Skip to content
September 28, 2026
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Data
    • CVE Watchtower
    • Top Exploited CVEs
    • CVE Stats by Vendor
    • Q2 2026 Report
    • CVE Alerts
    • CVE Alert Settings
    • Pricing
  • Cyber Criminals
  • Data Leak
  • Free Tools
    • CVSS 3.1 Calculator
    • Certificate Viewer
    • DNS Lookup
    • Encoder & Hash Generator
    • IP / Subnet Calculator
    • Whois Lookup
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Weekly Recap
Light/Dark Button
Unpatched Epson Devices at Risk: CVE-2024-47295 Allows Easy Hijacking CVE-2024-47295
  • Vulnerability

Unpatched Epson Devices at Risk: CVE-2024-47295 Allows Easy Hijacking

Do Son November 11, 2024 0
Read More Read more about Unpatched Epson Devices at Risk: CVE-2024-47295 Allows Easy Hijacking
GuLoader Campaign Targets European Industrial Sector with Evolving Evasion Techniques matrix-434033_1280
  • Malware

GuLoader Campaign Targets European Industrial Sector with Evolving Evasion Techniques

Do Son November 11, 2024 0
Read More Read more about GuLoader Campaign Targets European Industrial Sector with Evolving Evasion Techniques
How to Fix Delay in Receiving Emails in Outlook 2019 on Windows 11? Outlook 2019
  • Technique

How to Fix Delay in Receiving Emails in Outlook 2019 on Windows 11?

Do Son November 11, 2024 0
Read More Read more about How to Fix Delay in Receiving Emails in Outlook 2019 on Windows 11?
Tor Network Thwarts IP Spoofing Attack Tor IP spoofing Tor Browser, AI privacy
  • Cyber Security

Tor Network Thwarts IP Spoofing Attack

Do Son November 11, 2024 0
Read More Read more about Tor Network Thwarts IP Spoofing Attack
Palo Alto Networks Investigates Potential Remote Code Execution Vulnerability in PAN-OS PAN-OS vulnerability
  • Vulnerability

Palo Alto Networks Investigates Potential Remote Code Execution Vulnerability in PAN-OS

Do Son November 10, 2024 0
Read More Read more about Palo Alto Networks Investigates Potential Remote Code Execution Vulnerability in PAN-OS
Frag Ransomware: A New Threat Exploits Veeam Vulnerability (CVE-2024-40711) Frag ransomware
  • Malware
  • Vulnerability

Frag Ransomware: A New Threat Exploits Veeam Vulnerability (CVE-2024-40711)

Do Son November 10, 2024 0
Read More Read more about Frag Ransomware: A New Threat Exploits Veeam Vulnerability (CVE-2024-40711)
FakeBat Loader Reemerges: Malicious Google Ads Target Notion Users FakeBat loader
  • Malware

FakeBat Loader Reemerges: Malicious Google Ads Target Notion Users

Do Son November 10, 2024 0
Read More Read more about FakeBat Loader Reemerges: Malicious Google Ads Target Notion Users
QSC Malware Framework: New Tool in CloudComputating Group’s Cyberespionage Arsenal CloudComputating - QSC framework
  • Cyber Security
  • Malware

QSC Malware Framework: New Tool in CloudComputating Group’s Cyberespionage Arsenal

Do Son November 10, 2024 0
Read More Read more about QSC Malware Framework: New Tool in CloudComputating Group’s Cyberespionage Arsenal
SpyNote Malware: Fake Antivirus Targets Android Users in Sophisticated New Campaign SpyNote malware
  • Malware

SpyNote Malware: Fake Antivirus Targets Android Users in Sophisticated New Campaign

Do Son November 10, 2024 0
Read More Read more about SpyNote Malware: Fake Antivirus Targets Android Users in Sophisticated New Campaign
RedLine Stealer Analysis: Inside a Notorious Malware-as-a-Service Operation RedLine
  • Malware

RedLine Stealer Analysis: Inside a Notorious Malware-as-a-Service Operation

Do Son November 10, 2024 0
Read More Read more about RedLine Stealer Analysis: Inside a Notorious Malware-as-a-Service Operation
Researcher Uncovers New Phishing Campaign Deploying Remcos RAT with Advanced Evasion Techniques Remcos RAT phishing campaign
  • Malware

Researcher Uncovers New Phishing Campaign Deploying Remcos RAT with Advanced Evasion Techniques

Do Son November 10, 2024 0
Read More Read more about Researcher Uncovers New Phishing Campaign Deploying Remcos RAT with Advanced Evasion Techniques
Fickle Stealer: The New Rust-Based Malware Masquerading as GitHub Desktop Fickle Stealer malware
  • Malware

