Skip to content
June 15, 2026
  • Linkedin
  • Twitter
  • Facebook
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Watchtower
  • Cyber Criminals
  • Data Leak
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Vulnerability Report
Light/Dark Button
Palo Alto Networks Patches Trio of Security Flaws: From Agent Disabling to System Privileges PAN-OS IKEv2 Buffer Overflow CVE-2026-0263 Palo Alto Cortex XDR Privilege Escalation Palo Alto Networks Vulnerability CVE-2026-0229 PAN-OS Vulnerability CVE-2026-0227 CVE-2024-5914 - Palo Alto Networks - CVE-2025-0108 & CVE-2025-0110
  • Vulnerability Report

Palo Alto Networks Patches Trio of Security Flaws: From Agent Disabling to System Privileges

Do Son April 9, 2026 0
Palo Alto Networks has released critical updates to address three distinct vulnerabilities across its security ecosystem. The...
Read More Read more about Palo Alto Networks Patches Trio of Security Flaws: From Agent Disabling to System Privileges
Microsoft Ban Leaves VeraCrypt Unable to Sign Critical Windows Drivers VeraCrypt Microsoft account ban
  • Technology

Microsoft Ban Leaves VeraCrypt Unable to Sign Critical Windows Drivers

Do Son April 9, 2026 0
VeraCrypt, a preeminent figure in the realm of open-source disk encryption, has recently encountered a formidable crisis:...
Read More Read more about Microsoft Ban Leaves VeraCrypt Unable to Sign Critical Windows Drivers
Security Alert: GitLab Issues Patch for High-Severity Vulnerabilities Across CE and EE GitLab Security Code Integrity GitLab sale GitLab, Security GitLab Stored XSS, Kubernetes Proxy Flaw
  • Vulnerability Report

Security Alert: GitLab Issues Patch for High-Severity Vulnerabilities Across CE and EE

Do Son April 9, 2026 0
GitLab has released critical security updates for Community Edition (CE) and Enterprise Edition (EE). Versions 18.10.3, 18.9.5,...
Read More Read more about Security Alert: GitLab Issues Patch for High-Severity Vulnerabilities Across CE and EE
SonicWall Issues Critical Patch for SMA 1000 Series to Stop SQL Injection and MFA Bypasses SonicWall SMA 1000 MFA Bypass SonicWall SSLVPN Flaw CVE-2025-40601 SonicOS vulnerability - CVE-2024-53704
  • Vulnerability Report

SonicWall Issues Critical Patch for SMA 1000 Series to Stop SQL Injection and MFA Bypasses

Do Son April 9, 2026 0
SonicWall has released a series of patches for its SMA 1000 series appliances to address four distinct...
Read More Read more about SonicWall Issues Critical Patch for SMA 1000 Series to Stop SQL Injection and MFA Bypasses
New Phishing Campaign Abuses GitHub to Target South Korea GitHub C2 LNK Malware
  • Cybercriminals

New Phishing Campaign Abuses GitHub to Target South Korea

Do Son April 9, 2026 0
A sophisticated new cyberespionage campaign is leveraging the trust of major public platforms to slip past corporate...
Read More Read more about New Phishing Campaign Abuses GitHub to Target South Korea
The $86,000 Patch: Chrome 147 Crushes “Critical” WebML Memory Flaws Chrome 147 Security WebML Vulnerabilities
  • Vulnerability Report

The $86,000 Patch: Chrome 147 Crushes “Critical” WebML Memory Flaws

Do Son April 9, 2026 0
The Google Chrome team has officially promoted Chrome 147 to the stable channel for Windows, Mac, and...
Read More Read more about The $86,000 Patch: Chrome 147 Crushes “Critical” WebML Memory Flaws
CISA Warning: Critical Ivanti EPMM Code Injection Vulnerability Under Active Attack Ivanti EPMM Vulnerability CVE-2026-1340 CISA KEV Catalog CVE-2026-21385 CISA KEV Update CVE-2008-0015 CISA KEV, Array Networks Command Injection CVE-2025-0111 & CVE-2025-23209 CISA, Known Exploited Vulnerabilities
  • Vulnerability Report

