Skip to content
June 23, 2026
  • Linkedin
  • Twitter
  • Facebook
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Watchtower
  • Cyber Criminals
  • Data Leak
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Vulnerability Report
Light/Dark Button
Tapioca Foundation Offers $1M Bounty After $4.7M DeFi Heist Tapioca attack
  • Cyber Security

Tapioca Foundation Offers $1M Bounty After $4.7M DeFi Heist

Do Son October 22, 2024 0
The Tapioca Foundation, a cryptocurrency project, has fallen victim to a sophisticated social engineering attack, resulting in...
Read More Read more about Tapioca Foundation Offers $1M Bounty After $4.7M DeFi Heist
Exposed Docker APIs Under Attack: New Malware Campaign Deploys “perfctl” Docker Remote API - perfctl malware
  • Malware

Exposed Docker APIs Under Attack: New Malware Campaign Deploys “perfctl”

Do Son October 22, 2024 0
A newly discovered cyberattack campaign has been targeting exposed Docker Remote API servers to deploy the perfctl...
Read More Read more about Exposed Docker APIs Under Attack: New Malware Campaign Deploys “perfctl”
8.7 OneDev DevOps Platform Patches Critical Security Flaw Exposing Sensitive Data – (CVE-2024-45309) CVE-2024-45309
  • Vulnerability

8.7 OneDev DevOps Platform Patches Critical Security Flaw Exposing Sensitive Data – (CVE-2024-45309)

Do Son October 22, 2024 0
A critical security vulnerability (CVE-2024-45309) has been discovered and patched in OneDev, a popular open-source DevOps platform....
Read More Read more about <span class="dcs-sev-badge" style="background:#f97316;">8.7</span> OneDev DevOps Platform Patches Critical Security Flaw Exposing Sensitive Data – (CVE-2024-45309)
8.8 Critical EoP Flaw in Microsoft’s Remote Registry: Researcher Publishes PoC for CVE-2024-43532 HTTP.sys RCE vulnerability, Windows HTTP stack exploit, CVE-2026-47291 Netlogon RCE vulnerability Exploited in the wild Secure Boot certificate renewal 2026, Windows 11 UEFI update Community-First AI Infrastructure, Microsoft self-funding energy mandate aka.ms/aoh online portal CVE-2025-55681, Windows DWM Elevation Windows Administrator Protection, CVE-2025-60718 Microsoft AI Compute, IREN Infrastructure Microsoft Japan PPA, Renewable Energy Microsoft AI Investment, Cloud Expansion Microsoft Azure, Startup Credits Infinite Workday, AI in Work Microsoft Russia, Bankruptcy AI code generation, Microsoft AI Microsoft Layoffs, Restructuring
  • Vulnerability

8.8 Critical EoP Flaw in Microsoft’s Remote Registry: Researcher Publishes PoC for CVE-2024-43532

Do Son October 21, 2024 0
Akamai researcher Stiv Kupchik published the technical details and a proof-of-concept (PoC) exploit code for a critical...
Read More Read more about <span class="dcs-sev-badge" style="background:#f97316;">8.8</span> Critical EoP Flaw in Microsoft’s Remote Registry: Researcher Publishes PoC for CVE-2024-43532
Early Cascade Injection: A Novel Evasion Technique Flow Early Cascade Injection
  • Vulnerability

Early Cascade Injection: A Novel Evasion Technique

Do Son October 21, 2024 0
A new stealthy process injection method, called Early Cascade Injection, has been introduced by security researcher Guido...
Read More Read more about Early Cascade Injection: A Novel Evasion Technique
BattlEye Vulnerability: “BannleEye” Exploit Allows Arbitrary Banning Users BannleEye vulnerability
  • Vulnerability

BattlEye Vulnerability: “BannleEye” Exploit Allows Arbitrary Banning Users

Do Son October 21, 2024 0
A critical vulnerability in BattlEye (BE), a widely used anti-cheat system, has been disclosed, potentially jeopardizing the...
Read More Read more about BattlEye Vulnerability: “BannleEye” Exploit Allows Arbitrary Banning Users
Bumblebee Loader Resurfaces with New Infection Chain Bumblebee-Loader
  • Malware

