Skip to content
September 25, 2026
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Data
    • CVE Watchtower
    • Top Exploited CVEs
    • CVE Stats by Vendor
    • Q2 2026 Report
    • CVE Alerts
    • CVE Alert Settings
    • Pricing
  • Cyber Criminals
  • Data Leak
  • Free Tools
    • CVSS 3.1 Calculator
    • Certificate Viewer
    • DNS Lookup
    • Encoder & Hash Generator
    • IP / Subnet Calculator
    • Whois Lookup
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Weekly Recap
Light/Dark Button
5 Common Reasons Email Bounces (and How to Resolve Them) Img_2025_01_28_08_23_40
  • Technique

5 Common Reasons Email Bounces (and How to Resolve Them)

Do Son January 27, 2025 0
Read More Read more about 5 Common Reasons Email Bounces (and How to Resolve Them)
CVE-2025-24085: Apple Patches Actively Exploited Zero-Day Vulnerability Apple Background Security CVE-2026-20643 Apple Background Security Improvement Apple Backdoor Apple Lawsuit, Data Exfiltration CVE-2024-44131 - CVE-2025-24118 PoC
  • Vulnerability

CVE-2025-24085: Apple Patches Actively Exploited Zero-Day Vulnerability

Do Son January 27, 2025 0
Read More Read more about CVE-2025-24085: Apple Patches Actively Exploited Zero-Day Vulnerability
How to Choose the Best Home Security System for Your Airbnb woman-8656655_1280
  • Technique

How to Choose the Best Home Security System for Your Airbnb

Do Son January 27, 2025 0
Read More Read more about How to Choose the Best Home Security System for Your Airbnb
Apache Solr Vulnerabilities CVE-2024-52012 and CVE-2025-24814 Expose Systems to File Write and Code Execution Risks Apache Solr default credentials CVE-2026-44825 workaround CVE-2025-24814 & CVE-2025-24814
  • Vulnerability

Apache Solr Vulnerabilities CVE-2024-52012 and CVE-2025-24814 Expose Systems to File Write and Code Execution Risks

Do Son January 27, 2025 0
Read More Read more about Apache Solr Vulnerabilities CVE-2024-52012 and CVE-2025-24814 Expose Systems to File Write and Code Execution Risks
PoC for 7-Zip CVE-2025-0411 Lets Attackers Bypass MotW and Run Malicious Code CVE-2025-0411 PoC exploit - Homoglyph Attacks
  • Vulnerability

PoC for 7-Zip CVE-2025-0411 Lets Attackers Bypass MotW and Run Malicious Code

Do Son January 26, 2025 0
Read More Read more about PoC for 7-Zip CVE-2025-0411 Lets Attackers Bypass MotW and Run Malicious Code
Lumma Stealer MaaS: Clipboard Hijacking and LOLBins Used in Latest Campaign Lumma Stealer model
  • Malware

Lumma Stealer MaaS: Clipboard Hijacking and LOLBins Used in Latest Campaign

Do Son January 26, 2025 0
Read More Read more about Lumma Stealer MaaS: Clipboard Hijacking and LOLBins Used in Latest Campaign
Lazarus Group Deploys Electron-Based Malware to Target Cryptocurrency Enthusiasts Lazarus Group Electron Malware
  • Cyber Security
  • Malware

Lazarus Group Deploys Electron-Based Malware to Target Cryptocurrency Enthusiasts

Do Son January 26, 2025 0
Read More Read more about Lazarus Group Deploys Electron-Based Malware to Target Cryptocurrency Enthusiasts
Podman and Buildah Vulnerable to Container Breakout – CVE-2024-11218 CVE-2024-11218
  • Vulnerability

Podman and Buildah Vulnerable to Container Breakout – CVE-2024-11218

Do Son January 26, 2025 0
Read More Read more about Podman and Buildah Vulnerable to Container Breakout – CVE-2024-11218
CVE-2024-52975 (CVSS 9.0): Fleet Server Update Patches Critical Information Exposure Vulnerability CVE-2024-52975
  • Vulnerability

CVE-2024-52975 (CVSS 9.0): Fleet Server Update Patches Critical Information Exposure Vulnerability

Do Son January 26, 2025 0
Read More Read more about CVE-2024-52975 (CVSS 9.0): Fleet Server Update Patches Critical Information Exposure Vulnerability
Zyxel Vulnerability Exploited by Helldown Ransomware Group Helldown ransomware group
  • Malware
  • Vulnerability

Zyxel Vulnerability Exploited by Helldown Ransomware Group

Do Son January 26, 2025 0
Read More Read more about Zyxel Vulnerability Exploited by Helldown Ransomware Group
Researchers Expose Critical Isolation Vulnerability in Intel Trust Domain Extensions (TDX) Intel Trust Domain Extensions Vulnerability
  • Vulnerability

