Skip to content
October 6, 2026
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Data
    • CVE Watchtower
    • Top Exploited CVEs
    • CVE Stats by Vendor
    • Q2 2026 Report
    • CVE Alerts
    • CVE Alert Settings
    • Pricing
  • Cyber Criminals
  • Data Leak
  • Free Tools
    • CVSS 3.1 Calculator
    • Certificate Viewer
    • DNS Lookup
    • Encoder & Hash Generator
    • IP / Subnet Calculator
    • Whois Lookup
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Weekly Recap
Light/Dark Button
Phishing Campaign Delivers Winos 4.0: Keyloggers, UAC Bypass, and More Winos 4.0 malware
  • Malware

Phishing Campaign Delivers Winos 4.0: Keyloggers, UAC Bypass, and More

Do Son March 2, 2025 0
Read More Read more about Phishing Campaign Delivers Winos 4.0: Keyloggers, UAC Bypass, and More
CVE-2024-47051 (CVSS 9.1): Critical RCE and File Deletion Flaws Expose 200,000+ Organizations CVE-2024-47051
  • Vulnerability

CVE-2024-47051 (CVSS 9.1): Critical RCE and File Deletion Flaws Expose 200,000+ Organizations

Do Son March 2, 2025 0
Read More Read more about CVE-2024-47051 (CVSS 9.1): Critical RCE and File Deletion Flaws Expose 200,000+ Organizations
New Stealthy Backdoor “Squidoor” Linked to Chinese Threat Actor Squidoor backdoor
  • Cyber Security
  • Malware

New Stealthy Backdoor “Squidoor” Linked to Chinese Threat Actor

Do Son March 2, 2025 0
Read More Read more about New Stealthy Backdoor “Squidoor” Linked to Chinese Threat Actor
Critical LDAP Injection Flaw in IBM TXSeries for Multiplatforms CVE-2022-46337
  • Vulnerability

Critical LDAP Injection Flaw in IBM TXSeries for Multiplatforms

Do Son March 2, 2025 0
Read More Read more about Critical LDAP Injection Flaw in IBM TXSeries for Multiplatforms
3.2 Million Users Exposed by Malicious Browser Extensions Amazon Ads Blocker Affiliate Link Hijacking Malicious browser extensions
  • Malware

3.2 Million Users Exposed by Malicious Browser Extensions

Do Son March 2, 2025 0
Read More Read more about 3.2 Million Users Exposed by Malicious Browser Extensions
CVE-2025-27554 (CVSS 9.9): Critical Flaw Found in ToDesktop Electron App Bundler CVE-2025-27554
  • Vulnerability

CVE-2025-27554 (CVSS 9.9): Critical Flaw Found in ToDesktop Electron App Bundler

Do Son March 1, 2025 0
Read More Read more about CVE-2025-27554 (CVSS 9.9): Critical Flaw Found in ToDesktop Electron App Bundler
Fake CAPTCHA Phishing Campaign Impacts Over 1,150 Organizations Fake CAPTCHA Phishing Campaign
  • Malware

Fake CAPTCHA Phishing Campaign Impacts Over 1,150 Organizations

Do Son March 1, 2025 0
Read More Read more about Fake CAPTCHA Phishing Campaign Impacts Over 1,150 Organizations
Cellebrite Spyware Bypasses Android Lock Screens with Zero-Day Flaws Donot APT Group - Android zero-day
  • Android
  • Vulnerability

Cellebrite Spyware Bypasses Android Lock Screens with Zero-Day Flaws

Do Son March 1, 2025 0
Read More Read more about Cellebrite Spyware Bypasses Android Lock Screens with Zero-Day Flaws
CVE-2024-53675: PoC Exploit Released for HPE Insight RS XML Injection Flaw CVE-2024-53675 PoC exploit
  • Vulnerability

CVE-2024-53675: PoC Exploit Released for HPE Insight RS XML Injection Flaw

Do Son March 1, 2025 0
Read More Read more about CVE-2024-53675: PoC Exploit Released for HPE Insight RS XML Injection Flaw
HostedScan Review: Proactive Vulnerability Management for a Bulletproof Digital Presence HostedScan Review
  • Reviews

HostedScan Review: Proactive Vulnerability Management for a Bulletproof Digital Presence

Do Son March 1, 2025 0
Read More Read more about HostedScan Review: Proactive Vulnerability Management for a Bulletproof Digital Presence
NordVPN Review: Your Shield in the Digital Wild West – Is It Worth the Hype? Windows-en-VPN
  • Reviews

NordVPN Review: Your Shield in the Digital Wild West – Is It Worth the Hype?

