Skip to content
June 21, 2026
  • Linkedin
  • Twitter
  • Facebook
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Watchtower
  • Cyber Criminals
  • Data Leak
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Vulnerability Report
Light/Dark Button
Tenable Exposes Critical “CloudImposer” Vulnerability in Google Cloud Platform Composer CloudImposer - dependency confusion
  • Vulnerability

Tenable Exposes Critical “CloudImposer” Vulnerability in Google Cloud Platform Composer

Do Son September 16, 2024 0
A critical vulnerability in Google Cloud Platform (GCP) Composer, discovered by security researchers at Tenable, could have...
Read More Read more about Tenable Exposes Critical “CloudImposer” Vulnerability in Google Cloud Platform Composer
Critical Flaws Found in VICIdial Contact Center Suite: CVE-2024-8503 and CVE-2024-8504, PoC Published CVE-2024-8503 & CVE-2024-8504 - VICIdial
  • Vulnerability

Critical Flaws Found in VICIdial Contact Center Suite: CVE-2024-8503 and CVE-2024-8504, PoC Published

Do Son September 16, 2024 0
In a concerning development for call centers using VICIdial, a popular open-source contact center solution, two high-severity...
Read More Read more about Critical Flaws Found in VICIdial Contact Center Suite: CVE-2024-8503 and CVE-2024-8504, PoC Published
Exploit Kits, Cryptominers, Proxyjackers: The New Face of Selenium Grid Abuse proxyjacking
  • Malware

Exploit Kits, Cryptominers, Proxyjackers: The New Face of Selenium Grid Abuse

Do Son September 16, 2024 0
Researchers at Cado Security Labs have uncovered two malicious campaigns that exploit misconfigured instances of Selenium Grid....
Read More Read more about Exploit Kits, Cryptominers, Proxyjackers: The New Face of Selenium Grid Abuse
Hadooken Malware: A New Threat to WebLogic Servers Entire
  • Malware

Hadooken Malware: A New Threat to WebLogic Servers

Do Son September 16, 2024 0
Cybersecurity researchers at Aqua Nautilus have discovered a new Linux malware strain, dubbed “Hadooken,” that is specifically...
Read More Read more about Hadooken Malware: A New Threat to WebLogic Servers
Multiple Critical Vulnerabilities Found in D-Link WiFi Routers: Immediate Firmware Updates Advised CVE-2024-45694 & CVE-2024-45695 & CVE-2024-45694
  • Vulnerability

Multiple Critical Vulnerabilities Found in D-Link WiFi Routers: Immediate Firmware Updates Advised

Do Son September 16, 2024 0
Multiple critical vulnerabilities in D-Link routers have been disclosed, potentially affecting millions of users worldwide. TWCERT/CC, Taiwan’s...
Read More Read more about Multiple Critical Vulnerabilities Found in D-Link WiFi Routers: Immediate Firmware Updates Advised
Kawasaki Europe Navigates Ransomware Incident, Recovery in Progress Kawasaki Motors Europe
  • Cyber Security
  • Malware

Kawasaki Europe Navigates Ransomware Incident, Recovery in Progress

Do Son September 16, 2024 0
Kawasaki Motors Europe, the prominent European subsidiary of Kawasaki Heavy Industries, is actively recovering from a targeted...
Read More Read more about Kawasaki Europe Navigates Ransomware Incident, Recovery in Progress
New Zero-Day Emerges After Microsoft Patch Tuesday: CVE-2024-43461 Targets Windows MSHTML CVE-2024-43461
  • Vulnerability

New Zero-Day Emerges After Microsoft Patch Tuesday: CVE-2024-43461 Targets Windows MSHTML

Do Son September 15, 2024 0
In an unexpected turn of events, Microsoft has revised its September 2024 Patch Tuesday security advisory, revealing...
Read More Read more about New Zero-Day Emerges After Microsoft Patch Tuesday: CVE-2024-43461 Targets Windows MSHTML
CVE-2024-38816: Spring Framework Path Traversal Vulnerability Threatens Millions CVE-2024-38816
  • Vulnerability

CVE-2024-38816: Spring Framework Path Traversal Vulnerability Threatens Millions

Do Son September 15, 2024 0
A serious security vulnerability, identified as CVE-2024-38816 (CVSS 7.5), has been discovered in the popular Spring Framework,...
Read More Read more about CVE-2024-38816: Spring Framework Path Traversal Vulnerability Threatens Millions
PoC Exploit Released for Ivanti EPM Flaw CVE-2024-29847 (CVSS 10) CVE-2024-29847 PoC exploit Github
  • Vulnerability