Bumblebee Loader Resurfaces with New Infection Chain

Do Son October 21, 2024 0
In a recent report from Leandro Fróes, Senior Threat Research Engineer at Netskope, a new infection chain...
Read More Read more about Bumblebee Loader Resurfaces with New Infection Chain
BianLian Ransomware Gang Claims Attack on Boston Children’s Health Physicians, Compromising Thousands of Patient Records MedusaLocker ransomware - BabyLockerKZ
  • Cyber Security

BianLian Ransomware Gang Claims Attack on Boston Children’s Health Physicians, Compromising Thousands of Patient Records

Do Son October 21, 2024 0
Boston Children’s Health Physicians (BCHP), an organization comprising over 300 physicians across 60 regional offices in New...
Read More Read more about BianLian Ransomware Gang Claims Attack on Boston Children’s Health Physicians, Compromising Thousands of Patient Records
Akira Ransomware Exploit CVE-2024-40766 in SonicWall SonicOS Akira ransomware tactics
  • Malware
  • Vulnerability

Akira Ransomware Exploit CVE-2024-40766 in SonicWall SonicOS

Do Son October 21, 2024 0
The notorious Akira ransomware group continues to adapt and refine its methods, solidifying its position as one...
Read More Read more about Akira Ransomware Exploit CVE-2024-40766 in SonicWall SonicOS
MaaS in Action: How Lumma Stealer Employs Advanced Delivery Techniques Lumma Stealer Tactics
  • Malware

MaaS in Action: How Lumma Stealer Employs Advanced Delivery Techniques

Do Son October 21, 2024 0
Malware-as-a-service (MaaS) offerings have become an increasingly dangerous tool for cybercriminals. Among these threats is Lumma Stealer,...
Read More Read more about MaaS in Action: How Lumma Stealer Employs Advanced Delivery Techniques
VOIDMAW: A New Bypass Technique for Memory Scanners Bypass Memory Scanners
  • Open Source Tool

VOIDMAW: A New Bypass Technique for Memory Scanners

Do Son October 21, 2024 0
As malware detection techniques evolve, so do the methods attackers use to evade them. VOIDMAW is an...
Read More Read more about VOIDMAW: A New Bypass Technique for Memory Scanners
9.8 CVE-2024-9537 (CVSS 9.8): Critical Zero-Day in ScienceLogic EM7 Leads to Rackspace Security Incident CVE-2024-9537 - ScienceLogic EM7
  • Vulnerability

9.8 CVE-2024-9537 (CVSS 9.8): Critical Zero-Day in ScienceLogic EM7 Leads to Rackspace Security Incident

Do Son October 21, 2024 0
Rackspace, a leading provider of managed cloud services, announced a security incident related to a zero-day vulnerability...
Read More Read more about <span class="dcs-sev-badge" style="background:#ef4444;">9.8</span> CVE-2024-9537 (CVSS 9.8): Critical Zero-Day in ScienceLogic EM7 Leads to Rackspace Security Incident
Cisco Investigates Potential Data Exposure, Confirms No Breach of Internal Systems CVE-2024-20404 and CVE-2024-20405
  • Data Leak

Cisco Investigates Potential Data Exposure, Confirms No Breach of Internal Systems

Do Son October 21, 2024 0
Cisco Systems is currently investigating an alleged unauthorized access to data housed on a public-facing DevHub environment....
Read More Read more about Cisco Investigates Potential Data Exposure, Confirms No Breach of Internal Systems
7.0 Microsoft Windows Flaw: CVE-2024-30090 PoC Exploit Published, Posing SYSTEM Privilege Threat Windows 11 Privilege Escalation
  • Vulnerability

