Skip to content
June 18, 2026
  • Linkedin
  • Twitter
  • Facebook
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Watchtower
  • Cyber Criminals
  • Data Leak
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Vulnerability Report
Light/Dark Button
Infected Out of the Box: “Keenadu” Backdoor Hijacks Android at the Firmware Level Keenadu Malware Android Firmware Backdoor
  • Malware

Infected Out of the Box: “Keenadu” Backdoor Hijacks Android at the Firmware Level

Do Son February 18, 2026 0
Researchers at Kaspersky Labs have uncovered a massive, firmware-level compromise affecting Android devices globally. Dubbed Keenadu, this...
Read More Read more about Infected Out of the Box: “Keenadu” Backdoor Hijacks Android at the Firmware Level
PostgreSQL Fixes 5 Security Flaws Including Critical Code Execution Risks PostgreSQL Vulnerabilities CVE-2026-2006 PostgreSQL, security update CVE-2023-5869 - CVE-2025-1094
  • Vulnerability Report

PostgreSQL Fixes 5 Security Flaws Including Critical Code Execution Risks

Do Son February 18, 2026 0
The PostgreSQL Global Development Group has issued a critical alert for database administrators worldwide, releasing a comprehensive...
Read More Read more about PostgreSQL Fixes 5 Security Flaws Including Critical Code Execution Risks
Ghost NICs & Secret Knocks: Dell Zero-Day (CVSS 10) Exploited by UNC6201 FortiClient EMS exploitation Cisco FIRESTARTER Backdoor Arcane Door Campaign Dell RecoverPoint Zero-Day UNC6201 Espionage Notepad++ Compromise Supply Chain Attack Magento SessionReaper CVE-2025-54236 ShadowRay 2.0, AI-Generated Malware WordPress Auth Bypass, CVE-2025-5947 Exploited EcoStruxure Vulnerabilities, Industrial Control System UNC5820 - CVE-2014-2120 - CVE-2021-44207
  • Cyber Security
  • Vulnerability Report

Ghost NICs & Secret Knocks: Dell Zero-Day (CVSS 10) Exploited by UNC6201

Do Son February 18, 2026 0
A high-risk zero-day vulnerability in Dell’s virtualization software has become the playground for a sophisticated espionage campaign....
Read More Read more about Ghost NICs & Secret Knocks: Dell Zero-Day (CVSS 10) Exploited by UNC6201
Hackers Use Jira Notifications to Bypass Spam Filters Layoff Phishing Scam Remcos RAT Malware Aruba Phishing, Phishing-as-a-Service PyPI, phishing CVE-2024-25608 PyPI Phishing, Credential Theft
  • Cybercriminals

Hackers Use Jira Notifications to Bypass Spam Filters

Do Son February 18, 2026 0
A new spam campaign is slipping past enterprise defenses by wearing a disguise that most security filters...
Read More Read more about Hackers Use Jira Notifications to Bypass Spam Filters
“Dormant” Backdoors: Ivanti EPMM Zero-Days Exploited to Plant Long-Term Spies Cisco SD-WAN Vulnerability CVE-2026-20133 FortiGate Compromise Ivanti EPMM Zero-Day CVE-2026-1281 SmarterMail Vulnerability Storm-2603 WatchGuard Zero-Day, IKEv2 Out-of-Bounds Write Cisco Zero-Day, UAT-9686 Chinese APT FortiWeb RCE Exploitation CVE-2025-58034 VMware Zero-Day, Privilege Escalation Sitecore, remote code execution CVE-2025-53690 Windows CLFS, Privilege Escalation CVE-2024-47575 & CVE-2024-11120 CVE-2025-24983 vulnerability
  • Vulnerability Report

“Dormant” Backdoors: Ivanti EPMM Zero-Days Exploited to Plant Long-Term Spies

Do Son February 18, 2026 0
Two critical zero-day vulnerabilities in Ivanti Endpoint Manager Mobile (EPMM) are currently being exploited in a widespread...
Read More Read more about “Dormant” Backdoors: Ivanti EPMM Zero-Days Exploited to Plant Long-Term Spies
CISA Adds 2008 Windows Flaw & Chrome Zero-Day to KEV Ivanti EPMM Vulnerability CVE-2026-1340 CISA KEV Catalog CVE-2026-21385 CISA KEV Update CVE-2008-0015 CISA KEV, Array Networks Command Injection CVE-2025-0111 & CVE-2025-23209 CISA, Known Exploited Vulnerabilities
  • Vulnerability Report

CISA Adds 2008 Windows Flaw & Chrome Zero-Day to KEV

Do Son February 18, 2026 0
The Cybersecurity and Infrastructure Security Agency (CISA) has updated its Known Exploited Vulnerabilities (KEV) Catalog with four...
Read More Read more about CISA Adds 2008 Windows Flaw & Chrome Zero-Day to KEV
CredShields Leads OWASP Smart Contract Top 10 2026 as Governance and Access Failures Drive Onchain Risk image_11_1771162797WWbMlSTnA5
  • Press Release