Researchers Expose Critical Isolation Vulnerability in Intel Trust Domain Extensions (TDX)

Do Son January 26, 2025 0
Read More Read more about Researchers Expose Critical Isolation Vulnerability in Intel Trust Domain Extensions (TDX)
Sophisticated J-Magic Backdoor Evades Detection on Juniper Routers J-Magic backdoor campaign
  • Malware

Sophisticated J-Magic Backdoor Evades Detection on Juniper Routers

Do Son January 26, 2025 0
Read More Read more about Sophisticated J-Magic Backdoor Evades Detection on Juniper Routers
Palo Alto Networks Firewalls Exposed: BootHole and Other Critical Flaws Uncovered BootHole Vulnerability
  • Vulnerability

Palo Alto Networks Firewalls Exposed: BootHole and Other Critical Flaws Uncovered

Do Son January 26, 2025 0
Read More Read more about Palo Alto Networks Firewalls Exposed: BootHole and Other Critical Flaws Uncovered
Subaru’s STARLINK Vulnerability: How Hackers Could Track and Control Vehicles Subaru STARLINK Vulnerability
  • Vulnerability

Subaru’s STARLINK Vulnerability: How Hackers Could Track and Control Vehicles

Do Son January 26, 2025 0
Read More Read more about Subaru’s STARLINK Vulnerability: How Hackers Could Track and Control Vehicles
CVE-2024-50050: Critical Security Flaw in Meta’s Llama-Stack Framework PoC-exploit
  • Vulnerability

CVE-2024-50050: Critical Security Flaw in Meta’s Llama-Stack Framework

Do Son January 25, 2025 0
Read More Read more about CVE-2024-50050: Critical Security Flaw in Meta’s Llama-Stack Framework
HellCat and Morpheus: Ransomware Affiliates Using Identical Payloads to Escalate Attacks HellCat & Morpheus ransomware
  • Malware

HellCat and Morpheus: Ransomware Affiliates Using Identical Payloads to Escalate Attacks

Do Son January 25, 2025 0
Read More Read more about HellCat and Morpheus: Ransomware Affiliates Using Identical Payloads to Escalate Attacks
Critical Flaw CVE-2024-53299 in Apache Wicket: Memory Leak Flaw Exposes Web Apps to DoS Attacks CVE-2024-53299
  • Vulnerability

Critical Flaw CVE-2024-53299 in Apache Wicket: Memory Leak Flaw Exposes Web Apps to DoS Attacks

Do Son January 25, 2025 0
Read More Read more about Critical Flaw CVE-2024-53299 in Apache Wicket: Memory Leak Flaw Exposes Web Apps to DoS Attacks
QBot Resurfaces: New BackConnect Malware Signals a Dangerous Evolution backConnect malware
  • Malware

QBot Resurfaces: New BackConnect Malware Signals a Dangerous Evolution

Do Son January 25, 2025 0
Read More Read more about QBot Resurfaces: New BackConnect Malware Signals a Dangerous Evolution
North Korean IT Workers Indicted in Elaborate “Laptop Farm” Scheme to Evade Sanctions North Korean Laptop Farm DPRK Insider Threat North Korea WMD Cyber Funding, Australia Sanctions Insider threat, North Korean hackers Kimsuky, cyber-espionage NPM Malware, North Korea Cyber-espionage North Korea, Remote IT Job Scam Laptop Farm - DriverEasy - Kimsuky Watering Hole Attack
  • Cyber Security

North Korean IT Workers Indicted in Elaborate “Laptop Farm” Scheme to Evade Sanctions

Do Son January 24, 2025 0
Read More Read more about North Korean IT Workers Indicted in Elaborate “Laptop Farm” Scheme to Evade Sanctions
Lumma Stealer Malware Now Using ChaCha20 Cipher for Evasion ChaCha20 Cipher
  • Malware

Lumma Stealer Malware Now Using ChaCha20 Cipher for Evasion

Do Son January 24, 2025 0
Read More Read more about Lumma Stealer Malware Now Using ChaCha20 Cipher for Evasion
Popular WordPress Real Estate Theme Vulnerable to Complete Site Takeover, No Patch CVE-2024-32444 & CVE-2024-32555
  • Vulnerability

Popular WordPress Real Estate Theme Vulnerable to Complete Site Takeover, No Patch

Do Son January 24, 2025 0
Read More Read more about Popular WordPress Real Estate Theme Vulnerable to Complete Site Takeover, No Patch
Android Boosts Anti-Theft Measures with AI and Biometric Security Android security, anti-theft backup Android Identity Check & Theft Detection Lock
  • Android
  • Technology

Android Boosts Anti-Theft Measures with AI and Biometric Security

Do Son January 24, 2025 0
Read More Read more about Android Boosts Anti-Theft Measures with AI and Biometric Security
❮ Prev Page
Next Page ❯

Search

Translation

CVE ALERTS
📧

Email Delivery
Get threat intel straight to your inbox.