PoC Exploit Released for Ivanti EPM Flaw CVE-2024-29847 (CVSS 10)

Do Son September 15, 2024 0
Security researcher James Horseman from Horizon3.ai has disclosed the technical details and a proof-of-concept (PoC) exploit code...
Read More Read more about PoC Exploit Released for Ivanti EPM Flaw CVE-2024-29847 (CVSS 10)
Ajina.Banker: Unmasking the Android Malware Targeting Central Asian Banks Ajina malware
  • Malware

Ajina.Banker: Unmasking the Android Malware Targeting Central Asian Banks

Do Son September 15, 2024 0
Cybersecurity analysts at Group-IB have uncovered a sophisticated malware campaign targeting bank customers in Central Asia. Dubbed...
Read More Read more about Ajina.Banker: Unmasking the Android Malware Targeting Central Asian Banks
Don’t Fall for the Bait: Poseidon Stealer Masquerades as Sopha AI Poseidon Stealer
  • Malware

Don’t Fall for the Bait: Poseidon Stealer Masquerades as Sopha AI

Do Son September 15, 2024 0
In a new wave of cyberattacks, macOS users are being targeted by the Poseidon Stealer malware, disguised...
Read More Read more about Don’t Fall for the Bait: Poseidon Stealer Masquerades as Sopha AI
Critical Flaw in NixOS Package Manager: CVE-2024-45593 Allows Arbitrary File Write with Root Permissions Nix Sandbox Escape Root Escalation CVE-2024-45593
  • Vulnerability

Critical Flaw in NixOS Package Manager: CVE-2024-45593 Allows Arbitrary File Write with Root Permissions

Do Son September 15, 2024 0
A high-severity security flaw has been discovered in Nix, the popular package manager for Linux and Unix-based...
Read More Read more about Critical Flaw in NixOS Package Manager: CVE-2024-45593 Allows Arbitrary File Write with Root Permissions
Iranian Cyberespionage Campaign Targets Iraqi Government APT34
  • Cyber Security
  • Malware

Iranian Cyberespionage Campaign Targets Iraqi Government

Do Son September 15, 2024 0
Check Point Research (CPR) has uncovered a sophisticated cyberespionage campaign aimed at the Iraqi government, bearing the...
Read More Read more about Iranian Cyberespionage Campaign Targets Iraqi Government
BadIIS Malware : 35+ IIS Servers Compromised in DragonRank Campaign DragonRank - BadIIS malware
  • Cyber Security
  • Malware

BadIIS Malware : 35+ IIS Servers Compromised in DragonRank Campaign

Do Son September 15, 2024 0
A recent report from Cisco Talos has exposed a new threat actor named DragonRank, a Chinese-speaking group...
Read More Read more about BadIIS Malware : 35+ IIS Servers Compromised in DragonRank Campaign
Medusa Exploits Fortinet Flaw (CVE-2023-48788) for Stealthy Ransomware Attacks Medusa Ransomware group
  • Malware

Medusa Exploits Fortinet Flaw (CVE-2023-48788) for Stealthy Ransomware Attacks

Do Son September 14, 2024 0
A recent report from Bitdefender highlights how Medusa has not only continued its relentless attacks but has...
Read More Read more about Medusa Exploits Fortinet Flaw (CVE-2023-48788) for Stealthy Ransomware Attacks
20+ Victims and Counting: Lynx Ransomware’s Swift Rise Lynx Ransomware
  • Malware

20+ Victims and Counting: Lynx Ransomware’s Swift Rise

Do Son September 14, 2024 0
In a recent report from Rapid7 Labs, the Lynx ransomware group has emerged as a new threat...
Read More Read more about 20+ Victims and Counting: Lynx Ransomware’s Swift Rise
Beware Mac Users: Fake AppleCare+ Support Scam Lures Victims via GitHub Repos AppleCare+ support
  • Cyber Security

Beware Mac Users: Fake AppleCare+ Support Scam Lures Victims via GitHub Repos

Do Son September 13, 2024 0
A new fraudulent campaign targeting Mac users seeking AppleCare+ support or extended warranties has been uncovered by...
Read More Read more about Beware Mac Users: Fake AppleCare+ Support Scam Lures Victims via GitHub Repos
CISA & Ivanti Warn of Active Exploitation Cloud Services Appliance Flaw CVE-2024-8190 Ivanti EPM Vulnerability CVE-2026-1603 Ivanti EPM Critical XSS, Unauthenticated File Write CVE-2024-29847 & CVE-2024-8190 Ivanti ITSM, Authentication Bypass
  • Vulnerability

