Skip to content
September 29, 2026
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Data
    • CVE Watchtower
    • Top Exploited CVEs
    • CVE Stats by Vendor
    • Q2 2026 Report
    • CVE Alerts
    • CVE Alert Settings
    • Pricing
  • Cyber Criminals
  • Data Leak
  • Free Tools
    • CVSS 3.1 Calculator
    • Certificate Viewer
    • DNS Lookup
    • Encoder & Hash Generator
    • IP / Subnet Calculator
    • Whois Lookup
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Weekly Recap
Light/Dark Button
Storm-0940 and CovertNetwork-1658: Insights into Chinese Cyberattack Infrastructure Storm-0940 - CovertNetwork-1658
  • Cyber Security

Storm-0940 and CovertNetwork-1658: Insights into Chinese Cyberattack Infrastructure

Do Son November 4, 2024 0
Read More Read more about Storm-0940 and CovertNetwork-1658: Insights into Chinese Cyberattack Infrastructure
ZoneMinder’s CVE-2024-51482: A 10/10 Severity Vulnerability Exposes SQL Databases CVE-2024-51482
  • Vulnerability

ZoneMinder’s CVE-2024-51482: A 10/10 Severity Vulnerability Exposes SQL Databases

Do Son November 4, 2024 0
Read More Read more about ZoneMinder’s CVE-2024-51482: A 10/10 Severity Vulnerability Exposes SQL Databases
Obfuscated JavaScript and WebDAV: Strela Stealer’s New Tools for Credential Theft Strela Stealer
  • Cyber Security
  • Malware

Obfuscated JavaScript and WebDAV: Strela Stealer’s New Tools for Credential Theft

Do Son November 4, 2024 0
Read More Read more about Obfuscated JavaScript and WebDAV: Strela Stealer’s New Tools for Credential Theft
Critical Vulnerabilities Found in Rockwell Automation FactoryTalk ThinManager CVE-2024-10386 - Rockwell Automation FactoryTalk ThinManager
  • Vulnerability

Critical Vulnerabilities Found in Rockwell Automation FactoryTalk ThinManager

Do Son November 4, 2024 0
Read More Read more about Critical Vulnerabilities Found in Rockwell Automation FactoryTalk ThinManager
Beware of chalk-node: Malicious Package Steals Developer Data Malicious Package
  • Malware

Beware of chalk-node: Malicious Package Steals Developer Data

Do Son November 4, 2024 0
Read More Read more about Beware of chalk-node: Malicious Package Steals Developer Data
U.S. Soccer Federation Discloses Data Security Incident U.S. Soccer security incident
  • Data Leak

U.S. Soccer Federation Discloses Data Security Incident

Do Son November 4, 2024 0
Read More Read more about U.S. Soccer Federation Discloses Data Security Incident
QNAP Patches Zero-Day Flaw CVE-2024-50389 in QuRouter Following Pwn2Own Ireland 2024 Exploits CVE-2024-50387 & CVE-2024-50389 QuRouter
  • Vulnerability

QNAP Patches Zero-Day Flaw CVE-2024-50389 in QuRouter Following Pwn2Own Ireland 2024 Exploits

Do Son November 4, 2024 0
Read More Read more about QNAP Patches Zero-Day Flaw CVE-2024-50389 in QuRouter Following Pwn2Own Ireland 2024 Exploits
How Threat Intelligence Exchange Enhances Cybersecurity Posture Employees Risk
  • Technique

How Threat Intelligence Exchange Enhances Cybersecurity Posture

Do Son November 4, 2024 0
Read More Read more about How Threat Intelligence Exchange Enhances Cybersecurity Posture
CVE-2024-46538: Unpatched XSS Flaw in pfSense Allows Remote Exploits, PoC Published CVE-2024-46538 pfsense vulnerability
  • Vulnerability

CVE-2024-46538: Unpatched XSS Flaw in pfSense Allows Remote Exploits, PoC Published

Do Son November 4, 2024 0
Read More Read more about CVE-2024-46538: Unpatched XSS Flaw in pfSense Allows Remote Exploits, PoC Published
KDE Sets Sights on New Horizons with “Project Banana” Linux Distro Project Banana - KDE Linux distribution
  • Linux

KDE Sets Sights on New Horizons with “Project Banana” Linux Distro

Do Son November 4, 2024 0
Read More Read more about KDE Sets Sights on New Horizons with “Project Banana” Linux Distro
Genzai: Secure Your IoT Devices with Automated Security Vulnerability Scanning IoT Security Toolkit
  • Open Source Tool

Genzai: Secure Your IoT Devices with Automated Security Vulnerability Scanning

Do Son November 4, 2024 0
Read More Read more about Genzai: Secure Your IoT Devices with Automated Security Vulnerability Scanning
MediaTek Security Bulletin Highlights High Severity Vulnerabilities in Mobile Chipsets MediaTek Modem Vulnerabilities, January 2026 Security Bulletin MediaTek Vulnerabilities, Chipset Security CVE-2024-20103 & CVE-2024-20100 - CVE-2024-20154 - February 2025 Product Security Bulletin
  • Vulnerability