CISA Warning: Critical Ivanti EPMM Code Injection Vulnerability Under Active Attack

Do Son April 9, 2026 0
The Cybersecurity and Infrastructure Security Agency (CISA) has officially added a critical code injection vulnerability in Ivanti...
Read More Read more about CISA Warning: Critical Ivanti EPMM Code Injection Vulnerability Under Active Attack
Storm: 2026’s Newest Infostealer Bypasses Chrome to Hijack Your MFA Sessions Storm Infostealer Session Cookie Theft
  • Malware

Storm: 2026’s Newest Infostealer Bypasses Chrome to Hijack Your MFA Sessions

Do Son April 9, 2026 0
A new and highly efficient threat has emerged on underground cybercrime networks, signaling a significant shift in...
Read More Read more about Storm: 2026’s Newest Infostealer Bypasses Chrome to Hijack Your MFA Sessions
High-Severity Patches: NVIDIA Secures DALI and Triton Inference Server NVIDIA AI Security Deserialization Exploit
  • Vulnerability Report

High-Severity Patches: NVIDIA Secures DALI and Triton Inference Server

Do Son April 8, 2026 0
NVIDIA has released two significant security updates addressing high-severity vulnerabilities across its DALI and Triton Inference Server...
Read More Read more about High-Severity Patches: NVIDIA Secures DALI and Triton Inference Server
Firecracker Security Alert: Virtio-PCI Vulnerability Could Lead to Out-of-Bounds Memory Access Firecracker Vulnerability Virtio-PCI OOB Write
  • Vulnerability Report

Firecracker Security Alert: Virtio-PCI Vulnerability Could Lead to Out-of-Bounds Memory Access

Do Son April 8, 2026 0
AWS has issued a high-severity security advisory for Firecracker, the open-source virtualization technology purpose-built for high-scale, multi-tenant...
Read More Read more about Firecracker Security Alert: Virtio-PCI Vulnerability Could Lead to Out-of-Bounds Memory Access
CVE-2026-34208 (CVSS 10): Critical Sandbox Escape Uncovered in SandboxJS SandboxJS Escape Host Object Poisoning SandboxJS Vulnerability CVE-2026-26954
  • Vulnerability Report

CVE-2026-34208 (CVSS 10): Critical Sandbox Escape Uncovered in SandboxJS

Do Son April 8, 2026 0
In the world of secure software development, sandboxing is the ultimate safety netβ€”a controlled environment designed to...
Read More Read more about CVE-2026-34208 (CVSS 10): Critical Sandbox Escape Uncovered in SandboxJS
Apache ActiveMQ Patches RCE and Path Traversal Flaws ActiveMQ RCE Jolokia Exploit ActiveMQ CVE-2025-27533 ActiveMQ Deserialization RCE, CVE-2025-54539
  • Vulnerability Report

Apache ActiveMQ Patches RCE and Path Traversal Flaws

Do Son April 8, 2026 0
Apache ActiveMQ, the widely used open-source message broker, has released critical security updates to address two vulnerabilities...
Read More Read more about Apache ActiveMQ Patches RCE and Path Traversal Flaws
Critical Zero-Day: Unauthenticated RCE Exploited in Weaver E-cology 10.0 Weaver E-cology RCE CVE-2026-22679 CVE-2026-20127 Cisco SD-WAN Exploitation AI-Driven Cyberattack ARXON Malware React Server Components Vulnerability CVE-2025-55182 FortiWeb Auth Bypass, Unauthenticated Admin Takeover RayInitiator Bootkit, LINE VIPER CVE-2025-59689 Department of the Treasury cybersecurity - CVE-2025-0108 PoC CVE-2025-31103 Dior Data Breach SK Telecom data breach, long-term intrusion
  • Vulnerability Report

