
  • Cyber Security

Lazarus Breaches IIS: Web Shells & Evolving C2 Tactics Unveiled

Do Son March 13, 2025 0
Read More Read more about Lazarus Breaches IIS: Web Shells & Evolving C2 Tactics Unveiled
Keras Deep Learning Framework Hit by Arbitrary Code Execution Vulnerability (CVE-2025-1550) CVE-2025-1550
  • Vulnerability

Keras Deep Learning Framework Hit by Arbitrary Code Execution Vulnerability (CVE-2025-1550)

Do Son March 13, 2025 0
Read More Read more about Keras Deep Learning Framework Hit by Arbitrary Code Execution Vulnerability (CVE-2025-1550)
XCSSET Malware Returns with Enhanced Obfuscation and Persistence Techniques XCSSET macOS malware
  • Malware

XCSSET Malware Returns with Enhanced Obfuscation and Persistence Techniques

Do Son March 13, 2025 0
Read More Read more about XCSSET Malware Returns with Enhanced Obfuscation and Persistence Techniques
Aleksej Besciokov, Garantex Co-founder, Faces Extradition After Arrest Aleksej Besciokov
  • Cyber Security

Aleksej Besciokov, Garantex Co-founder, Faces Extradition After Arrest

Do Son March 13, 2025 0
Read More Read more about Aleksej Besciokov, Garantex Co-founder, Faces Extradition After Arrest
Microsoft Patches 2-Year-Old Windows Kernel Flaw CVE-2025-24983 After Exploitation Cisco SD-WAN Vulnerability CVE-2026-20133 FortiGate Compromise Ivanti EPMM Zero-Day CVE-2026-1281 SmarterMail Vulnerability Storm-2603 WatchGuard Zero-Day, IKEv2 Out-of-Bounds Write Cisco Zero-Day, UAT-9686 Chinese APT FortiWeb RCE Exploitation CVE-2025-58034 VMware Zero-Day, Privilege Escalation Sitecore, remote code execution CVE-2025-53690 Windows CLFS, Privilege Escalation CVE-2024-47575 & CVE-2024-11120 CVE-2025-24983 vulnerability
  • Vulnerability

Microsoft Patches 2-Year-Old Windows Kernel Flaw CVE-2025-24983 After Exploitation

Do Son March 13, 2025 0
Read More Read more about Microsoft Patches 2-Year-Old Windows Kernel Flaw CVE-2025-24983 After Exploitation
Windows 11 Printing Problems: Microsoft Confirms Spontaneous Printing Bug Windows 11 app updates Windows Insider preview build, Calculator app update, built-in Windows apps Windows 11 KB5089549 network lag Windows 11 Home to Pro Education upgrade Windows 11 Start menu update Windows 11 update KB5079391 Windows 11 KB5085516 OOB update Windows 11 C drive permission error Windows 11 C drive access denied Windows native NVMe driver UEFI Secure Boot certificate rotation Windows 11 printer driver policy Windows 11 printer driver deprecation Windows 11 Build 26300 Sysmon Windows 11 Storage settings restriction Windows 11 Build 26300.7674, Windows Insider channel migration 2026 Windows 11 Update Fix KB5073455 shutdown bug, Secure Launch restart loop Windows 11 File Explorer search performance, Search Indexer RAM usage fix Windows 11 Gaming PC Specs, NVMe DirectStorage Windows 10 End of Support Windows 11 Slow Adoption Windows 11 Crash Loop KB5062553 Bug Update and Shut Down, KB5067036 Windows authentication, Kerberos bug Windows 11 fix, localhost bug Windows 11 Update Restart, Update and Shut Down Windows SMBv1 Windows 11 Arm, Easy Anti-Cheat Windows 11 error, Pluton Windows 11 24H2, Easy Anti-Cheat Windows Firewall Bug, Microsoft Update Error Windows 11, JScript9Legacy Windows Activation, TSforge Windows 11 Update, Firewall Error Windows 11 25H2, Annual Update Windows Resiliency Initiative, Kernel Security Windows 11 Upgrade, ESU Program Windows 11 Recall, Data Export Windows 11 Easy Anti-Cheat Windows 11 Update, Cumulative Update Windows Update, ACPI.sys Windows Updates, Enterprise Software Windows 11 Start Data Encryption Standard Printing Problems Windows 11 updates Estimated installation time Smart App Control, Windows 11 security
  • Windows

Windows 11 Printing Problems: Microsoft Confirms Spontaneous Printing Bug

Do Son March 12, 2025 0
Read More Read more about Windows 11 Printing Problems: Microsoft Confirms Spontaneous Printing Bug
Cisco Issues High-Severity Security Alert for IOS XR Software (CVE-2025-20138) CVE-2022-20923 CVE-2025-20138
  • Vulnerability

Cisco Issues High-Severity Security Alert for IOS XR Software (CVE-2025-20138)

Do Son March 12, 2025 0
Read More Read more about Cisco Issues High-Severity Security Alert for IOS XR Software (CVE-2025-20138)
GitLab Urgently Patches Critical Authentication Bypass Flaws – CVE-2025-25291 & CVE-2025-25292 GitLab security CVE-2025-25291 and CVE-2025-25292
  • Vulnerability

GitLab Urgently Patches Critical Authentication Bypass Flaws – CVE-2025-25291 & CVE-2025-25292

Do Son March 12, 2025 0
Read More Read more about GitLab Urgently Patches Critical Authentication Bypass Flaws – CVE-2025-25291 & CVE-2025-25292
FBI, CISA, and MS-ISAC Warn Organizations About Medusa Ransomware Attacks Fortinet EMS - CVE-2023-48788 Medusa Ransomware TTPs
  • Malware

FBI, CISA, and MS-ISAC Warn Organizations About Medusa Ransomware Attacks

Do Son March 12, 2025 0
Read More Read more about FBI, CISA, and MS-ISAC Warn Organizations About Medusa Ransomware Attacks
❮ Prev Page
Next Page ❯

Search

Translation

CVE ALERTS
📈

EPSS Spike Alerts
Catch risk spikes before they make headlines.

