Skip to content
June 16, 2026
  • Linkedin
  • Twitter
  • Facebook
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Watchtower
  • Cyber Criminals
  • Data Leak
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Vulnerability Report
Light/Dark Button
Warlock Ransomware Evolves: New Tools and Kernel-Level Evasion Threaten Global Sectors EV2GO Charging Platform ICSA-26-057-04 Lazarus Group, Crypto Hacks LazyStealer
  • Malware

Warlock Ransomware Evolves: New Tools and Kernel-Level Evasion Threaten Global Sectors

Do Son March 19, 2026 0
The Warlock ransomware group (also tracked as Water Manaul) has significantly sharpened its claws. A recent deep-dive...
Read More Read more about Warlock Ransomware Evolves: New Tools and Kernel-Level Evasion Threaten Global Sectors
Total Takeover: Critical 10.0 CVSS Path Traversal Flaw Hits Ubiquiti UniFi Networks UniFi OS vulnerabilities, Ubiquiti security flaws, CVE-2026-47367, CVE-2026-47369, CVE-2026-47370 Ubiquiti UniFi OS Vulnerabilities UniFi OS Firmware Update 2026 UniFi Play Vulnerability Critical RCE Patch Ubiquiti UniFi Vulnerability CVE-2026-22557
  • Vulnerability Report

Total Takeover: Critical 10.0 CVSS Path Traversal Flaw Hits Ubiquiti UniFi Networks

Do Son March 19, 2026 0
Ubiquiti has issued an urgent security advisory following the discovery of two significant vulnerabilities within its UniFi...
Read More Read more about Total Takeover: Critical 10.0 CVSS Path Traversal Flaw Hits Ubiquiti UniFi Networks
Ghost in the Browser: Advanced ‘GoPix’ Trojan Unveils Unprecedented MitM Attacks GoPix Trojan Brazilian Banking Malware
  • Malware

Ghost in the Browser: Advanced ‘GoPix’ Trojan Unveils Unprecedented MitM Attacks

Do Son March 19, 2026 0
A sophisticated new threat has emerged from the Brazilian cybercrime underground, signaling a dangerous shift toward APT-level...
Read More Read more about Ghost in the Browser: Advanced ‘GoPix’ Trojan Unveils Unprecedented MitM Attacks
The New Face of Phishing: Hackers Weaponize Browser Prompts to Steal Biometric Data Biometric Phishing Browser Permission Hijacking
  • Cybercriminals

The New Face of Phishing: Hackers Weaponize Browser Prompts to Steal Biometric Data

Do Son March 19, 2026 0
A highly active social engineering campaign is rewriting the phishing playbook by shifting its focus from simple...
Read More Read more about The New Face of Phishing: Hackers Weaponize Browser Prompts to Steal Biometric Data
Exploited in the Wild: CISA Warns of Active Attacks on Microsoft SharePoint and Zimbra CISA KEV Catalog SharePoint RCE CISA, Known Exploited Vulnerabilities CVE-2023-33010
  • Vulnerability Report

Exploited in the Wild: CISA Warns of Active Attacks on Microsoft SharePoint and Zimbra

Do Son March 19, 2026 0
The Cybersecurity and Infrastructure Security Agency (CISA) has officially expanded its Known Exploited Vulnerabilities (KEV) Catalog, adding...
Read More Read more about Exploited in the Wild: CISA Warns of Active Attacks on Microsoft SharePoint and Zimbra
Exploited in the Wild: Interlock Ransomware Weaponizes Critical 10.0 CVSS Cisco Zero-Day Interlock Ransomware Cisco Zero-Day
  • Malware

Exploited in the Wild: Interlock Ransomware Weaponizes Critical 10.0 CVSS Cisco Zero-Day

Do Son March 19, 2026 0
Amazon threat intelligence has uncovered an active Interlock ransomware campaign that exploited a critical vulnerability in Cisco...
Read More Read more about Exploited in the Wild: Interlock Ransomware Weaponizes Critical 10.0 CVSS Cisco Zero-Day
The Trojan Contact: Konni APT Hijacks KakaoTalk to Turn Victims into Attackers Konni APT KakaoTalk Malware
  • Cybercriminals

The Trojan Contact: Konni APT Hijacks KakaoTalk to Turn Victims into Attackers

Do Son March 19, 2026 0
The Konni APT group has launched a sophisticated multi-stage campaign that turns victims into unwilling accomplices. According...
Read More Read more about The Trojan Contact: Konni APT Hijacks KakaoTalk to Turn Victims into Attackers
The Polymarket Trojan: Verified GitHub Org Hijacked to Distribute Crypto-Stealing Bots GitHub Supply Chain Attack Polymarket Malware
  • Malware

The Polymarket Trojan: Verified GitHub Org Hijacked to Distribute Crypto-Stealing Bots

Do Son March 19, 2026 0
In a sophisticated supply chain attack discovered by the StepSecurity threat intelligence team, a legitimate Japanese DeFi...
Read More Read more about The Polymarket Trojan: Verified GitHub Org Hijacked to Distribute Crypto-Stealing Bots
PoC Exploit Publicly Disclosed: ‘RegPwn’ Flaw Grants SYSTEM Access via Windows Accessibility RegPwn Vulnerability CVE-2026-24291
  • Vulnerability Report

