Skip to content
October 6, 2026
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Data
    • CVE Watchtower
    • Top Exploited CVEs
    • CVE Stats by Vendor
    • Q2 2026 Report
    • CVE Alerts
    • CVE Alert Settings
    • Pricing
  • Cyber Criminals
  • Data Leak
  • Free Tools
    • CVSS 3.1 Calculator
    • Certificate Viewer
    • DNS Lookup
    • Encoder & Hash Generator
    • IP / Subnet Calculator
    • Whois Lookup
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Weekly Recap
Light/Dark Button
NVIDIA Issues Security Update for Jetson AGX Orin and IGX Orin to Patch UEFI Vulnerability – CVE-2024-0148 NVIDIA acquisition rumors NVIDIA AI Security AI Framework Vulnerabilities Nvidia 595.76 Hotfix NVIDIA Megatron Bridge vulnerability GPU vs ASIC AI battle NVIDIA Driver Vulnerability CVE-2025-33217 NVIDIA biggest TSMC customer 2026, NVIDIA vs Apple TSMC revenue share NVIDIA CUDA Toolkit CVE-2025-33228 Groq NVIDIA licensing deal, Jonathan Ross acquihire 2025 NeMo Code Injection, AI Framework RCE NVIDIA App Privilege Escalation, CVE-2025-23358 NVIDIA Security Update, DLS Vulnerability CVE-2025-23316 NVIDIA NVDebug, vulnerabilities NVIDIA Driver Vulnerabilities, vGPU Security Nvidia Jetson, UEFI Vulnerabilities CVE-2024-0130 - CVE-2024-0136 CVE-2024-0148 NVIDIA Driver Support, Windows 10 EOL
  • Vulnerability

NVIDIA Issues Security Update for Jetson AGX Orin and IGX Orin to Patch UEFI Vulnerability – CVE-2024-0148

Do Son February 26, 2025 0
Read More Read more about NVIDIA Issues Security Update for Jetson AGX Orin and IGX Orin to Patch UEFI Vulnerability – CVE-2024-0148
Malicious npm Package Targets TON Wallet Users, Stealing Cryptocurrency Keys TON Wallet
  • Malware

Malicious npm Package Targets TON Wallet Users, Stealing Cryptocurrency Keys

Do Son February 26, 2025 0
Read More Read more about Malicious npm Package Targets TON Wallet Users, Stealing Cryptocurrency Keys
CVE-2025-0475 & CVE-2025-0555: GitLab’s High-Risk Patch Now CVE-2024-4835 CVE-2025-0475 & CVE-2025-0555
  • Vulnerability

CVE-2025-0475 & CVE-2025-0555: GitLab’s High-Risk Patch Now

Do Son February 26, 2025 0
Read More Read more about CVE-2025-0475 & CVE-2025-0555: GitLab’s High-Risk Patch Now
Outdated and Unblocked: Legacy Driver Vulnerability Exploited in Widespread Attack Legacy Driver Vulnerability
  • Cyber Security
  • Vulnerability

Outdated and Unblocked: Legacy Driver Vulnerability Exploited in Widespread Attack

Do Son February 26, 2025 0
Read More Read more about Outdated and Unblocked: Legacy Driver Vulnerability Exploited in Widespread Attack
Europe & LatAm Alert: Android Trojan TgToxic’s Expanding Attack Android trojan TgToxic
  • Malware

Europe & LatAm Alert: Android Trojan TgToxic’s Expanding Attack

Do Son February 26, 2025 0
Read More Read more about Europe & LatAm Alert: Android Trojan TgToxic’s Expanding Attack
EncryptHub Exposed: 600+ Targets Hit by LARVA-208 threat actor, LARVA-208, also known as EncryptHub
  • Cyber Security

EncryptHub Exposed: 600+ Targets Hit by LARVA-208

Do Son February 26, 2025 0
Read More Read more about EncryptHub Exposed: 600+ Targets Hit by LARVA-208
Auto-Color: New Evasive Linux Malware Targeting Governments and Universities XZ backdoor, Docker Hub MIFARE classic backdoor C++/CLI IIS Backdoor
  • Malware

