Skip to content
October 7, 2026
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Data
    • CVE Watchtower
    • Top Exploited CVEs
    • CVE Stats by Vendor
    • Q2 2026 Report
    • CVE Alerts
    • CVE Alert Settings
    • Pricing
  • Cyber Criminals
  • Data Leak
  • Free Tools
    • CVSS 3.1 Calculator
    • Certificate Viewer
    • DNS Lookup
    • Encoder & Hash Generator
    • IP / Subnet Calculator
    • Whois Lookup
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Weekly Recap
Light/Dark Button
Zero-Day Alert: Mirai Botnet Exploiting Unpatched Zyxel CPE Vulnerability (CVE-2024-40891) Weaver E-cology RCE CVE-2026-22679 CVE-2026-20127 Cisco SD-WAN Exploitation AI-Driven Cyberattack ARXON Malware React Server Components Vulnerability CVE-2025-55182 FortiWeb Auth Bypass, Unauthenticated Admin Takeover RayInitiator Bootkit, LINE VIPER CVE-2025-59689 Department of the Treasury cybersecurity - CVE-2025-0108 PoC CVE-2025-31103 Dior Data Breach SK Telecom data breach, long-term intrusion
  • Vulnerability

Zero-Day Alert: Mirai Botnet Exploiting Unpatched Zyxel CPE Vulnerability (CVE-2024-40891)

Do Son January 30, 2025 0
Read More Read more about Zero-Day Alert: Mirai Botnet Exploiting Unpatched Zyxel CPE Vulnerability (CVE-2024-40891)
CVE-2024-23953 and CVE-2024-29869: Apache Hive Patches Two Important Security Flaws CVE-2024-23953 and CVE-2024-29869
  • Vulnerability

CVE-2024-23953 and CVE-2024-29869: Apache Hive Patches Two Important Security Flaws

Do Son January 30, 2025 0
Read More Read more about CVE-2024-23953 and CVE-2024-29869: Apache Hive Patches Two Important Security Flaws
Phorpiex Botnet Now Deploying LockBit Ransomware in Automated Attacks Phorpiex botnet Attack
  • Malware

Phorpiex Botnet Now Deploying LockBit Ransomware in Automated Attacks

Do Son January 30, 2025 0
Read More Read more about Phorpiex Botnet Now Deploying LockBit Ransomware in Automated Attacks
ISC Patches Two Vulnerabilities – CVE-2024-11187 and CVE-2024-12705 Kea DHCPv4 DoS, Hostname Validation CVE-2024-11187 and CVE-2024-12705
  • Vulnerability

ISC Patches Two Vulnerabilities – CVE-2024-11187 and CVE-2024-12705

Do Son January 30, 2025 0
Read More Read more about ISC Patches Two Vulnerabilities – CVE-2024-11187 and CVE-2024-12705
Phishing Alert: Cybercriminals Deploy SapphireRAT via Legal Notices SapphireRAT
  • Malware

Phishing Alert: Cybercriminals Deploy SapphireRAT via Legal Notices

Do Son January 30, 2025 0
Read More Read more about Phishing Alert: Cybercriminals Deploy SapphireRAT via Legal Notices
VMware Aria Operations Flaws Expose Credentials, Enable Privilege Escalation CVE-2025-22217 - CVE-2025-22218 Broadcom, VMware Licensing
  • Vulnerability

VMware Aria Operations Flaws Expose Credentials, Enable Privilege Escalation

Do Son January 30, 2025 0
Read More Read more about VMware Aria Operations Flaws Expose Credentials, Enable Privilege Escalation
Europol Smashing Cybercrime Hubs: Cracked & Nulled Taken Down Nulled Taken Down
  • Cyber Security

Europol Smashing Cybercrime Hubs: Cracked & Nulled Taken Down

Do Son January 30, 2025 0
Read More Read more about Europol Smashing Cybercrime Hubs: Cracked & Nulled Taken Down
China-Nexus Espionage: ScatterBrain Obfuscation Tactics Revealed ScatterBrain - POISONPLUG.SHADOW
  • Malware

China-Nexus Espionage: ScatterBrain Obfuscation Tactics Revealed

Do Son January 30, 2025 0
Read More Read more about China-Nexus Espionage: ScatterBrain Obfuscation Tactics Revealed
FAQs About Game Server Hosting and Security Answered network-2402637_1280
  • Technique

FAQs About Game Server Hosting and Security Answered

Do Son January 30, 2025 0
Read More Read more about FAQs About Game Server Hosting and Security Answered
Aquabotv3: The Mirai-Based Botnet Exploiting CVE-2024-41710 for DDoS Attacks CVE-2025-23093 & CVE-2025-23094
  • Malware
  • Vulnerability

Aquabotv3: The Mirai-Based Botnet Exploiting CVE-2024-41710 for DDoS Attacks

Do Son January 30, 2025 0
Read More Read more about Aquabotv3: The Mirai-Based Botnet Exploiting CVE-2024-41710 for DDoS Attacks
DeepSeek’s Exposed Database Leaks Sensitive User Information DeepSeek database Leak
  • Data Leak