Fickle Stealer: The New Rust-Based Malware Masquerading as GitHub Desktop

Do Son November 10, 2024 0
Read More Read more about Fickle Stealer: The New Rust-Based Malware Masquerading as GitHub Desktop
Silent Skimmer Reemerges: New Tactics Target Payment Gateways Magento Credit Card Stealer npm package reverse shell
  • Cyber Security
  • Malware

Silent Skimmer Reemerges: New Tactics Target Payment Gateways

Do Son November 10, 2024 0
Read More Read more about Silent Skimmer Reemerges: New Tactics Target Payment Gateways
BlueNoroff’s New MacOS Threat: “Hidden Risk” Targets Crypto Enthusiasts Mercenary Akula European Financial Targeting AI-Generated Malware React2Shell Exploit UAT-8837 Critical Infrastructure Attack APT36, BOSS Linux BRICKSTORM Malware, China Espionage Curly COMrades, MucorAgent Chinese APT - HTTP Client Tools Shuckworm Cyber Espionage
  • Cyber Security
  • Malware

BlueNoroff’s New MacOS Threat: “Hidden Risk” Targets Crypto Enthusiasts

Do Son November 10, 2024 0
Read More Read more about BlueNoroff’s New MacOS Threat: “Hidden Risk” Targets Crypto Enthusiasts
Roblox Developers Targeted in Supply Chain Attack with Malicious npm Packages Skuld infostealer
  • Malware

Roblox Developers Targeted in Supply Chain Attack with Malicious npm Packages

Do Son November 10, 2024 0
Read More Read more about Roblox Developers Targeted in Supply Chain Attack with Malicious npm Packages
Scattered Spider Spins a New Web: Detecting 0ktapus Phishing Domains 0ktapus
  • Cyber Security

Scattered Spider Spins a New Web: Detecting 0ktapus Phishing Domains

Do Son November 10, 2024 0
Read More Read more about Scattered Spider Spins a New Web: Detecting 0ktapus Phishing Domains
CVE-2024-10470 (CVSS 9.8) in Popular WordPress Theme Exposes Thousands of Sites WPLMS theme - CVE-2024-10470
  • Vulnerability

CVE-2024-10470 (CVSS 9.8) in Popular WordPress Theme Exposes Thousands of Sites

Do Son November 8, 2024 0
Read More Read more about CVE-2024-10470 (CVSS 9.8) in Popular WordPress Theme Exposes Thousands of Sites
From Fake Updates to Data Exfiltration: Inside Interlock Ransomware’s Operations Interlock ransomware attack
  • Malware

From Fake Updates to Data Exfiltration: Inside Interlock Ransomware’s Operations

Do Son November 8, 2024 0
Read More Read more about From Fake Updates to Data Exfiltration: Inside Interlock Ransomware’s Operations
CVE-2024-10914 (CVSS 9.2): Command Injection Flaw Threatens 61,000+ D-Link NAS Devices CVE-2024-10914
  • Vulnerability

CVE-2024-10914 (CVSS 9.2): Command Injection Flaw Threatens 61,000+ D-Link NAS Devices

Do Son November 7, 2024 0
Read More Read more about CVE-2024-10914 (CVSS 9.2): Command Injection Flaw Threatens 61,000+ D-Link NAS Devices
GodFather Malware Now Targets 500+ Banking and Crypto Apps GodFather malware
  • Malware

GodFather Malware Now Targets 500+ Banking and Crypto Apps

Do Son November 7, 2024 0
Read More Read more about GodFather Malware Now Targets 500+ Banking and Crypto Apps
CISA Expands KEV Catalog with Four Actively Exploited Vulnerabilities Actively Exploited Vulnerabilities
  • Vulnerability

CISA Expands KEV Catalog with Four Actively Exploited Vulnerabilities

Do Son November 7, 2024 0
Read More Read more about CISA Expands KEV Catalog with Four Actively Exploited Vulnerabilities
Beware Python Developers: Malicious ‘fabrice’ Package Steals AWS Credentials from 37,000+ Downloads exfiltrating AWS credentials - fabrice package
  • Malware

Beware Python Developers: Malicious ‘fabrice’ Package Steals AWS Credentials from 37,000+ Downloads

Do Son November 7, 2024 0
Read More Read more about Beware Python Developers: Malicious ‘fabrice’ Package Steals AWS Credentials from 37,000+ Downloads
❮ Prev Page
Next Page ❯

Search

Translation

CVE ALERTS
📈

EPSS Spike Alerts
Catch risk spikes before they make headlines.

🎯

Custom EPSS/CVSS
Set score thresholds to effectively filter noise.

🛡️

Exploit Intel
Real-world exploit signals beyond the KEV catalog.

🐙

GitHub Issues
Auto-create alert tickets without duplication.

📬

Weekly Digest
Clean summaries, eliminating email spam.

🏷️

Watchlist Groups
Tag vulnerabilities by team (Infra/AppSec/SOC).