PoC Exploit Publicly Disclosed: ‘RegPwn’ Flaw Grants SYSTEM Access via Windows Accessibility

Do Son March 18, 2026 0
A newly discovered vulnerability, dubbed RegPwn, has pulled back the curtain on a significant security gap in...
Read More Read more about PoC Exploit Publicly Disclosed: ‘RegPwn’ Flaw Grants SYSTEM Access via Windows Accessibility
Critical 9.8 CVSS Schneider Electric Flaw Exposes SCADA and Data Center Systems CVE-2024-10575 CVE-2025-1960 Schneider Electric Vulnerability CVE-2026-0667
  • Vulnerability Report

Critical 9.8 CVSS Schneider Electric Flaw Exposes SCADA and Data Center Systems

Do Son March 18, 2026 0
Schneider Electric has exposed the curtain on two significant vulnerabilities affecting critical infrastructure tools. From remote terminal...
Read More Read more about Critical 9.8 CVSS Schneider Electric Flaw Exposes SCADA and Data Center Systems
Leaving the Doors Unlocked: Critical 9.0 CVSS ScreenConnect Flaw Exposes Machine Keys ScreenConnect Vulnerability CVE-2026-3564
  • Vulnerability Report

Leaving the Doors Unlocked: Critical 9.0 CVSS ScreenConnect Flaw Exposes Machine Keys

Do Son March 18, 2026 0
ConnectWise recently issued a critical security update for its ScreenConnect platform, addressing a significant vulnerability that could...
Read More Read more about Leaving the Doors Unlocked: Critical 9.0 CVSS ScreenConnect Flaw Exposes Machine Keys
5 Best RapidFort Alternatives & Competitors Fractile AI inference chip AI Market Trends 2025, Similarweb AI Report
  • Technique

5 Best RapidFort Alternatives & Competitors

Do Son March 18, 2026 0
Containerized applications power a large portion of modern cloud infrastructure. Development teams rely on container images to...
Read More Read more about 5 Best RapidFort Alternatives & Competitors
The CAPTCHA Trap: How a Global ‘ClickFix’ Campaign Weaponizes WordPress to Drain Digital Wallets ClickFix Campaign WordPress Malware
  • Malware

The CAPTCHA Trap: How a Global ‘ClickFix’ Campaign Weaponizes WordPress to Drain Digital Wallets

Do Son March 18, 2026 0
In a sophisticated new campaign active since late 2025, a mysterious threat actor has been turning the...
Read More Read more about The CAPTCHA Trap: How a Global ‘ClickFix’ Campaign Weaponizes WordPress to Drain Digital Wallets
The Resume Trap: How ‘BlackSanta’ Malware Uses Fake CVs to Blind EDRs and Hijack HR Systems Kali365 phishing platform EmEditor Supply Chain Attack, WALSHAM INVESTMENTS LIMITED EggStreme, fileless malware North Korea Cybercrime, Remote IT Job Fraud RedDelta APT
  • Malware

The Resume Trap: How ‘BlackSanta’ Malware Uses Fake CVs to Blind EDRs and Hijack HR Systems

Do Son March 18, 2026 0
Aryaka Threat Labs has unmasked a sophisticated malware operation dubbed BlackSanta. This Russian-speaking threat actor has spent...
Read More Read more about The Resume Trap: How ‘BlackSanta’ Malware Uses Fake CVs to Blind EDRs and Hijack HR Systems
Critical Craft CMS Flaw Grants Instant Admin Access Craft CMS Vulnerability CVE-2026-32267 CVE-2023-41892 Craft CMS CVE-2025-32432
  • Vulnerability

Critical Craft CMS Flaw Grants Instant Admin Access

Do Son March 18, 2026 0
In the world of web development, the “Live Preview” button is a staple for content editors—a harmless...
Read More Read more about Critical Craft CMS Flaw Grants Instant Admin Access
New Ubuntu Vulnerability Turns System Cleanup into a Root Access Backdoor CIFSwitch local root exploit cifs-utils privilege escalation Linux Kernel Root Exploit CVE-2025-39946 PoC CVE-2023-2598 PoC Ubuntu LPE Vulnerability CVE-2026-3888
  • Linux
  • Vulnerability Report

New Ubuntu Vulnerability Turns System Cleanup into a Root Access Backdoor

Do Son March 18, 2026 0
The Qualys Threat Research Unit has detailed a new Local Privilege Escalation (LPE) vulnerability, tracked as CVE-2026-3888,...
Read More Read more about New Ubuntu Vulnerability Turns System Cleanup into a Root Access Backdoor
The EU Strikes Back: New Sanctions Target Chinese and Iranian Cyber Threat Actors Apple Google EU alliance DMA European Commission Breach Trivy Supply Chain Attack Europa.eu Breach EU Cloud Infrastructure EU Cyber Sanctions State-Sponsored Hacking EU 2040 Emissions Target, Europe Climate Leadership AWS Azure DMA Cloud Gatekeeper DSA violation, illegal content Apple DMA Delay, iPhone Mirroring EU EU Age Verification, Google Play Integrity Corning Antitrust, EU Competition Apple EU Digital Markets Act App Store commission European Union cyberattacks - InvestAI EU Targets Musk’s X Digital Markets Act, EU fines
  • Cybercriminals

