Skip to content
October 10, 2026
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Data
    • CVE Watchtower
    • Top Exploited CVEs
    • CVE Stats by Vendor
    • Q2 2026 Report
    • CVE Alerts
    • CVE Alert Settings
    • Pricing
  • Cyber Criminals
  • Data Leak
  • Free Tools
    • CVSS 3.1 Calculator
    • Certificate Viewer
    • DNS Lookup
    • Encoder & Hash Generator
    • IP / Subnet Calculator
    • Whois Lookup
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Weekly Recap
Light/Dark Button
PoC released for Microsoft WordPad CVE-2023-36563 flaw exploited in attacks CVE-2023-36563
  • Vulnerability

PoC released for Microsoft WordPad CVE-2023-36563 flaw exploited in attacks

Do Son October 30, 2023 0
Read More Read more about PoC released for Microsoft WordPad CVE-2023-36563 flaw exploited in attacks
Lockbit ransomware group listed Boeing on their victims list Lockbit ransomware Boeing
  • Malware

Lockbit ransomware group listed Boeing on their victims list

Do Son October 30, 2023 0
Read More Read more about Lockbit ransomware group listed Boeing on their victims list
Israel uses Pegasus spyware to track hostages in Gaza Pegasus spyware
  • Cyber Security
  • Malware

Israel uses Pegasus spyware to track hostages in Gaza

Do Son October 30, 2023 0
Read More Read more about Israel uses Pegasus spyware to track hostages in Gaza
Why Does Ethical Design Matter? design
  • Technique

Why Does Ethical Design Matter?

Do Son October 30, 2023 0
Read More Read more about Why Does Ethical Design Matter?
CVE-2023-46748: F5 BIG-IP SQL injection vulnerability CVE-2023-46748
  • Vulnerability

CVE-2023-46748: F5 BIG-IP SQL injection vulnerability

Do Son October 29, 2023 0
Read More Read more about CVE-2023-46748: F5 BIG-IP SQL injection vulnerability
Kaspersky Reveals Lazarus’ Sophisticated Techniques in Targeting Software Vendors Lazarus Sophisticated
  • Cyber Security
  • Malware

Kaspersky Reveals Lazarus’ Sophisticated Techniques in Targeting Software Vendors

Do Son October 27, 2023 0
Read More Read more about Kaspersky Reveals Lazarus’ Sophisticated Techniques in Targeting Software Vendors
ANSSI Alerts: APT28’s Stealthy Strikes on France APT28 France
  • Cyber Security
  • Vulnerability

ANSSI Alerts: APT28’s Stealthy Strikes on France

Do Son October 27, 2023 0
Read More Read more about ANSSI Alerts: APT28’s Stealthy Strikes on France
CVE-2023-46604: Apache ActiveMQ Remote Code Execution Vulnerability Apache ActiveMQ Vulnerability
  • Vulnerability

CVE-2023-46604: Apache ActiveMQ Remote Code Execution Vulnerability

Do Son October 27, 2023 0
Read More Read more about CVE-2023-46604: Apache ActiveMQ Remote Code Execution Vulnerability
CVE-2023-34057 & CVE-2023-34058: Two High-Severity VMware Tools Vulnerabilities CVE-2023-34057
  • Vulnerability

CVE-2023-34057 & CVE-2023-34058: Two High-Severity VMware Tools Vulnerabilities

Do Son October 26, 2023 0
Read More Read more about CVE-2023-34057 & CVE-2023-34058: Two High-Severity VMware Tools Vulnerabilities
30,000 Sites at Risk: Critical RCE Vulnerability Found in News & Blog Designer Pack CVE-2023-5815
  • Vulnerability

30,000 Sites at Risk: Critical RCE Vulnerability Found in News & Blog Designer Pack

Do Son October 26, 2023 0
Read More Read more about 30,000 Sites at Risk: Critical RCE Vulnerability Found in News & Blog Designer Pack
Seiko Says Black Cat Ransomware Exposes 60,000 Data Items Seiko Exposes Data
  • Data Leak
  • Malware

Seiko Says Black Cat Ransomware Exposes 60,000 Data Items

Do Son October 26, 2023 0
Read More Read more about Seiko Says Black Cat Ransomware Exposes 60,000 Data Items
Cloudflare DDoS threat report for 2023 Q3: Countering the 100M RPS HTTP/2 DDoS Onslaught HTTP/2 DDoS
  • Cyber Security
  • Vulnerability

Cloudflare DDoS threat report for 2023 Q3: Countering the 100M RPS HTTP/2 DDoS Onslaught