CredShields Leads OWASP Smart Contract Top 10 2026 as Governance and Access Failures Drive Onchain Risk

cybernewswire February 17, 2026 0
SINGAPORE, Singapore, 17th February 2026, CyberNewswire
Read More Read more about CredShields Leads OWASP Smart Contract Top 10 2026 as Governance and Access Failures Drive Onchain Risk
Cybersecurity Excellence Awards Reveal Nomination Shift from AI Hype to Governance Execution Cybersecurity_Insiders_Press_Release_FEB_2026_1771270319lAAqrrrXI9
  • Press Release

Cybersecurity Excellence Awards Reveal Nomination Shift from AI Hype to Governance Execution

cybernewswire February 17, 2026 0
Washington DC, USA, 17th February 2026, CyberNewswire
Read More Read more about Cybersecurity Excellence Awards Reveal Nomination Shift from AI Hype to Governance Execution
Apache NiFi Flaw (CVE-2026-25903) Lets Users Bypass Restrictions Apache NiFi RCE CVE-2026-39816 Apache NiFi Vulnerability CVE-2026-25903 Apache NiFi Deserialization, GetAsanaObject Vulnerability CVE-2024-52067 - CVE-2024-56512 CVE-2025-27017
  • Vulnerability Report

Apache NiFi Flaw (CVE-2026-25903) Lets Users Bypass Restrictions

Do Son February 17, 2026 0
Apache NiFi, the powerhouse engine that automates cybersecurity, observability, event streams, and generative AI data pipelines for...
Read More Read more about Apache NiFi Flaw (CVE-2026-25903) Lets Users Bypass Restrictions
The Great Refurbishment: Why iOS 27 is the “Vernal Cleansing” Your iPhone Battery Needs FCC Chinese lab ban iPhone NATO certification iPhone 18 Pro Deep Red iOS 27 Snow Leopard update 2026 smartphone memory shortage, IDC mobile market forecast iPhone Satellite Natural Usage iPhone 17 Speaker Issue, USB-C Static iPhone 17 Pro, MagSafe Scratches iPhone 17 Pro, professional filmmaking
  • Technology

The Great Refurbishment: Why iOS 27 is the “Vernal Cleansing” Your iPhone Battery Needs

Do Son February 17, 2026 0
In recent years, has the act of updating iOS evoked within you a sense of “trepidation amidst...
Read More Read more about The Great Refurbishment: Why iOS 27 is the “Vernal Cleansing” Your iPhone Battery Needs
The Rise of the Digital Concierge: OpenAI Hires OpenClaw Visionary to Turn ChatGPT into an Autonomous Agent ChatGPT Lockdown Mode OpenAI OpenClaw acquisition OpenAI Prism GPT-5.2 LaTeX, scientific research AI workspace OpenAI, Mixpanel Breach ChatGPT Data Preservation, NYT Lawsuit ChatGPT Apps SDK, super app OpenAI Jony Ive, AI Hardware Delay Musk Apple lawsuit, App Store antitrust UK AI Partnership, OpenAI Collaboration Jony Ive OpenAI, DoD Contract OpenAI Lawsuit, ChatGPT Privacy North Korea ChatGPT - GPT-4.5 model OpenAI Models, AI Advancements OpenAI pricing, Flex API
  • Technology

The Rise of the Digital Concierge: OpenAI Hires OpenClaw Visionary to Turn ChatGPT into an Autonomous Agent

Do Son February 17, 2026 0
OpenAI CEO Sam Altman has announced on the social media platform X that Peter Steinberger—the architect of...
Read More Read more about The Rise of the Digital Concierge: OpenAI Hires OpenClaw Visionary to Turn ChatGPT into an Autonomous Agent
Hiding in Plain Sight: APT28’s “Operation MacroMaze” Hits European Govs GemStuffer RubyGems Campaign RubyGems Data Exfiltration TanStack npm Compromise Supply Chain Attack DNS Hijacking APT28 (Fancy Bear) OpenVSX Supply Chain Attack Checkmarx Plugin Breach Stryker Cyberattack CISA Alert Trans-Regional Cyber Conflict Operation Epic Fury Cyber Operation MacroMaze APT28 Cyber Espionage Notepad++ Supply Chain Attack Lotus Blossom Group Defense Industrial Base Threats GTIG Report APT28 Operation Neusploit CVE-2026-21509 Bookworm Malware
  • Cyber Security

Hiding in Plain Sight: APT28’s “Operation MacroMaze” Hits European Govs

Do Son February 17, 2026 0
A new cyberespionage campaign attributed to the notorious Russian state-sponsored group APT28 (also known as Fancy Bear...
Read More Read more about Hiding in Plain Sight: APT28’s “Operation MacroMaze” Hits European Govs
The AI Baseline: Apple’s “Special Experience” to Launch Budget MacBooks and M5 Powerhouses Apple Experience March 4 Apple Spring Event 2026
  • Technology

The AI Baseline: Apple’s “Special Experience” to Launch Budget MacBooks and M5 Powerhouses