Auto-Color: New Evasive Linux Malware Targeting Governments and Universities

Do Son February 26, 2025 0
Read More Read more about Auto-Color: New Evasive Linux Malware Targeting Governments and Universities
Quantum Leap: Researchers Achieve Unprecedented Speed and Range in Secure Direct Communication quantum-centric supercomputing, IBM-AMD partnership quantum secure direct communication
  • Technology

Quantum Leap: Researchers Achieve Unprecedented Speed and Range in Secure Direct Communication

Do Son February 26, 2025 0
Read More Read more about Quantum Leap: Researchers Achieve Unprecedented Speed and Range in Secure Direct Communication
Silver Fox APT Targets Philips DICOM Viewers in Healthcare Espionage Campaign FortiClient EMS exploitation Cisco FIRESTARTER Backdoor Arcane Door Campaign Dell RecoverPoint Zero-Day UNC6201 Espionage Notepad++ Compromise Supply Chain Attack Magento SessionReaper CVE-2025-54236 ShadowRay 2.0, AI-Generated Malware WordPress Auth Bypass, CVE-2025-5947 Exploited EcoStruxure Vulnerabilities, Industrial Control System UNC5820 - CVE-2014-2120 - CVE-2021-44207
  • Cyber Security

Silver Fox APT Targets Philips DICOM Viewers in Healthcare Espionage Campaign

Do Son February 26, 2025 0
Read More Read more about Silver Fox APT Targets Philips DICOM Viewers in Healthcare Espionage Campaign
Gemini Code Assist: Google’s AI Coding Power for All Gemini Code Assist Android free electrician training, AI energy demand
  • Technology

Gemini Code Assist: Google’s AI Coding Power for All

Do Son February 25, 2025 0
Read More Read more about Gemini Code Assist: Google’s AI Coding Power for All
CVE-2024-12084 & CVE-2024-12085: Rsync Flaws Allow Hackers to Take Over Servers, PoC Published Rsync Vulnerability Use-After-Free CVE-2022-29154 & CVE-2024-12084 CVE-2024-120845 PoC
  • Vulnerability

CVE-2024-12084 & CVE-2024-12085: Rsync Flaws Allow Hackers to Take Over Servers, PoC Published

Do Son February 25, 2025 1
Read More Read more about CVE-2024-12084 & CVE-2024-12085: Rsync Flaws Allow Hackers to Take Over Servers, PoC Published
SoaPy: A New Tool for Stealthy Active Directory Enumeration via ADWS SoaPy Active Directory Enumeration Tool
  • Open Source Tool

SoaPy: A New Tool for Stealthy Active Directory Enumeration via ADWS

Do Son February 25, 2025 0
Read More Read more about SoaPy: A New Tool for Stealthy Active Directory Enumeration via ADWS
CISA Flags Actively Exploited Zimbra (CVE-2023-34192) and Microsoft (CVE-2024-49035) Vulnerabilities CISA KEV Catalog Active Exploitation CVE-2023-33063 - CVE-2023-34192 and CVE-2024-49035
  • Vulnerability

CISA Flags Actively Exploited Zimbra (CVE-2023-34192) and Microsoft (CVE-2024-49035) Vulnerabilities

Do Son February 25, 2025 0
Read More Read more about CISA Flags Actively Exploited Zimbra (CVE-2023-34192) and Microsoft (CVE-2024-49035) Vulnerabilities
$500 Bitcoin Demand: LCRYX Ransomware Cripples Windows LCRYX ransomware
  • Malware

$500 Bitcoin Demand: LCRYX Ransomware Cripples Windows

Do Son February 25, 2025 0
Read More Read more about $500 Bitcoin Demand: LCRYX Ransomware Cripples Windows
CVE-2025-24752: Massive WordPress Plugin Vulnerability Exposes Millions to XSS Attacks CVE-2025-24752
  • Vulnerability

CVE-2025-24752: Massive WordPress Plugin Vulnerability Exposes Millions to XSS Attacks

Do Son February 25, 2025 0
Read More Read more about CVE-2025-24752: Massive WordPress Plugin Vulnerability Exposes Millions to XSS Attacks
Lumma Stealer Malware Expands Its Reach Through YouTube and Malvertising Lumma Stealer Youtube
  • Malware