7.0 Microsoft Windows Flaw: CVE-2024-30090 PoC Exploit Published, Posing SYSTEM Privilege Threat

Do Son October 20, 2024 0
Security researcher Angelboy (@scwuaptx) with DEVCORE has identified a privilege escalation vulnerability in Microsoft’s Kernel Streaming service....
Read More Read more about <span class="dcs-sev-badge" style="background:#f97316;">7.0</span> Microsoft Windows Flaw: CVE-2024-30090 PoC Exploit Published, Posing SYSTEM Privilege Threat
GHOSTPULSE Evolves: Malware Now Hides in Image Pixels, Evading Detection Lotus Wiper Digital Sabotage G_Wagon Malware NPM Supply Chain Attack IMAPLoader malware ResolverRAT Malware Evasion
  • Malware

GHOSTPULSE Evolves: Malware Now Hides in Image Pixels, Evading Detection

Do Son October 20, 2024 0
Elastic Security Labs has recently uncovered a significant evolution in the tactics of the GHOSTPULSE malware family,...
Read More Read more about GHOSTPULSE Evolves: Malware Now Hides in Image Pixels, Evading Detection
9.8 CVE-2024-21216 (CVSS 9.8): Oracle WebLogic Flaw That Could Give Attackers Full Control CVE-2024-21216
  • Vulnerability

9.8 CVE-2024-21216 (CVSS 9.8): Oracle WebLogic Flaw That Could Give Attackers Full Control

Do Son October 20, 2024 0
Oracle has recently rolled out its October 2024 Critical Patch Update (CPU), addressing 329 vulnerabilities across a...
Read More Read more about <span class="dcs-sev-badge" style="background:#ef4444;">9.8</span> CVE-2024-21216 (CVSS 9.8): Oracle WebLogic Flaw That Could Give Attackers Full Control
Beast Ransomware: RaaS Platform Targets Windows, Linux, and VMware ESXi Beast Ransomware
  • Malware

Beast Ransomware: RaaS Platform Targets Windows, Linux, and VMware ESXi

Do Son October 20, 2024 0
In a recent analysis by Cybereason, security researcher Mark Tsipershtein delves into the intricacies of Beast Ransomware,...
Read More Read more about Beast Ransomware: RaaS Platform Targets Windows, Linux, and VMware ESXi
Supply Chain Weakness: Crypt Ghouls Exploit Contractors to Deploy Ransomware Crypt Ghouls
  • Cyber Security
  • Malware

Supply Chain Weakness: Crypt Ghouls Exploit Contractors to Deploy Ransomware

Do Son October 20, 2024 0
Kaspersky Labs has identified a new cybercriminal group dubbed Crypt Ghouls, responsible for a series of ransomware...
Read More Read more about Supply Chain Weakness: Crypt Ghouls Exploit Contractors to Deploy Ransomware
Ducktail & Quasar RAT: Vietnamese Threat Actors Target Meta Ads Professionals Ducktail malware
  • Cyber Security
  • Malware

Ducktail & Quasar RAT: Vietnamese Threat Actors Target Meta Ads Professionals

Do Son October 20, 2024 0
In a sophisticated attack campaign recently uncovered by Cyble Research and Intelligence Lab (CRIL), digital marketing professionals,...
Read More Read more about Ducktail & Quasar RAT: Vietnamese Threat Actors Target Meta Ads Professionals
Developers Targeted: North Korean Hackers Deploy “BeaverTail” Malware via NFTs BeaverTail
  • Cyber Security
  • Malware

Developers Targeted: North Korean Hackers Deploy “BeaverTail” Malware via NFTs

Do Son October 20, 2024 0
eSentire’s Threat Response Unit (TRU) uncovers a sophisticated phishing campaign using a fake NFT project to lure...
Read More Read more about Developers Targeted: North Korean Hackers Deploy “BeaverTail” Malware via NFTs
❮ Prev Page
Next Page ❯

Search

Translation

CVE WATCHTOWER
🚨

Receive alerts for vulnerabilities being exploited in the wild.

⚡

Get notified instantly when a Proof of Concept (PoC) exploit is published.

🔍

Access critical info on vulnerabilities even when marked as "RESERVED".