MediaTek Security Bulletin Highlights High Severity Vulnerabilities in Mobile Chipsets

Do Son November 4, 2024 0
Read More Read more about MediaTek Security Bulletin Highlights High Severity Vulnerabilities in Mobile Chipsets
Halberd: Your Swiss Army Knife for Multi-Cloud Security Testing Cloud Security Testing
  • Open Source Tool

Halberd: Your Swiss Army Knife for Multi-Cloud Security Testing

Do Son November 4, 2024 0
Read More Read more about Halberd: Your Swiss Army Knife for Multi-Cloud Security Testing
Okta Patches Vulnerability (CVE-2024-9191) in Verify Desktop MFA for Windows CVE-2024-10327 - Okta Verify Desktop
  • Vulnerability

Okta Patches Vulnerability (CVE-2024-9191) in Verify Desktop MFA for Windows

Do Son November 3, 2024 0
Read More Read more about Okta Patches Vulnerability (CVE-2024-9191) in Verify Desktop MFA for Windows
New Trojan “MiyaRat” Unleashed by Bitter Group (APT-Q-37) Bitter Group - Miyarat trojan
  • Malware

New Trojan “MiyaRat” Unleashed by Bitter Group (APT-Q-37)

Do Son November 3, 2024 0
Read More Read more about New Trojan “MiyaRat” Unleashed by Bitter Group (APT-Q-37)
CVE-2024-8956 & CVE-2024-8957: Two Actively Exploited Vulnerabilities in PTZ Cameras PTZ cameras - CVE-2024-8956 and CVE-2024-8957
  • Vulnerability

CVE-2024-8956 & CVE-2024-8957: Two Actively Exploited Vulnerabilities in PTZ Cameras

Do Son November 3, 2024 0
Read More Read more about CVE-2024-8956 & CVE-2024-8957: Two Actively Exploited Vulnerabilities in PTZ Cameras
EDRsandblast Exploited: How Attackers are Weaponizing Open-Source Code AV/EDR bypass tool
  • Cyber Security
  • Malware

EDRsandblast Exploited: How Attackers are Weaponizing Open-Source Code

Do Son November 3, 2024 0
Read More Read more about EDRsandblast Exploited: How Attackers are Weaponizing Open-Source Code
Ricoh Printers and MFPs Vulnerable to Remote Code Execution – CVE-2024-47939 (CVSS 9.8) Ricoh Printers - CVE-2024-47939
  • Vulnerability

Ricoh Printers and MFPs Vulnerable to Remote Code Execution – CVE-2024-47939 (CVSS 9.8)

Do Son November 3, 2024 0
Read More Read more about Ricoh Printers and MFPs Vulnerable to Remote Code Execution – CVE-2024-47939 (CVSS 9.8)
Threat Actor Deploys LummaC2 and Rhadamanthys Stealers in Attacks on Taiwanese Facebook Accounts Facebook phishing campaign
  • Cyber Security
  • Malware

Threat Actor Deploys LummaC2 and Rhadamanthys Stealers in Attacks on Taiwanese Facebook Accounts

Do Son November 3, 2024 0
Read More Read more about Threat Actor Deploys LummaC2 and Rhadamanthys Stealers in Attacks on Taiwanese Facebook Accounts
121 Fake Web Shops and 1,000 Infected Websites: Inside the Phish ‘n’ Ships Scam Edited Payment Provider
  • Cyber Security

121 Fake Web Shops and 1,000 Infected Websites: Inside the Phish ‘n’ Ships Scam

Do Son November 3, 2024 0
Read More Read more about 121 Fake Web Shops and 1,000 Infected Websites: Inside the Phish ‘n’ Ships Scam
Six Vulnerabilities Uncovered in Ollama: Risks of AI Model Theft and Poisoning Ollama vulnerability
  • Vulnerability

Six Vulnerabilities Uncovered in Ollama: Risks of AI Model Theft and Poisoning

Do Son November 3, 2024 0
Read More Read more about Six Vulnerabilities Uncovered in Ollama: Risks of AI Model Theft and Poisoning
Typosquat Campaign Targets Puppeteer Users: Researcher Warns of Malware in npm Packages Puppeteer malware
  • Malware

Typosquat Campaign Targets Puppeteer Users: Researcher Warns of Malware in npm Packages

Do Son November 3, 2024 0
Read More Read more about Typosquat Campaign Targets Puppeteer Users: Researcher Warns of Malware in npm Packages
❮ Prev Page
Next Page ❯

Search

Translation

CVE ALERTS
📈

EPSS Spike Alerts
Catch risk spikes before they make headlines.

🎯

Custom EPSS/CVSS
Set score thresholds to effectively filter noise.