🎯

Custom EPSS/CVSS
Set score thresholds to effectively filter noise.

🛡️

Exploit Intel
Real-world exploit signals beyond the KEV catalog.

🐙

GitHub Issues
Auto-create alert tickets without duplication.

📬

Weekly Digest
Clean summaries, eliminating email spam.

🏷️

Watchlist Groups
Tag vulnerabilities by team (Infra/AppSec/SOC).

🔀

Smart Routing
Route chat channels based on severity levels.

🚨

RBP Tracker
Early warning detection and tracking system.

Subscribe – $7/mo or try free for 14 days →

🚨 Active Exploits in the Wild

  • CVE-2026-88779CVSS 8.7
    Vulnerability in NetScaler ADC and NetScaler Gateway. This issue affects ADC: before 14.1-73.41, before 13.1-64.28, before 14.1-73.41 FIPS,...
    Admin intelCISA KEV📅 Added to KEV: Oct 4, 2026📅 Updated: Oct 4, 2026
  • CVE-2026-102490CVSS 8.5
    All versions of Zammad including the latest alpha enable the local zammad user to escalate privileges to root.
    Admin intelCISA KEV📅 Added to KEV: Oct 2, 2026📅 Updated: Oct 2, 2026
  • CVE-2026-102489CVSS 8.7
    Zammad versions 6.3.0 to 6.5.4 are vulnerable a session hijack vulnerability that leads to remote code execution as...
    Admin intelCISA KEV📅 Added to KEV: Oct 2, 2026📅 Updated: Oct 2, 2026
  • CVE-2026-100382CVSS 10.0
    Improper Neutralization of Special Elements used in an OS Command (\'OS Command Injection\') vulnerability in Wikimedia Foundation Mediawiki...
    Admin intel📅 Updated: Oct 1, 2026
  • CVE-2026-104286CVSS 9.8
    An improper limitation of a pathname to a restricted directory ('path traversal') vulnerability in Fortinet FortiMail 8.0.0 through...
    CISA KEV📅 Added to KEV: Oct 1, 2026
  • CVE-2026-76504CVSS 9.8
    A vulnerability in the API session-based authentication management of Cisco Catalyst SD-WAN Manager could allow an unauthenticated, remote...
    Admin intelCISA KEV📅 Added to KEV: Sep 30, 2026📅 Updated: Sep 30, 2026
  • CVE-2026-86950CVSS 8.8
    An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.7.1 and...
    Admin intelCISA KEV📅 Added to KEV: Sep 29, 2026📅 Updated: Sep 29, 2026
  • CVE-2026-88772
    Memory overflow vulnerability leading to remote code execution or denial of service.
    Admin intelCISA KEV📅 Added to KEV: Sep 27, 2026📅 Updated: Sep 27, 2026
Powered by CVE Watchtower

Critical Vulnerabilities

  • CVE-2026-105223CVSS 9.1
    maclof kubernetes-client 0.17.0 before 0.32.0 disables TLS certificate verification in parseKubeconfig() and parseKubeconfigFile() when a kubeconfig lacks certificate-authority-data,...
    📅 Updated: Oct 5, 2026
  • CVE-2026-105216CVSS 9.1
    go-micro before 6.0.0 contains an improper certificate validation vulnerability that allows network attackers to impersonate services because the...
    📅 Updated: Oct 5, 2026
  • CVE-2026-105222CVSS 9.1
    The alexpechkarev/google-maps Laravel package through 12.16 disables TLS certificate verification by default because the bundled config sets ssl_verify_peer...
    📅 Updated: Oct 5, 2026
  • CVE-2026-105294CVSS 9.1
    Legcord 1.1.0 through 1.3.0 contains a configuration injection vulnerability that allows script in the Discord page to write...
    📅 Updated: Oct 5, 2026
  • CVE-2026-105293CVSS 9.2
    Legcord 1.1.0 through 1.3.0 contains a path traversal vulnerability in theme IPC handlers that allows script in the...
    📅 Updated: Oct 5, 2026
  • CVE-2026-105221CVSS 9.1
    The gist RubyGem before 6.1.0 contains an improper certificate validation vulnerability that allows on-path attackers to intercept HTTPS...
    📅 Updated: Oct 4, 2026
  • CVE-2026-105218CVSS 9.1
    gopay before 1.5.119 disables TLS certificate verification in defaultClient() in pkg/xhttp/client.go, allowing man-in-the-middle attackers to impersonate payment provider...
    📅 Updated: Oct 4, 2026
  • CVE-2026-105086CVSS 9.3
    WWBN AVideo 12.4 through 29.2.0 contains a stored cross-site scripting vulnerability that allows authenticated uploaders to inject HTML...
    📅 Updated: Oct 4, 2026
Powered by CVE Watchtower

Daily CyberSecurity

  • About SecurityOnline.info
  • Advertise with us
  • Announcement
  • Contact
  • Contributor Register
  • Login
  • Disclaimer
  • DCMA
  • Privacy Policy
  • About SecurityOnline.info
  • Advertise on SecurityOnline.info
  • Contact Us

When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

  • CVE Watchtower
  • CVE Statistics by Vendor 2026
  • Q2 2026 Report
  • Top Exploited CVEs
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube
© 2017 - 2026 Daily CyberSecurity. All Rights Reserved.