Lumma Stealer Malware Expands Its Reach Through YouTube and Malvertising

Do Son February 25, 2025 0
Read More Read more about Lumma Stealer Malware Expands Its Reach Through YouTube and Malvertising
OpenH264 Codec Vulnerability (CVE-2025-27091): Remote Code Execution Possible CVE-2025-27091
  • Vulnerability

OpenH264 Codec Vulnerability (CVE-2025-27091): Remote Code Execution Possible

Do Son February 25, 2025 0
Read More Read more about OpenH264 Codec Vulnerability (CVE-2025-27091): Remote Code Execution Possible
Censorship as a Service: Leak Exposes Public-Private Collaboration in Chinese Cyberspace Monitoring Okta Data Breach - TopSec cybersecurity firm
  • Data Leak

Censorship as a Service: Leak Exposes Public-Private Collaboration in Chinese Cyberspace Monitoring

Do Son February 25, 2025 0
Read More Read more about Censorship as a Service: Leak Exposes Public-Private Collaboration in Chinese Cyberspace Monitoring
GRUB2 Bootloader Vulnerabilities Expose Millions of Systems to Attacks GRUB 2.14 release Y2038 fix, Linux bootloader Argon2 TPM2 GRUB2 Bootloader Vulnerabilities - CVE-2025-0624
  • Vulnerability

GRUB2 Bootloader Vulnerabilities Expose Millions of Systems to Attacks

Do Son February 25, 2025 0
Read More Read more about GRUB2 Bootloader Vulnerabilities Expose Millions of Systems to Attacks
Angry Likho APT Group Resurfaces with New Attacks and Advanced Malware Tactics Mercenary Akula European Financial Targeting AI-Generated Malware React2Shell Exploit UAT-8837 Critical Infrastructure Attack APT36, BOSS Linux BRICKSTORM Malware, China Espionage Curly COMrades, MucorAgent Chinese APT - HTTP Client Tools Shuckworm Cyber Espionage
  • Cyber Security

Angry Likho APT Group Resurfaces with New Attacks and Advanced Malware Tactics

Do Son February 25, 2025 0
Read More Read more about Angry Likho APT Group Resurfaces with New Attacks and Advanced Malware Tactics
PolarEdge Botnet: 2,000+ IoT Devices Infected PolarEdge IoT botnet
  • Malware
  • Vulnerability

PolarEdge Botnet: 2,000+ IoT Devices Infected

Do Son February 25, 2025 0
Read More Read more about PolarEdge Botnet: 2,000+ IoT Devices Infected
Leadership Shift: Mozilla’s Future with New Executive Team Anthony Enzor-DeMeo Mozilla CEO, Firefox AI Mode 2026 Ad blockers, Copyright Law Firefox China, Mozilla Restructuring Mozilla Add-ons, Policy Update Mozilla leadership - Mozilla collect data Google Antitrust Antitrust Trial
  • Technology

Leadership Shift: Mozilla’s Future with New Executive Team

Do Son February 25, 2025 0
Read More Read more about Leadership Shift: Mozilla’s Future with New Executive Team
❮ Prev Page
Next Page ❯

Search

Translation

CVE ALERTS
📈

EPSS Spike Alerts
Catch risk spikes before they make headlines.

🎯

Custom EPSS/CVSS
Set score thresholds to effectively filter noise.

🛡️

Exploit Intel
Real-world exploit signals beyond the KEV catalog.

🐙

GitHub Issues
Auto-create alert tickets without duplication.

📬

Weekly Digest
Clean summaries, eliminating email spam.

🏷️

Watchlist Groups
Tag vulnerabilities by team (Infra/AppSec/SOC).

🔀

Smart Routing
Route chat channels based on severity levels.

🚨

RBP Tracker
Early warning detection and tracking system.