DeepSeek’s Exposed Database Leaks Sensitive User Information

Do Son January 30, 2025 0
Read More Read more about DeepSeek’s Exposed Database Leaks Sensitive User Information
DeepSeek R1: China’s Advanced AI Model Raises Security Concerns DeepSeek R1 Vulnerability
  • Vulnerability

DeepSeek R1: China’s Advanced AI Model Raises Security Concerns

Do Son January 30, 2025 0
Read More Read more about DeepSeek R1: China’s Advanced AI Model Raises Security Concerns
Microsoft Edge Takes on Scareware Scams with New AI-Powered Blocker Scareware blocker
  • Technology

Microsoft Edge Takes on Scareware Scams with New AI-Powered Blocker

Do Son January 29, 2025 0
Read More Read more about Microsoft Edge Takes on Scareware Scams with New AI-Powered Blocker
CVE-2024-56614 & CVE-2024-56615: PoC Exploits Released for Severe eBPF Vulnerabilities in Linux Kernel CVE-2024-56614 and CVE-2024-56615
  • Linux
  • Vulnerability

CVE-2024-56614 & CVE-2024-56615: PoC Exploits Released for Severe eBPF Vulnerabilities in Linux Kernel

Do Son January 29, 2025 0
Read More Read more about CVE-2024-56614 & CVE-2024-56615: PoC Exploits Released for Severe eBPF Vulnerabilities in Linux Kernel
New Cyber-Espionage Campaign Hits Europe: UAC-0063 Threat Actor Expands Operations UAC-0063 Threat Actor
  • Cyber Security

New Cyber-Espionage Campaign Hits Europe: UAC-0063 Threat Actor Expands Operations

Do Son January 29, 2025 0
Read More Read more about New Cyber-Espionage Campaign Hits Europe: UAC-0063 Threat Actor Expands Operations
Unpacking the Latest Obfuscation Techniques in Xloader Versions 6 and 7 Xloader Versions 6 & 7
  • Malware

Unpacking the Latest Obfuscation Techniques in Xloader Versions 6 and 7

Do Son January 29, 2025 0
Read More Read more about Unpacking the Latest Obfuscation Techniques in Xloader Versions 6 and 7
CVE-2024-12647 (CVSS 9.8): Canon Printers at Risk of Remote Code Execution CVE-2024-12647, CVE-2024-12648, and CVE-2024-12649
  • Vulnerability

CVE-2024-12647 (CVSS 9.8): Canon Printers at Risk of Remote Code Execution

Do Son January 29, 2025 0
Read More Read more about CVE-2024-12647 (CVSS 9.8): Canon Printers at Risk of Remote Code Execution
TorNet: A New Backdoor That Uses TOR to Anonymize C2 Communication NATS-as-C2 Sysdig CVE-2026-33017 Langflow RCE Microsoft Phone Link Hijack CloudZ Pheno Plugin Insider Threat BlackCat (ALPHV) OFAC Sanctions DPRK IT Workers Transparent Tribe APT36 React2Shell, EtherRAT SideWinder Espionage, Netlify Phishing DDNS Abuse, C2 Infrastructure Hacking Health Club
  • Malware

TorNet: A New Backdoor That Uses TOR to Anonymize C2 Communication

Do Son January 29, 2025 0
Read More Read more about TorNet: A New Backdoor That Uses TOR to Anonymize C2 Communication
DeepSeek Disrupts AI Landscape: High Performance at Low Cost DeepSeek r1
  • Technology

DeepSeek Disrupts AI Landscape: High Performance at Low Cost

Do Son January 29, 2025 0
Read More Read more about DeepSeek Disrupts AI Landscape: High Performance at Low Cost
From Victim Profiles to Data Leaks: Inside the Lynx Ransomware-as-a-Service Ecosystem Lynx Ransomware-as-a-Service
  • Malware

From Victim Profiles to Data Leaks: Inside the Lynx Ransomware-as-a-Service Ecosystem

Do Son January 29, 2025 0
Read More Read more about From Victim Profiles to Data Leaks: Inside the Lynx Ransomware-as-a-Service Ecosystem
ABB Advisory Warns of CVE-2024-48841: RCE Threat with CVSS 10.0 Severity ABB T-MAC Plus vulnerabilities terminal system flaws ABB OPTIMAX Vulnerability CVE-2025-14510 ABB Edgenius Auth Bypass, Critical RCE ABB, ASPECT BMS CVE-2024-48841, CVE-2024-48849, and CVE-2024-48852 CVE-2024-48510
  • Vulnerability

ABB Advisory Warns of CVE-2024-48841: RCE Threat with CVSS 10.0 Severity

Do Son January 29, 2025 0
Read More Read more about ABB Advisory Warns of CVE-2024-48841: RCE Threat with CVSS 10.0 Severity
WhatsApp Phishing Campaign Targets SBI Bank Users with Malicious App WhatsApp Phishing Campaign
  • Malware

WhatsApp Phishing Campaign Targets SBI Bank Users with Malicious App

Do Son January 29, 2025 0
Read More Read more about WhatsApp Phishing Campaign Targets SBI Bank Users with Malicious App
❮ Prev Page
Next Page ❯

Search

Translation

CVE ALERTS
📈

EPSS Spike Alerts
Catch risk spikes before they make headlines.