🔀

Smart Routing
Route chat channels based on severity levels.

🚨

RBP Tracker
Early warning detection and tracking system.

Subscribe – $7/mo or try free for 14 days →

🚨 Active Exploits in the Wild

  • CVE-2026-88772
    Memory overflow vulnerability leading to remote code execution or denial of service.
    Admin intelCISA KEV📅 Added to KEV: Sep 27, 2026📅 Updated: Sep 27, 2026
  • CVE-2026-88771
    Remote code execution due to improper input validation that can allow an unauthenticated attacker to execute arbitrary commands.
    Admin intelCISA KEV📅 Added to KEV: Sep 27, 2026📅 Updated: Sep 27, 2026
  • CVE-2026-65660CVSS 8.8
    Improper control of generation of code (\'code injection\') in Microsoft Office SharePoint allows an authorized attacker to execute...
    Admin intelCISA KEV📅 Added to KEV: Sep 25, 2026📅 Updated: Sep 25, 2026
  • CVE-2026-5430CVSS 10.0
    The JWT authentication mechanism accepts tokens signed with algorithms other than those explicitly configured or supported. This allows...
    CISA KEV📅 Added to KEV: Sep 24, 2026
  • CVE-2026-71362CVSS 9.1
    Adobe Commerce is affected by an Incorrect Authorization vulnerability that could result in privilege escalation. An attacker could...
    CISA KEV📅 Added to KEV: Sep 24, 2026
  • CVE-2026-48842CVSS 8.1
    Roundcube Webmail 1.6.x before 1.6.16 and 1.7.x before 1.7.1 has Pre-authentication SQL injection in the virtuser_query plugin via...
    Admin intel📅 Updated: Sep 23, 2026
  • CVE-2026-87902
    Unauthenticated path traversal in page-template resolution leading to conditional RCE An unauthenticated attacker can make get_page_template() page-template resolution...
    Admin intelCISA KEV📅 Added to KEV: Sep 25, 2026📅 Updated: Sep 23, 2026
  • CVE-2026-94127CVSS 9.8
    When a BIG-IP APM access policy and an OAuth profile is configured on a virtual server, specific malicious...
    Admin intelCISA KEV📅 Added to KEV: Sep 22, 2026📅 Updated: Sep 22, 2026
Powered by CVE Watchtower

Critical Vulnerabilities

  • CVE-2026-101187CVSS 9.4
    A weakness has been identified in Ziroom ZHOME A0101 1.0.1.0. This vulnerability affects the function pop_usb_device of the...
    📅 Updated: Sep 28, 2026
  • CVE-2026-102268CVSS 9.1
    PyJWT is a Python implementation of JSON Web Token standards. Prior to 2.14.0, is_pem_format in jwt/utils.py is affected...
    📅 Updated: Sep 28, 2026
  • CVE-2026-46649CVSS 9.1
    Joplin is an open source note-taking and to-do application that organises notes and lists into notebooks. Prior to...
    📅 Updated: Sep 28, 2026
  • CVE-2026-19759CVSS 9.4
    An Incorrect Authorization vulnerability in the task configuration in Google Cloud Application Integration versions prior to 2026-06-17 on Google...
    📅 Updated: Sep 28, 2026
  • CVE-2026-100606CVSS 9.2
    Flowise through 3.1.4 (Enterprise/platform mode with SSO enabled) contains an authentication bypass in the SSO login path. When...
    📅 Updated: Sep 28, 2026
  • CVE-2026-101110CVSS 9.3
    Joomla Extension - ordasoft.com - Unauthenticated SQL Injection in Book Library (Free) < 6.4.6 - site/booklibrary.php’s books() function...
    📅 Updated: Sep 28, 2026
  • CVE-2026-100752CVSS 9.3
    Joomla Extension - ordasoft.com - Unauthenticated SQL Injection in Real Estate Manager (Free) < 6.7.9 - site/realestatemanager.php builds...
    📅 Updated: Sep 28, 2026
  • CVE-2026-101108CVSS 9.3
    Joomla Extension - ordasoft.com - Unauthenticated SQL Injection in Vehicle Manager (Free) < 6.5.8 - site/vehiclemanager.php reads the...
    📅 Updated: Sep 28, 2026
Powered by CVE Watchtower

Daily CyberSecurity

  • About SecurityOnline.info
  • Advertise with us
  • Announcement
  • Contact
  • Contributor Register
  • Login
  • Disclaimer
  • DCMA
  • Privacy Policy
  • About SecurityOnline.info
  • Advertise on SecurityOnline.info
  • Contact Us

When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

  • CVE Watchtower
  • CVE Statistics by Vendor 2026
  • Q2 2026 Report
  • Top Exploited CVEs
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube
© 2017 - 2026 Daily CyberSecurity. All Rights Reserved.