🛡️

Exploit Intel
Real-world exploit signals beyond the KEV catalog.

🐙

GitHub Issues
Auto-create alert tickets without duplication.

📬

Weekly Digest
Clean summaries, eliminating email spam.

🏷️

Watchlist Groups
Tag vulnerabilities by team (Infra/AppSec/SOC).

🔀

Smart Routing
Route chat channels based on severity levels.

🚨

RBP Tracker
Early warning detection and tracking system.

Subscribe – $7/mo or try free for 14 days →

🚨 Active Exploits in the Wild

  • CVE-2026-86950CVSS 8.8
    An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.7.1 and...
    Admin intel📅 Updated: Sep 29, 2026
  • CVE-2026-88772
    Memory overflow vulnerability leading to remote code execution or denial of service.
    Admin intelCISA KEV📅 Added to KEV: Sep 27, 2026📅 Updated: Sep 27, 2026
  • CVE-2026-88771
    Remote code execution due to improper input validation that can allow an unauthenticated attacker to execute arbitrary commands.
    Admin intelCISA KEV📅 Added to KEV: Sep 27, 2026📅 Updated: Sep 27, 2026
  • CVE-2026-65660CVSS 8.8
    Improper control of generation of code (\'code injection\') in Microsoft Office SharePoint allows an authorized attacker to execute...
    Admin intelCISA KEV📅 Added to KEV: Sep 25, 2026📅 Updated: Sep 25, 2026
  • CVE-2026-5430CVSS 10.0
    The JWT authentication mechanism accepts tokens signed with algorithms other than those explicitly configured or supported. This allows...
    CISA KEV📅 Added to KEV: Sep 24, 2026
  • CVE-2026-71362CVSS 9.1
    Adobe Commerce is affected by an Incorrect Authorization vulnerability that could result in privilege escalation. An attacker could...
    CISA KEV📅 Added to KEV: Sep 24, 2026
  • CVE-2026-48842CVSS 8.1
    Roundcube Webmail 1.6.x before 1.6.16 and 1.7.x before 1.7.1 has Pre-authentication SQL injection in the virtuser_query plugin via...
    Admin intel📅 Updated: Sep 23, 2026
  • CVE-2026-87902
    Unauthenticated path traversal in page-template resolution leading to conditional RCE An unauthenticated attacker can make get_page_template() page-template resolution...
    Admin intelCISA KEV📅 Added to KEV: Sep 25, 2026📅 Updated: Sep 23, 2026
Powered by CVE Watchtower

Critical Vulnerabilities

  • CVE-2026-101354CVSS 9.4
    A security flaw has been discovered in FAST FAC1203R 20200116_2.0.4. The affected element is the function _tWlanTask of...
    📅 Updated: Sep 29, 2026
  • CVE-2026-102361CVSS 9.3
    mall4j through 4.0 contains a missing authentication vulnerability in the PUT /user/updatePwd endpoint that allows unauthenticated attackers to...
    📅 Updated: Sep 28, 2026
  • CVE-2026-101264CVSS 9.4
    A vulnerability was determined in Ziroom ZHOME A0101 1.0.1.0. Impacted is an unknown function of the file /api/ZRnetwork/set_passwd....
    📅 Updated: Sep 28, 2026
  • CVE-2026-13214CVSS 9.8
    The OCPP 1.6 client in subsys/net/lib/ocpp/ocpp_j.c contains a stack buffer overflow in parse_getconfig_msg(). When handling a GetConfiguration request...
    📅 Updated: Sep 28, 2026
  • CVE-2026-49845CVSS 9.8
    SQL injection in Hive Metastore direct SQL partition-name resolution in Apache Hive before 4.2.1 on all platforms allows...
    📅 Updated: Sep 28, 2026
  • CVE-2026-55976CVSS 9.1
    Server-Side Request Forgery (SSRF) in Avro SerDe schema resolution in Apache Hive before 4.2.1 allows an authenticated remote...
    📅 Updated: Sep 28, 2026
  • CVE-2026-90048CVSS 9.8
    In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: fix slab-out-of-bounds write in ni_create_attr_list() ni_create_attr_list() allocates...
    📅 Updated: Sep 28, 2026
  • CVE-2026-90049CVSS 9.3
    In the Linux kernel, the following vulnerability has been resolved: net: skbuff: don't skb_tx_error() the source skb in...
    📅 Updated: Sep 28, 2026
Powered by CVE Watchtower

Daily CyberSecurity

  • About SecurityOnline.info
  • Advertise with us
  • Announcement
  • Contact
  • Contributor Register
  • Login
  • Disclaimer
  • DCMA
  • Privacy Policy
  • About SecurityOnline.info
  • Advertise on SecurityOnline.info
  • Contact Us

When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

  • CVE Watchtower
  • CVE Statistics by Vendor 2026
  • Q2 2026 Report
  • Top Exploited CVEs
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube
© 2017 - 2026 Daily CyberSecurity. All Rights Reserved.