🎯

Custom EPSS/CVSS
Set score thresholds to effectively filter noise.

🛡️

Exploit Intel
Real-world exploit signals beyond the KEV catalog.

🐙

GitHub Issues
Auto-create alert tickets without duplication.

📬

Weekly Digest
Clean summaries, eliminating email spam.

🏷️

Watchlist Groups
Tag vulnerabilities by team (Infra/AppSec/SOC).

🔀

Smart Routing
Route chat channels based on severity levels.

🚨

RBP Tracker
Early warning detection and tracking system.

Subscribe – $7/mo or try free for 14 days →

🚨 Active Exploits in the Wild

  • CVE-2026-94504CVSS 7.2
    Ninja Forms 3.15.3 stores an anonymous non-RTE textarea value and renders it without safe HTML encoding in the...
    Admin intel📅 Updated: Oct 7, 2026
  • CVE-2026-93836CVSS 7.2
    The WPC Product Bundles for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the \'qty\'...
    Admin intel📅 Updated: Oct 7, 2026
  • CVE-2026-21589CVSS 9.3
    This is a vulnerability in Bitbucket Data Center, Confluence Data Center, Jira Service Management Data Center, Jira Software...
    Admin intel📅 Updated: Oct 7, 2026
  • CVE-2026-61500CVSS 9.3
    Rejetto HFS 3.0.0 through 3.2.0 derives its session-cookie signing key from the non-cryptographic Math.random() generator and discloses outputs...
    Admin intel📅 Updated: Oct 7, 2026
  • CVE-2026-88779CVSS 8.7
    Vulnerability in NetScaler ADC and NetScaler Gateway. This issue affects ADC: before 14.1-73.41, before 13.1-64.28, before 14.1-73.41 FIPS,...
    Admin intelCISA KEV📅 Added to KEV: Oct 4, 2026📅 Updated: Oct 4, 2026
  • CVE-2026-102490CVSS 8.5
    All versions of Zammad including the latest alpha enable the local zammad user to escalate privileges to root.
    Admin intelCISA KEV📅 Added to KEV: Oct 2, 2026📅 Updated: Oct 2, 2026
  • CVE-2026-102489CVSS 8.7
    Zammad versions 6.3.0 to 6.5.4 are vulnerable a session hijack vulnerability that leads to remote code execution as...
    Admin intelCISA KEV📅 Added to KEV: Oct 2, 2026📅 Updated: Oct 2, 2026
  • CVE-2026-100382CVSS 10.0
    Improper Neutralization of Special Elements used in an OS Command (\'OS Command Injection\') vulnerability in Wikimedia Foundation Mediawiki...
    Admin intel📅 Updated: Oct 1, 2026
Powered by CVE Watchtower

Critical Vulnerabilities

  • CVE-2025-64393CVSS 9.4
    This vulnerability in Veeam Backup & Replication allows a Backup Viewer to execute arbitrary code as SYSTEM on...
    📅 Updated: Oct 7, 2026
  • CVE-2026-107104CVSS 9.3
    This vulnerability exists in the ERP system due to unsafe deserialization of user controlled data in the affected...
    📅 Updated: Oct 7, 2026
  • CVE-2026-107103CVSS 9.3
    This vulnerability exists in the ERP system due to insufficient validation and parameterization of user supplied input in...
    📅 Updated: Oct 7, 2026
  • CVE-2026-107102CVSS 9.3
    This vulnerability exists in the ERP system due to improper validation of payment callback parameters and inadequate authentication...
    📅 Updated: Oct 7, 2026
  • CVE-2026-30957CVSS 9.9
    OneUptime is a solution for monitoring and managing online services. Prior to 10.0.21, OneUptime Synthetic Monitors allow a...
    📅 Updated: Oct 7, 2026
  • CVE-2026-30956CVSS 9.9
    OneUptime is a solution for monitoring and managing online services. Prior to 10.0.21, a low‑privileged user can bypass...
    📅 Updated: Oct 7, 2026
  • CVE-2026-32306CVSS 9.9
    OneUptime is a solution for monitoring and managing online services. Prior to 10.0.23, the telemetry aggregation API accepts...
    📅 Updated: Oct 7, 2026
  • CVE-2026-33396CVSS 9.9
    OneUptime is an open-source monitoring and observability platform. Prior to version 10.0.35, a low-privileged authenticated user (ProjectMember) can...
    📅 Updated: Oct 7, 2026
Powered by CVE Watchtower

Daily CyberSecurity

  • About SecurityOnline.info
  • Advertise with us
  • Announcement
  • Contact
  • Contributor Register
  • Login
  • Disclaimer
  • DCMA
  • Privacy Policy
  • About SecurityOnline.info
  • Advertise on SecurityOnline.info
  • Contact Us

When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

  • CVE Watchtower
  • CVE Statistics by Vendor 2026
  • Q2 2026 Report
  • Top Exploited CVEs
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube
© 2017 - 2026 Daily CyberSecurity. All Rights Reserved.