Do Son October 26, 2023 0
Read More Read more about Cloudflare DDoS threat report for 2023 Q3: Countering the 100M RPS HTTP/2 DDoS Onslaught
IMAPLoader: The New Tool in Tortoiseshell’s Cyber Arsenal Lotus Wiper Digital Sabotage G_Wagon Malware NPM Supply Chain Attack IMAPLoader malware ResolverRAT Malware Evasion
  • Cyber Security
  • Malware

IMAPLoader: The New Tool in Tortoiseshell’s Cyber Arsenal

Do Son October 26, 2023 0
Read More Read more about IMAPLoader: The New Tool in Tortoiseshell’s Cyber Arsenal
StripedFly: The Deceptive Malware Infecting Windows and Linux StripedFly Malware
  • Malware

StripedFly: The Deceptive Malware Infecting Windows and Linux

Do Son October 26, 2023 0
Read More Read more about StripedFly: The Deceptive Malware Infecting Windows and Linux
NCC Group Reports: September’s Alarming Ransomware Spike AvosLocker ransomware
  • Cyber Security
  • Malware

NCC Group Reports: September’s Alarming Ransomware Spike

Do Son October 26, 2023 0
Read More Read more about NCC Group Reports: September’s Alarming Ransomware Spike
How Attackers Exploit PAM’s Modular Design on Linux Exploit Linux PAM
  • Malware

How Attackers Exploit PAM’s Modular Design on Linux

Do Son October 26, 2023 0
Read More Read more about How Attackers Exploit PAM’s Modular Design on Linux
CVE-2023-46747: F5 BIG-IP Unauthenticated RCE Vulnerability CVE-2023-46747
  • Vulnerability

CVE-2023-46747: F5 BIG-IP Unauthenticated RCE Vulnerability

Do Son October 26, 2023 0
Read More Read more about CVE-2023-46747: F5 BIG-IP Unauthenticated RCE Vulnerability
iLeakage: Exposing Safari’s Persistent Spectre Attack iLeakage attack
  • Vulnerability

iLeakage: Exposing Safari’s Persistent Spectre Attack

Do Son October 26, 2023 0
Read More Read more about iLeakage: Exposing Safari’s Persistent Spectre Attack
Apple Addresses Kernel Zero-Day Vulnerability in Older iPhones and iPads Apple Zero-Day vulnerability
  • Vulnerability

Apple Addresses Kernel Zero-Day Vulnerability in Older iPhones and iPads

Do Son October 26, 2023 0
Read More Read more about Apple Addresses Kernel Zero-Day Vulnerability in Older iPhones and iPads
Kaspersky Reveals: GoPIX Targets Brazil’s Rising PIX System GoPIX malware
  • Malware

Kaspersky Reveals: GoPIX Targets Brazil’s Rising PIX System

Do Son October 26, 2023 0
Read More Read more about Kaspersky Reveals: GoPIX Targets Brazil’s Rising PIX System
Winter Vivern Targets Roundcube’s Zero-Day Vulnerability CVE-2023-5631
  • Cyber Security
  • Vulnerability

Winter Vivern Targets Roundcube’s Zero-Day Vulnerability

Do Son October 26, 2023 0
Read More Read more about Winter Vivern Targets Roundcube’s Zero-Day Vulnerability
Samsung Galaxy S23: Breached Twice on Pwn2Own’s First Day! Samsung Galaxy S23 Pwn2Own
  • Vulnerability

Samsung Galaxy S23: Breached Twice on Pwn2Own’s First Day!

Do Son October 25, 2023 0
Read More Read more about Samsung Galaxy S23: Breached Twice on Pwn2Own’s First Day!
❮ Prev Page
Next Page ❯

Search

Translation

CVE ALERTS
📈

EPSS Spike Alerts
Catch risk spikes before they make headlines.

🎯

Custom EPSS/CVSS
Set score thresholds to effectively filter noise.

🛡️

Exploit Intel
Real-world exploit signals beyond the KEV catalog.

🐙

GitHub Issues
Auto-create alert tickets without duplication.

📬

Weekly Digest
Clean summaries, eliminating email spam.

🏷️

Watchlist Groups
Tag vulnerabilities by team (Infra/AppSec/SOC).

🔀

Smart Routing
Route chat channels based on severity levels.

🚨

RBP Tracker
Early warning detection and tracking system.