CISA & Ivanti Warn of Active Exploitation Cloud Services Appliance Flaw CVE-2024-8190

Do Son September 13, 2024 0
A high-severity vulnerability (CVE-2024-8190) in Ivanti Cloud Services Appliance (CSA) is under active exploitation, prompting an urgent...
Read More Read more about CISA & Ivanti Warn of Active Exploitation Cloud Services Appliance Flaw CVE-2024-8190
RansomHub Adopts New Tactics in Latest Attack, Bypasses EDR and Harvests Credentials RansomHub ransomware group - TDSSKiller
  • Cyber Security
  • Malware

RansomHub Adopts New Tactics in Latest Attack, Bypasses EDR and Harvests Credentials

Do Son September 13, 2024 0
Recently, the ThreatDown Managed Detection and Response (MDR) team has uncovered a novel attack method employed by...
Read More Read more about RansomHub Adopts New Tactics in Latest Attack, Bypasses EDR and Harvests Credentials
Rockwell Automation Products Face Critical Security Risks, Urgent Patching Required CVE-2024-45823 and CVE-2024-45824
  • Vulnerability

Rockwell Automation Products Face Critical Security Risks, Urgent Patching Required

Do Son September 13, 2024 0
Two recently discovered vulnerabilities in Rockwell Automation’s FactoryTalk software products pose a serious threat to industrial control...
Read More Read more about Rockwell Automation Products Face Critical Security Risks, Urgent Patching Required
❮ Prev Page
Next Page ❯

Search

Translation

CVE WATCHTOWER
🚨

Receive alerts for vulnerabilities being exploited in the wild.

⚡

Get notified instantly when a Proof of Concept (PoC) exploit is published.

🔍

Access critical info on vulnerabilities even when marked as "RESERVED".

🧠

Insights powered by decades of expertise and global intelligence sources.

🎯

Customize alerts with up to 10 keywords for your specific tech stack.

📊

Export the raw CVE database for SIEM integration and reporting.

Upgrade Package

🔴 Live Critical Threats

  • CVE-2026-5366CVSS 9.9
    Prefect version 3.6.23 is vulnerable to remote code execution due to improper...
  • CVE-2024-58351CVSS 9.8
    Flowise before 2.1.4 allows configuration to be injected into the Chainflow during...
  • CVE-2022-50972CVSS 9.8
    WooCommerce 7.1.0 contains a remote code execution vulnerability that allows attackers to...
  • CVE-2019-25763CVSS 9.8
    WordPress Ultimate Addons for Beaver Builder 1.2.4.1 contains an authentication bypass vulnerability...
  • CVE-2026-11551CVSS 9.8
    The Branda plugin for WordPress is vulnerable to privilege escalation via account...
  • CVE-2026-56081CVSS 9.1
    Cap-go before 12.128.2 contains an authentication logic flaw that lets an attacker...
  • CVE-2026-56073CVSS 9.4
    Cap-go before 12.128.2 contains an authentication bypass vulnerability in OTP verification that...
  • CVE-2026-55447CVSS 9.6
    ### Summary All components based on `BaseFileComponent` are vulnerable to the following...
  • CVE-2026-48584CVSS 9.9
    Execution with unnecessary privileges in Azure Synapse allows an authorized attacker to...
  • CVE-2026-48582CVSS 9.6
    Missing authorization in Microsoft Exchange Online allows an authorized attacker to elevate...
Powered by CVE WATCHTOWER

Recent Zero-Day Vulnerabilities

  • GreatXML BitLocker Bypass: Public PoC Exploit Disclosed
  • Check Point VPN Vulnerability Exploited in the Wild with Ransomware Links
  • Weekly Threat Intelligence: June 1 to June 7, 2026
  • Cisco SD-WAN Vulnerability Exploited in the Wild with Root RCE Risks
  • Android Zero-Day Flaw Exploited in the Wild: June 2026 Patches Released
  • Exploited in the Wild: Critical OWA Spoofing Flaw (CVE-2026-42897) Hits On-Premises Exchange Servers
Our Websites
  • Penetration Testing Tools
  • The Daily Information Technology
  • Daily CyberSecurity

    • About SecurityOnline.info
    • Advertise with us
    • Announcement
    • Contact
    • Contributor Register
    • Login
    • Disclaimer
    • Privacy Policy
    • About SecurityOnline.info
    • Advertise on SecurityOnline.info
    • Contact Us

    When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

    • Disclaimer
    • Privacy Policy
    • DMCA NOTICE
    • Linkedin
    • Twitter
    • Facebook
    • Youtube
    © 2017 - 2026 Daily CyberSecurity. All Rights Reserved.