🧠

Insights powered by decades of expertise and global intelligence sources.

🎯

Customize alerts with up to 10 keywords for your specific tech stack.

📊

Export the raw CVE database for SIEM integration and reporting.

Upgrade Package

🔴 Live Critical Threats

  • CVE-2026-54350CVSS 10.0
    ## Summary `enrichContext` at `packages/server/src/sdk/workspace/queries/queries.ts:121-138` substitutes parameter values into the raw JSON...
  • CVE-2026-52813CVSS 10.0
    ### Summary Organization names containing path traversal sequences (`../`) are accepted by...
  • CVE-2026-52811
    Summary `(*Repository).UploadRepoFiles` checks for symlinks only on the **leaf** of the upload...
  • CVE-2026-52806CVSS 9.9
    # Gogs: RCE via `git rebase --exec` Argument Injection in PR Merge...
  • CVE-2026-56315CVSS 9.8
    picklescan before 1.0.4 fails to block at least seven Python standard library...
  • CVE-2026-56274CVSS 9.9
    Flowise before 3.1.2 contains multiple OS command injection vulnerabilities in the Custom...
  • CVE-2026-11374CVSS 9.0
    In ManageEngine ADSelfService Plus, RecoveryManager Plus, M365 Manager Plus, and ADAudit Plus,...
  • CVE-2026-12866CVSS 9.8
    All versions of the package expr-eval are vulnerable to Code Execution via...
  • CVE-2026-54352CVSS 9.6
    ## Summary `POST /api/pwa/process-zip` at `packages/server/src/api/routes/static.ts:24` accepts a builder-uploaded `.zip`, extracts it...
  • CVE-2026-48746CVSS 9.1
    vLLM is an inference and serving engine for large language models (LLMs)....
Powered by CVE WATCHTOWER

🚨 Active Exploits in the Wild

  • CVE-2026-20230CVSS 8.6
    A vulnerability in Cisco Unified Communications Manager (Unified CM) and Cisco Unified Communications Manager Session Management Edition (Unified...
  • CVE-2026-4020CVSS 7.5
    The Gravity SMTP plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and...
  • CVE-2026-10735
    Multiple plugins by ShapedPlugin contain a backdoor in various versions. This makes it possible for unauthenticated attackers to...
  • CVE-2026-20262CVSS 6.5
    A vulnerability in the web UI of Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage, could allow an authenticated,...
  • CVE-2026-54420CVSS 8.5
    LiteSpeed cPanel plugin before 2.4.8 (as distributed in LiteSpeed WHM PlugIn before 5.3.2.0) mishandles symlinks provided by a...
  • CVE-2026-53435CVSS 8.8
    In Jenkins 2.567 and earlier, LTS 2.555.2 and earlier, it is possible for attackers to have Jenkins deserialize...
  • CVE-2026-10795CVSS 8.1
    The UpdraftPlus: WP Backup & Migration Plugin plugin for WordPress is vulnerable to Authentication Bypass in all versions...
  • CVE-2026-11645
    Out of bounds read and write in V8 in Google Chrome prior to 149.0.7827.103 allowed a remote attacker...
  • CVE-2026-50751CVSS 9.3
    A logic flow weakness in Remote Access and Mobile Access certificate validation in deprecated IKEv1 key exchange allows...
  • CVE-2026-20245CVSS 7.8
    A vulnerability in the CLI of Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage, could allow an authenticated, local...
Powered by CVE Watchtower

Our Websites
  • Penetration Testing Tools
  • The Daily Information Technology
  • Daily CyberSecurity

    • About SecurityOnline.info
    • Advertise with us
    • Announcement
    • Contact
    • Contributor Register
    • Login
    • Disclaimer
    • Privacy Policy
    • About SecurityOnline.info
    • Advertise on SecurityOnline.info
    • Contact Us

    When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

    • Disclaimer
    • Privacy Policy
    • DMCA NOTICE
    • Linkedin
    • Twitter
    • Facebook
    • Youtube
    © 2017 - 2026 Daily CyberSecurity. All Rights Reserved.