Subscribe – $7/mo or try free for 14 days →

🚨 Active Exploits in the Wild

  • CVE-2026-102255CVSS 10.0
    A Pre-authentication SSRF vulnerability exists in the SMA1000 Appliance Work Place interface due to an unintended alternate access...
    Admin intel📅 Updated: Oct 9, 2026
  • CVE-2026-105133CVSS 6.9
    A vulnerability was detected in Ahsay AhsayCBS up to 10.3.2. This affects the function checkSysPwd of the file...
    Admin intel📅 Updated: Oct 9, 2026
  • CVE-2023-22894CVSS 4.9
    Strapi through 4.5.5 allows attackers (with access to the admin panel) to discover sensitive user details by exploiting...
    CISA KEV📅 Added to KEV: Oct 8, 2026
  • CVE-2016-3081CVSS 8.1
    Apache Struts 2.3.19 to 2.3.20.2, 2.3.21 to 2.3.24.1, and 2.3.25 to 2.3.28, when Dynamic Method Invocation is enabled,...
    CISA KEV📅 Added to KEV: Oct 8, 2026
  • CVE-2015-3306CVSS 10.0
    The mod_copy module in ProFTPD 1.3.5 allows remote attackers to read and write to arbitrary files via the...
    CISA KEV📅 Added to KEV: Oct 8, 2026
  • CVE-2015-5477CVSS 7.5
    named in ISC BIND 9.x before 9.9.7-P2 and 9.10.x before 9.10.2-P3 allows remote attackers to cause a denial...
    CISA KEV📅 Added to KEV: Oct 8, 2026
  • CVE-2021-3199CVSS 9.8
    Directory traversal with remote code execution can occur in /upload in ONLYOFFICE Document Server before 5.6.3, when JWT...
    CISA KEV📅 Added to KEV: Oct 8, 2026
  • CVE-2026-94504CVSS 7.2
    Ninja Forms 3.15.3 stores an anonymous non-RTE textarea value and renders it without safe HTML encoding in the...
    Admin intel📅 Updated: Oct 7, 2026
Powered by CVE Watchtower

Critical Vulnerabilities

  • CVE-2026-93945CVSS 9.8
    Deserialization of Untrusted Data vulnerability in Axiomthemes Balance balance allows Object Injection.This issue affects Balance: from n/a through...
    📅 Updated: Oct 10, 2026
  • CVE-2026-93936CVSS 9.8
    Deserialization of Untrusted Data vulnerability in ThemeREX Group IPharm ipharm allows Object Injection.This issue affects IPharm: from n/a...
    📅 Updated: Oct 10, 2026
  • CVE-2026-93937CVSS 9.8
    Deserialization of Untrusted Data vulnerability in ThemeREX Group Hygia hygia allows Object Injection.This issue affects Hygia: from n/a...
    📅 Updated: Oct 10, 2026
  • CVE-2026-93938CVSS 9.8
    Deserialization of Untrusted Data vulnerability in ThemeREX Group Hogwords hogwords allows Object Injection.This issue affects Hogwords: from n/a...
    📅 Updated: Oct 10, 2026
  • CVE-2026-93940CVSS 9.8
    Deserialization of Untrusted Data vulnerability in ThemeREX Group Greeny greeny allows Object Injection.This issue affects Greeny: from n/a...
    📅 Updated: Oct 10, 2026
  • CVE-2026-93941CVSS 9.8
    Deserialization of Untrusted Data vulnerability in ThemeREX Group Edema edema allows Object Injection.This issue affects Edema: from n/a...
    📅 Updated: Oct 10, 2026
  • CVE-2026-93942CVSS 9.8
    Deserialization of Untrusted Data vulnerability in ThemeREX Group Dwell dwell allows Object Injection.This issue affects Dwell: from n/a...
    📅 Updated: Oct 10, 2026
  • CVE-2026-93943CVSS 9.8
    Deserialization of Untrusted Data vulnerability in ThemeREX Group Convex convex allows Object Injection.This issue affects Convex: from n/a...
    📅 Updated: Oct 10, 2026
Powered by CVE Watchtower

Daily CyberSecurity

  • About SecurityOnline.info
  • Advertise with us
  • Announcement
  • Contact
  • Contributor Register
  • Login
  • Disclaimer
  • DCMA
  • Privacy Policy
  • About SecurityOnline.info
  • Advertise on SecurityOnline.info
  • Contact Us

When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

  • CVE Watchtower
  • CVE Statistics by Vendor 2026
  • Q2 2026 Report
  • Top Exploited CVEs
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube
© 2017 - 2026 Daily CyberSecurity. All Rights Reserved.