Subscribe – $7/mo or try free for 14 days →

🚨 Active Exploits in the Wild

  • CVE-2026-88779CVSS 8.7
    Vulnerability in NetScaler ADC and NetScaler Gateway. This issue affects ADC: before 14.1-73.41, before 13.1-64.28, before 14.1-73.41 FIPS,...
    Admin intelCISA KEV📅 Added to KEV: Oct 4, 2026📅 Updated: Oct 4, 2026
  • CVE-2026-102490CVSS 8.5
    All versions of Zammad including the latest alpha enable the local zammad user to escalate privileges to root.
    Admin intelCISA KEV📅 Added to KEV: Oct 2, 2026📅 Updated: Oct 2, 2026
  • CVE-2026-102489CVSS 8.7
    Zammad versions 6.3.0 to 6.5.4 are vulnerable a session hijack vulnerability that leads to remote code execution as...
    Admin intelCISA KEV📅 Added to KEV: Oct 2, 2026📅 Updated: Oct 2, 2026
  • CVE-2026-100382CVSS 10.0
    Improper Neutralization of Special Elements used in an OS Command (\'OS Command Injection\') vulnerability in Wikimedia Foundation Mediawiki...
    Admin intel📅 Updated: Oct 1, 2026
  • CVE-2026-104286CVSS 9.8
    An improper limitation of a pathname to a restricted directory ('path traversal') vulnerability in Fortinet FortiMail 8.0.0 through...
    CISA KEV📅 Added to KEV: Oct 1, 2026
  • CVE-2026-76504CVSS 9.8
    A vulnerability in the API session-based authentication management of Cisco Catalyst SD-WAN Manager could allow an unauthenticated, remote...
    Admin intelCISA KEV📅 Added to KEV: Sep 30, 2026📅 Updated: Sep 30, 2026
  • CVE-2026-86950CVSS 8.8
    An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.7.1 and...
    Admin intelCISA KEV📅 Added to KEV: Sep 29, 2026📅 Updated: Sep 29, 2026
  • CVE-2026-88772
    Memory overflow vulnerability leading to remote code execution or denial of service.
    Admin intelCISA KEV📅 Added to KEV: Sep 27, 2026📅 Updated: Sep 27, 2026
Powered by CVE Watchtower

Critical Vulnerabilities

  • CVE-2026-104019CVSS 9.3
    OS command injection in the Studio Space startup validation script in Amazon SageMaker Distribution 2.x before 2.14.12, 3.x...
    📅 Updated: Oct 6, 2026
  • CVE-2026-105778CVSS 9.4
    A vulnerability has been found in Tenda AC5 02.03.01.111_multi. Affected by this issue is some unknown functionality of...
    📅 Updated: Oct 6, 2026
  • CVE-2026-105794CVSS 9.1
    MsQuic is a cross-platform C implementation of the IETF QUIC protocol exposed to C, C++, C#, and Rust....
    📅 Updated: Oct 6, 2026
  • CVE-2026-105851CVSS 9.3
    Payload is a free and open source headless content management system. In versions from 3.0.0 before 3.90.0 and...
    📅 Updated: Oct 6, 2026
  • CVE-2026-87830CVSS 9.1
    In the StAX streaming WS-SecurityPolicy validator, certain relative or unsupported XPath expressions can be converted into paths that...
    📅 Updated: Oct 6, 2026
  • CVE-2026-89238CVSS 9.1
    WSS4J EncryptedHeader child confusion could promote an attacker-controlled plaintext element as the decrypted header, leading to incorrect confidentiality...
    📅 Updated: Oct 6, 2026
  • CVE-2026-94293CVSS 9.3
    An unauthenticated remote attacker can modify Asset Administration Shell submodel data via PATCH requests and can read all...
    📅 Updated: Oct 6, 2026
  • CVE-2026-88424CVSS 9.8
    FineAdmin v1.0 was discovered to contain a SQL injection vulnerability via the field/order parameter at ButtonService.GetListByFilter(). This vulnerability...
    📅 Updated: Oct 6, 2026
Powered by CVE Watchtower

Daily CyberSecurity

  • About SecurityOnline.info
  • Advertise with us
  • Announcement
  • Contact
  • Contributor Register
  • Login
  • Disclaimer
  • DCMA
  • Privacy Policy
  • About SecurityOnline.info
  • Advertise on SecurityOnline.info
  • Contact Us

When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

  • CVE Watchtower
  • CVE Statistics by Vendor 2026
  • Q2 2026 Report
  • Top Exploited CVEs
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube
© 2017 - 2026 Daily CyberSecurity. All Rights Reserved.