♾️

Unlimited Vendors
Track every technology in your stack.

🚨

All New CVE Alerts
Be the first to know about new flaws.

⚙️

Custom EPSS Threshold
Filter noise, focus on real risks.

💬

Slack & Teams Webhook
Integrate directly into your SecOps.

🚫

100% Ad-Free
Enjoy an uninterrupted reading experience.

$7/mo
Subscribe Now

🚨 Active Exploits in the Wild

  • CVE-2026-5430CVSS 10.0
    The JWT authentication mechanism accepts tokens signed with algorithms other than those explicitly configured or supported. This allows...
    CISA KEV📅 Added to KEV: Sep 24, 2026
  • CVE-2026-71362CVSS 9.1
    Adobe Commerce is affected by an Incorrect Authorization vulnerability that could result in privilege escalation. An attacker could...
    CISA KEV📅 Added to KEV: Sep 24, 2026
  • CVE-2026-48842CVSS 8.1
    Roundcube Webmail 1.6.x before 1.6.16 and 1.7.x before 1.7.1 has Pre-authentication SQL injection in the virtuser_query plugin via...
    Admin intel📅 Updated: Sep 23, 2026
  • CVE-2026-87902
    Unauthenticated path traversal in page-template resolution leading to conditional RCE An unauthenticated attacker can make get_page_template() page-template resolution...
    Admin intel📅 Updated: Sep 23, 2026
  • CVE-2026-94127CVSS 9.8
    When a BIG-IP APM access policy and an OAuth profile is configured on a virtual server, specific malicious...
    Admin intelCISA KEV📅 Added to KEV: Sep 22, 2026📅 Updated: Sep 22, 2026
  • CVE-2026-85102CVSS 9.8
    Improper certificate trust validation during VPN negotiation in Check Point Quantum Security Gateway may allow an unauthenticated remote...
    Admin intelCISA KEV📅 Added to KEV: Sep 22, 2026📅 Updated: Sep 22, 2026
  • CVE-2026-93616CVSS 9.8
    A directory traversal and file upload vulnerability allows an unauthenticated attacker to upload and execute arbitrary scripts on...
    Admin intelCISA KEV📅 Added to KEV: Sep 22, 2026📅 Updated: Sep 22, 2026
  • CVE-2026-93952CVSS 10.0
    VeloCloud Orchestrator (VCO) on-prem has a security issue where this issue may allow a remote attacker to access...
    Admin intelCISA KEV📅 Added to KEV: Sep 22, 2026📅 Updated: Sep 22, 2026
Powered by CVE Watchtower

Critical Vulnerabilities

  • CVE-2026-78445CVSS 9.8
    Use after free in Windows Services for NFS ONCRPC XDR Driver allows an unauthorized attacker to execute code...
    📅 Updated: Sep 24, 2026
  • CVE-2026-77493CVSS 9.8
    Double free in Microsoft Graphics Component allows an unauthorized attacker to execute code over a network.
    📅 Updated: Sep 24, 2026
  • CVE-2026-73025CVSS 9.8
    Weak authentication in Windows iSCSI allows an unauthorized attacker to bypass a security feature over a network.
    📅 Updated: Sep 24, 2026
  • CVE-2026-73009CVSS 9.8
    Use after free in Windows Secure Socket Tunneling Protocol (SSTP) allows an unauthorized attacker to execute code over...
    📅 Updated: Sep 24, 2026
  • CVE-2026-72979CVSS 9.8
    Use after free in Windows DHCP Server allows an unauthorized attacker to execute code over a network.
    📅 Updated: Sep 24, 2026
  • CVE-2026-72982CVSS 9.8
    Stack-based buffer overflow in Windows Netlogon allows an unauthorized attacker to execute code over a network.
    📅 Updated: Sep 24, 2026
  • CVE-2026-72983CVSS 9.8
    Use after free in Windows Internet Connection Sharing (ICS) allows an unauthorized attacker to execute code over a...
    📅 Updated: Sep 24, 2026
  • CVE-2026-70296CVSS 9.8
    Out-of-bounds write in Windows Imaging Component allows an unauthorized attacker to execute code over a network.
    📅 Updated: Sep 24, 2026
Powered by CVE Watchtower

Daily CyberSecurity

  • About SecurityOnline.info
  • Advertise with us
  • Announcement
  • Contact
  • Contributor Register
  • Login
  • Disclaimer
  • DCMA
  • Privacy Policy
  • About SecurityOnline.info
  • Advertise on SecurityOnline.info
  • Contact Us

When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

  • CVE Watchtower
  • CVE Statistics by Vendor 2026
  • Q2 2026 Report
  • Top Exploited CVEs
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube
© 2017 - 2026 Daily CyberSecurity. All Rights Reserved.