Do Son March 1, 2025 0
Read More Read more about NordVPN Review: Your Shield in the Digital Wild West – Is It Worth the Hype?
NordPass Review: Effortless Password Security for a Stress-Free Digital Life NordPass Review
  • Reviews

NordPass Review: Effortless Password Security for a Stress-Free Digital Life

Do Son March 1, 2025 0
Read More Read more about NordPass Review: Effortless Password Security for a Stress-Free Digital Life
Skype Paid Services to Shut Down—Users Must Migrate to Microsoft Teams by May 5 Skype Paid Services
  • Technology

Skype Paid Services to Shut Down—Users Must Migrate to Microsoft Teams by May 5

Do Son February 28, 2025 0
Read More Read more about Skype Paid Services to Shut Down—Users Must Migrate to Microsoft Teams by May 5
CVE-2025-27110: ModSecurity Vulnerability Leaves Web Applications Exposed libmodsecurity3 Denial of Service WAF Security Vulnerability CVE-2025-27110 ModSecurity vulnerability, JSON DoS
  • Vulnerability

CVE-2025-27110: ModSecurity Vulnerability Leaves Web Applications Exposed

Do Son February 28, 2025 0
Read More Read more about CVE-2025-27110: ModSecurity Vulnerability Leaves Web Applications Exposed
DragonForce Ransomware Group Targets Saudi Arabia with Large-Scale Data Breach DragonForce ransomware group
  • Cyber Security
  • Data Leak

DragonForce Ransomware Group Targets Saudi Arabia with Large-Scale Data Breach

Do Son February 28, 2025 0
Read More Read more about DragonForce Ransomware Group Targets Saudi Arabia with Large-Scale Data Breach
BeyondTrust Privilege Management for Windows Vulnerability Allows Local Privilege Escalation BeyondTrust Vulnerability CVE-2026-1731 CVE-2024-12356 - CVE-2025-0889 BeyondTrust Privilege Escalation, Windows Security
  • Vulnerability

BeyondTrust Privilege Management for Windows Vulnerability Allows Local Privilege Escalation

Do Son February 28, 2025 0
Read More Read more about BeyondTrust Privilege Management for Windows Vulnerability Allows Local Privilege Escalation
IBM Completes Acquisition of HashiCorp, Ushering in New Era of Hybrid Cloud Automation IBM CCA Vulnerability CVE-2025-13375 IBM Anthropic Partnership, AI Software Development watsonx Orchestrate, SQL injection CVE-2024-49803 - CVE-2024-41787 IBM Completes Acquisition HashiCorp
  • Technology

IBM Completes Acquisition of HashiCorp, Ushering in New Era of Hybrid Cloud Automation

Do Son February 28, 2025 0
Read More Read more about IBM Completes Acquisition of HashiCorp, Ushering in New Era of Hybrid Cloud Automation
Mac Users Rejoice! Microsoft’s Copilot App Lands on the Mac App Store Microsoft Copilot Mac App Store
  • Technology

Mac Users Rejoice! Microsoft’s Copilot App Lands on the Mac App Store

Do Son February 27, 2025 0
Read More Read more about Mac Users Rejoice! Microsoft’s Copilot App Lands on the Mac App Store
New PayPal Scam Tricks Users with Convincing Ads and Pages PayPal Industrial Bank, Fintech Crypto Lending PayPal, Hotel Booking Perplexity AI, PayPal
  • Cyber Security

New PayPal Scam Tricks Users with Convincing Ads and Pages

Do Son February 27, 2025 0
Read More Read more about New PayPal Scam Tricks Users with Convincing Ads and Pages
GPT-4.5 Released: Enhanced Accuracy, Reduced Hallucinations, and Expanded Knowledge ChatGPT Lockdown Mode OpenAI OpenClaw acquisition OpenAI Prism GPT-5.2 LaTeX, scientific research AI workspace OpenAI, Mixpanel Breach ChatGPT Data Preservation, NYT Lawsuit ChatGPT Apps SDK, super app OpenAI Jony Ive, AI Hardware Delay Musk Apple lawsuit, App Store antitrust UK AI Partnership, OpenAI Collaboration Jony Ive OpenAI, DoD Contract OpenAI Lawsuit, ChatGPT Privacy North Korea ChatGPT - GPT-4.5 model OpenAI Models, AI Advancements OpenAI pricing, Flex API
  • Technology

GPT-4.5 Released: Enhanced Accuracy, Reduced Hallucinations, and Expanded Knowledge

Do Son February 27, 2025 0
Read More Read more about GPT-4.5 Released: Enhanced Accuracy, Reduced Hallucinations, and Expanded Knowledge
Gradle Build Automation Tool Vulnerable to Privilege Escalation (CVE-2025-27148) CVE-2025-27148
  • Vulnerability

Gradle Build Automation Tool Vulnerable to Privilege Escalation (CVE-2025-27148)

Do Son February 27, 2025 0
Read More Read more about Gradle Build Automation Tool Vulnerable to Privilege Escalation (CVE-2025-27148)
North Korean Hackers Deploy RustDoor and Koi Stealer to Target Cryptocurrency Developers on macOS RustDoor and Koi Stealer
  • Cyber Security
  • Malware

North Korean Hackers Deploy RustDoor and Koi Stealer to Target Cryptocurrency Developers on macOS

Do Son February 27, 2025 0
Read More Read more about North Korean Hackers Deploy RustDoor and Koi Stealer to Target Cryptocurrency Developers on macOS
❮ Prev Page
Next Page ❯

Search

Translation

CVE ALERTS
📈

EPSS Spike Alerts
Catch risk spikes before they make headlines.