The EU Strikes Back: New Sanctions Target Chinese and Iranian Cyber Threat Actors

Do Son March 18, 2026 0
In a decisive move to protect the digital sovereignty of its member states, the Council of the...
Read More Read more about The EU Strikes Back: New Sanctions Target Chinese and Iranian Cyber Threat Actors
The M5 Trap: Why Resetting Your New MacBook Could Soft-Brick Your Device MacBook M5 factory reset bug
  • Technology

The M5 Trap: Why Resetting Your New MacBook Could Soft-Brick Your Device

Do Son March 18, 2026 0
Should you have acquired and commenced utilizing a MacBook Pro or MacBook Air endowed with the M5...
Read More Read more about The M5 Trap: Why Resetting Your New MacBook Could Soft-Brick Your Device
Parallel Realities: Google Gemini Prepares to Launch Branching AI Conversations Gemini AI branching threads Gemini 3.1 Flash-Lite
  • Technology

Parallel Realities: Google Gemini Prepares to Launch Branching AI Conversations

Do Son March 18, 2026 0
The capacity for branching dialogues within artificial intelligence conversational applications manifests as a profoundly utilitarian feature. It...
Read More Read more about Parallel Realities: Google Gemini Prepares to Launch Branching AI Conversations
The Accessibility Lockdown: How Android 17’s Advanced Protection Mode Ends API Exploitation Android Advanced Protection Mode
  • Android

The Accessibility Lockdown: How Android 17’s Advanced Protection Mode Ends API Exploitation

Do Son March 18, 2026 0
Android’s Accessibility suite was ingeniously architected by Google to empower patrons with disabilities, endowing instruments such as...
Read More Read more about The Accessibility Lockdown: How Android 17’s Advanced Protection Mode Ends API Exploitation
❮ Prev Page
Next Page ❯

Search

Translation

CVE WATCHTOWER
🚨

Receive alerts for vulnerabilities being exploited in the wild.

⚡

Get notified instantly when a Proof of Concept (PoC) exploit is published.

🔍

Access critical info on vulnerabilities even when marked as "RESERVED".

🧠

Insights powered by decades of expertise and global intelligence sources.

🎯

Customize alerts with up to 10 keywords for your specific tech stack.

📊

Export the raw CVE database for SIEM integration and reporting.

Upgrade Package

🔴 Live Critical Threats

  • CVE-2026-53776CVSS 9.1
    Perry before 0.5.1166 contains a JWT validation vulnerability that allows remote attackers...
  • CVE-2026-40750CVSS 9.9
    Unrestricted Upload of File with Dangerous Type vulnerability in themagnifico52 Kids Online...
  • CVE-2026-52715CVSS 9.3
    Unauthenticated SQL Injection in GEO my WordPress
  • CVE-2026-49774CVSS 9.9
    Improper Control of Generation of Code ('Code Injection') vulnerability in Filipe Nasc...
  • CVE-2026-49772CVSS 9.3
    Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
  • CVE-2026-39574CVSS 9.3
    Unauthenticated SQL Injection in InPost Gallery
  • CVE-2026-48714CVSS 9.1
    i18next-http-middleware is a middleware to be used with Node.js web frameworks like...
  • CVE-2026-48713CVSS 9.1
    Versions prior to 2.6.6 are vulnerable to prototype pollution via crafted missing-key...
  • CVE-2026-9691CVSS 9.8
    Unauthenticated PHP Object Injection in Integration for ActiveCampaign and Contact Form 7,...
  • CVE-2026-52703CVSS 9.6
    Unauthenticated Path Traversal in FastDup
Powered by CVE WATCHTOWER

Recent Zero-Day Vulnerabilities

  • GreatXML BitLocker Bypass: Public PoC Exploit Disclosed
  • Check Point VPN Vulnerability Exploited in the Wild with Ransomware Links
  • Weekly Threat Intelligence: June 1 to June 7, 2026
  • Cisco SD-WAN Vulnerability Exploited in the Wild with Root RCE Risks
  • Android Zero-Day Flaw Exploited in the Wild: June 2026 Patches Released
  • Exploited in the Wild: Critical OWA Spoofing Flaw (CVE-2026-42897) Hits On-Premises Exchange Servers
Our Websites
  • Penetration Testing Tools
  • The Daily Information Technology
  • Daily CyberSecurity

    • About SecurityOnline.info
    • Advertise with us
    • Announcement
    • Contact
    • Contributor Register
    • Login
    • Disclaimer
    • Privacy Policy
    • About SecurityOnline.info
    • Advertise on SecurityOnline.info
    • Contact Us

    When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

    • Disclaimer
    • Privacy Policy
    • DMCA NOTICE
    • Linkedin
    • Twitter
    • Facebook
    • Youtube
    © 2017 - 2026 Daily CyberSecurity. All Rights Reserved.