Critical Zero-Day: Unauthenticated RCE Exploited in Weaver E-cology 10.0

Do Son April 8, 2026 0
A critical security vulnerability, tracked as CVE-2026-22679, has been identified in Weaver (Fanwei) E-cology 10.0, one of...
Read More Read more about Critical Zero-Day: Unauthenticated RCE Exploited in Weaver E-cology 10.0
Exploited in the Wild: Critical 9.3 CVSS Flaw Turns Tianxin Systems into Hacker Gateways PAN-OS Root RCE CL-STA-1132 Exploitation Tianxin RCE CVE-2021-4473 React Native Supply Chain Attack AstrOOnauta Malware Gladinet Zero-Day, LFI RCE Chain WordPress Theme, Account Takeover CVE-2024-50623 - European Space Agency cyberattack
  • Vulnerability Report

Exploited in the Wild: Critical 9.3 CVSS Flaw Turns Tianxin Systems into Hacker Gateways

Do Son April 8, 2026 0
A critical security vulnerability, tracked as CVE-2021-4473, has been identified in the Tianxin Internet Behavior Management System....
Read More Read more about Exploited in the Wild: Critical 9.3 CVSS Flaw Turns Tianxin Systems into Hacker Gateways
Team Cymru Mapped the Yurei Ransomware Toolkit Before It Could Strike Yurei Ransomware Open-Source Malware
  • Malware

Team Cymru Mapped the Yurei Ransomware Toolkit Before It Could Strike

Do Son April 8, 2026 0
A new investigation by Team Cymru has detailed how the proactive collection of internet telemetry allowed researchers...
Read More Read more about Team Cymru Mapped the Yurei Ransomware Toolkit Before It Could Strike
Zero-Day Alert: Sophisticated PDF Exploit Targets Adobe Reader for Massive Data Theft Adobe Reader Zero-Day PDF Exploit
  • Vulnerability Report

Zero-Day Alert: Sophisticated PDF Exploit Targets Adobe Reader for Massive Data Theft

Do Son April 8, 2026 0
A highly-sophisticated zero-day exploit has been discovered targeting Adobe Reader users, allowing attackers to steal local files...
Read More Read more about Zero-Day Alert: Sophisticated PDF Exploit Targets Adobe Reader for Massive Data Theft
Phorpiex’s New P2P Upgrade Makes This 15-Year-Old Botnet Unstoppable Phorpiex Botnet P2P Malware Resilience
  • Malware

Phorpiex’s New P2P Upgrade Makes This 15-Year-Old Botnet Unstoppable

Do Son April 8, 2026 0
In the fast-moving world of cybercrime, few names carry as much historical weight as Phorpiex. Also known...
Read More Read more about Phorpiex’s New P2P Upgrade Makes This 15-Year-Old Botnet Unstoppable
Russian Military Hackers Hijack Thousands of Home Routers for Global Espionage Forest Blizzard DNS Hijacking
  • Cybercriminals

Russian Military Hackers Hijack Thousands of Home Routers for Global Espionage

Do Son April 8, 2026 0
In a sophisticated campaign uncovered by Microsoft Threat Intelligence, a notorious Russian military-linked threat actor known as...
Read More Read more about Russian Military Hackers Hijack Thousands of Home Routers for Global Espionage
North Korean State Actors Linked to Massive $285 Million Drift Protocol Heist Drift Protocol Solana DeFi Hack
  • Cybercriminals

North Korean State Actors Linked to Massive $285 Million Drift Protocol Heist

Do Son April 8, 2026 0
On April 1, 2026, the decentralized finance (DeFi) world was rocked as attackers drained approximately USD 285...
Read More Read more about North Korean State Actors Linked to Massive $285 Million Drift Protocol Heist
Critical Security Update: IBM Patches Multiple Vulnerabilities in Verify Identity and Access IBM Verify Root Escalation
  • Vulnerability Report