🎯

Custom EPSS/CVSS
Set score thresholds to effectively filter noise.

🛡️

Exploit Intel
Real-world exploit signals beyond the KEV catalog.

🐙

GitHub Issues
Auto-create alert tickets without duplication.

📬

Weekly Digest
Clean summaries, eliminating email spam.

🏷️

Watchlist Groups
Tag vulnerabilities by team (Infra/AppSec/SOC).

🔀

Smart Routing
Route chat channels based on severity levels.

🚨

RBP Tracker
Early warning detection and tracking system.

Subscribe – $7/mo or try free for 14 days →

🚨 Active Exploits in the Wild

  • CVE-2026-88779CVSS 8.7
    Vulnerability in NetScaler ADC and NetScaler Gateway. This issue affects ADC: before 14.1-73.41, before 13.1-64.28, before 14.1-73.41 FIPS,...
    Admin intelCISA KEV📅 Added to KEV: Oct 4, 2026📅 Updated: Oct 4, 2026
  • CVE-2026-102490CVSS 8.5
    All versions of Zammad including the latest alpha enable the local zammad user to escalate privileges to root.
    Admin intelCISA KEV📅 Added to KEV: Oct 2, 2026📅 Updated: Oct 2, 2026
  • CVE-2026-102489CVSS 8.7
    Zammad versions 6.3.0 to 6.5.4 are vulnerable a session hijack vulnerability that leads to remote code execution as...
    Admin intelCISA KEV📅 Added to KEV: Oct 2, 2026📅 Updated: Oct 2, 2026
  • CVE-2026-100382CVSS 10.0
    Improper Neutralization of Special Elements used in an OS Command (\'OS Command Injection\') vulnerability in Wikimedia Foundation Mediawiki...
    Admin intel📅 Updated: Oct 1, 2026
  • CVE-2026-104286CVSS 9.8
    An improper limitation of a pathname to a restricted directory ('path traversal') vulnerability in Fortinet FortiMail 8.0.0 through...
    CISA KEV📅 Added to KEV: Oct 1, 2026
  • CVE-2026-76504CVSS 9.8
    A vulnerability in the API session-based authentication management of Cisco Catalyst SD-WAN Manager could allow an unauthenticated, remote...
    Admin intelCISA KEV📅 Added to KEV: Sep 30, 2026📅 Updated: Sep 30, 2026
  • CVE-2026-86950CVSS 8.8
    An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.7.1 and...
    Admin intelCISA KEV📅 Added to KEV: Sep 29, 2026📅 Updated: Sep 29, 2026
  • CVE-2026-88772
    Memory overflow vulnerability leading to remote code execution or denial of service.
    Admin intelCISA KEV📅 Added to KEV: Sep 27, 2026📅 Updated: Sep 27, 2026
Powered by CVE Watchtower

Critical Vulnerabilities

  • CVE-2026-105080CVSS 9.4
    In ConvertX before 0.19.0, converters/calibre.ts does not block recipe files, and instead passes them to the ebook-convert program...
    📅 Updated: Oct 6, 2026
  • CVE-2026-105863CVSS 9.2
    Payload is a free and open source headless content management system. In versions after 3.0.0 and before 3.90.0,...
    📅 Updated: Oct 6, 2026
  • CVE-2026-104849CVSS 9.5
    Tinypool is a minimal Node.js worker thread pool implementation. Prior to 2.1.2, Tinypool reads filename from a caller-supplied...
    📅 Updated: Oct 6, 2026
  • CVE-2026-105859CVSS 9.8
    Payload is a free and open source headless content management system. In versions before 3.90.0 and canary versions...
    📅 Updated: Oct 6, 2026
  • CVE-2026-21589CVSS 9.3
    This is a vulnerability in Bitbucket Data Center, Confluence Data Center, Jira Service Management Data Center, Jira Software...
    📅 Updated: Oct 6, 2026
  • CVE-2026-16346CVSS 9.9
    IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to execute arbitrary commands...
    📅 Updated: Oct 6, 2026
  • CVE-2026-84075CVSS 9.9
    IBM Guardium Data Protection 12.2 could allow a remote attacker to bypass security restrictions due to missing authentication...
    📅 Updated: Oct 6, 2026
  • CVE-2026-84073CVSS 9.1
    IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to execute arbitrary SQL commands due to...
    📅 Updated: Oct 6, 2026
Powered by CVE Watchtower

Daily CyberSecurity

  • About SecurityOnline.info
  • Advertise with us
  • Announcement
  • Contact
  • Contributor Register
  • Login
  • Disclaimer
  • DCMA
  • Privacy Policy
  • About SecurityOnline.info
  • Advertise on SecurityOnline.info
  • Contact Us

When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

  • CVE Watchtower
  • CVE Statistics by Vendor 2026
  • Q2 2026 Report
  • Top Exploited CVEs
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube
© 2017 - 2026 Daily CyberSecurity. All Rights Reserved.