Critical Security Update: IBM Patches Multiple Vulnerabilities in Verify Identity and Access

Do Son April 8, 2026 0
IBM has released a comprehensive bulletin addressing a series of vulnerabilities within its Verify Identity Access and...
Read More Read more about Critical Security Update: IBM Patches Multiple Vulnerabilities in Verify Identity and Access
❮ Prev Page
Next Page ❯

Search

Translation

CVE WATCHTOWER
🚨

Receive alerts for vulnerabilities being exploited in the wild.

⚑

Get notified instantly when a Proof of Concept (PoC) exploit is published.

πŸ”

Access critical info on vulnerabilities even when marked as "RESERVED".

🧠

Insights powered by decades of expertise and global intelligence sources.

🎯

Customize alerts with up to 10 keywords for your specific tech stack.

πŸ“Š

Export the raw CVE database for SIEM integration and reporting.

Upgrade Package

πŸ”΄ Live Critical Threats

  • CVE-2026-12183CVSS 9.8
    Nefteprodukttekhnika BUK TS-G Gas Station Automation System 2.9.1 through 2.10.2 on Linux...
  • CVE-2026-53609CVSS 9.1
    ApostropheCMS is an open-source Node.js content management system. In versions up to...
  • CVE-2026-53519CVSS 9.1
    Nezha Monitoring is a self-hostable, lightweight, servers and websites monitoring and O&M...
  • CVE-2026-46716CVSS 9.9
    Nezha Monitoring is a self-hostable, lightweight, servers and websites monitoring and O&M...
  • CVE-2026-44990CVSS 9.3
    ApostropheCMS is an open-source Node.js content management system, and sanitize-html provides a...
  • CVE-2026-28742CVSS 9.8
    Naxclow devices use a uniform request-signing scheme based on a hard-coded, platform-wide...
  • CVE-2026-48558CVSS 10.0
    SimpleHelp versions 5.5.15 and prior and 6.0 pre-release versions contain an authentication...
  • CVE-2026-50091CVSS 9.1
    Aqara Home Android (com.lumiunited.aqarahome) 6.0.0 (and white-label clients embedding the same liblumidevsdk.so)...
  • CVE-2026-50090CVSS 9.3
    The Aqara Cloud OAuth Authorization Endpoint (open-cn.aqara.com/oauth/authorize) is vulnerable to a redirect...
  • CVE-2026-50086CVSS 10.0
    The Aqara IAM/SSO gateway (gw-builder.aqara.com) exposes bidirectional AES round-trups against the platform's...
Powered by CVE WATCHTOWER

Recent Zero-Day Vulnerabilities

  • GreatXML BitLocker Bypass: Public PoC Exploit Disclosed
  • Check Point VPN Vulnerability Exploited in the Wild with Ransomware Links
  • Weekly Threat Intelligence: June 1 to June 7, 2026
  • Cisco SD-WAN Vulnerability Exploited in the Wild with Root RCE Risks
  • Android Zero-Day Flaw Exploited in the Wild: June 2026 Patches Released
  • Exploited in the Wild: Critical OWA Spoofing Flaw (CVE-2026-42897) Hits On-Premises Exchange Servers
Our Websites
  • Penetration Testing Tools
  • The Daily Information Technology
  • Daily CyberSecurity

    • About SecurityOnline.info
    • Advertise with us
    • Announcement
    • Contact
    • Contributor Register
    • Login
    • Disclaimer
    • Privacy Policy
    • About SecurityOnline.info
    • Advertise on SecurityOnline.info
    • Contact Us

    When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

    • Disclaimer
    • Privacy Policy
    • DMCA NOTICE
    • Linkedin
    • Twitter
    • Facebook
    • Youtube
    Β© 2017 - 2026 Daily CyberSecurity. All Rights Reserved.