Do Son February 17, 2026 0
Apple has formally extended invitations to the global media, confirming a prestigious special engagement titled “Apple Experience”...
Read More Read more about The AI Baseline: Apple’s “Special Experience” to Launch Budget MacBooks and M5 Powerhouses
The “Styles” Trap: 500,000 VK Accounts Hijacked by Chrome Extensions VK Malicious Extensions VK Styles Campaign
  • Malware

The “Styles” Trap: 500,000 VK Accounts Hijacked by Chrome Extensions

Do Son February 17, 2026 0
A massive malware campaign targeting Russia’s largest social network, VKontakte (VK), has been uncovered, revealing that over...
Read More Read more about The “Styles” Trap: 500,000 VK Accounts Hijacked by Chrome Extensions
Game Over: “RenEngine” Malware Hides in Pirated Visual Novels RenEngine Malware Pirated Games Security
  • Malware

Game Over: “RenEngine” Malware Hides in Pirated Visual Novels

Do Son February 17, 2026 0
A new malware campaign is turning the quest for free games into a nightmare for players. A...
Read More Read more about Game Over: “RenEngine” Malware Hides in Pirated Visual Novels
The 1% Breach: 287 Chrome Extensions Caught Spying on 37M Users Malicious Chrome Extensions
  • Data Leak

The 1% Breach: 287 Chrome Extensions Caught Spying on 37M Users

Do Son February 17, 2026 0
A sweeping new investigation by Q Continuum has uncovered a massive surveillance network operating within the Chrome...
Read More Read more about The 1% Breach: 287 Chrome Extensions Caught Spying on 37M Users
Foxveil: New Malware Loader Hides in Plain Sight Using Cloudflare and Discord Foxveil Malware
  • Malware

Foxveil: New Malware Loader Hides in Plain Sight Using Cloudflare and Discord

Do Son February 17, 2026 0
A new and elusive malware loader has been discovered prowling the legitimate infrastructure of the web, abusing...
Read More Read more about Foxveil: New Malware Loader Hides in Plain Sight Using Cloudflare and Discord
“CL Suite” Deception: Malicious Chrome Extension Steals 2FA Secrets and Meta Business Data CL Suite Malicious Extension Meta Business Suite Security
  • Malware

“CL Suite” Deception: Malicious Chrome Extension Steals 2FA Secrets and Meta Business Data

Do Son February 17, 2026 0
A malicious Google Chrome extension posing as a productivity tool for Meta Business Suite has been caught...
Read More Read more about “CL Suite” Deception: Malicious Chrome Extension Steals 2FA Secrets and Meta Business Data
“Natural Selection” at Work: How North Korean IT Workers Use AI to Infiltrate Companies North Korean Laptop Farm DPRK Insider Threat North Korea WMD Cyber Funding, Australia Sanctions Insider threat, North Korean hackers Kimsuky, cyber-espionage NPM Malware, North Korea Cyber-espionage North Korea, Remote IT Job Scam Laptop Farm - DriverEasy - Kimsuky Watering Hole Attack
  • Cybercriminals

“Natural Selection” at Work: How North Korean IT Workers Use AI to Infiltrate Companies

Do Son February 17, 2026 0
A new report from Okta Threat Intelligence has pulled back the curtain on a sprawling fraudulent employment...
Read More Read more about “Natural Selection” at Work: How North Korean IT Workers Use AI to Infiltrate Companies
The Navigation War: Why Tesla is Ghosting Apple CarPlay Amidst a Sales Slump Apple HomePad delay Tesla CarPlay integration 2026 Apple CarPlay AI integration 2026 Apple 2026 product roadmap rumors, foldable iPhone release date Apple Vision Pro sales slump, Vision Pro production cut Russia FaceTime Ban Network Blockade Apple Apple 2026 Roadmap, iPhone Foldable, Apple Intelligence Apple Maps ads, iOS monetization Apple, Digital Markets Act FCC Leak, iPhone 16e Schematics iPhone Fold Apple Made in India Apple US Investment, Indian Tariffs Apple Leadership, Tim Cook Tenure Siri Redesign, Apple AI Apple App Store Apple EU, Digital Markets Act CVE-2022-32898 Third-Party iOS Apps Apple Antitrust, DOJ Lawsuit
  • Technology

The Navigation War: Why Tesla is Ghosting Apple CarPlay Amidst a Sales Slump

Do Son February 16, 2026 0
Despite persistent rumors suggesting that Tesla would finally dismantle its proprietary fortress to embrace Apple CarPlay, a...
Read More Read more about The Navigation War: Why Tesla is Ghosting Apple CarPlay Amidst a Sales Slump
❮ Prev Page
Next Page ❯

Search

Translation

CVE WATCHTOWER
🚨

Receive alerts for vulnerabilities being exploited in the wild.

⚡

Get notified instantly when a Proof of Concept (PoC) exploit is published.

🔍

Access critical info on vulnerabilities even when marked as "RESERVED".

🧠

Insights powered by decades of expertise and global intelligence sources.

🎯

Customize alerts with up to 10 keywords for your specific tech stack.

📊

Export the raw CVE database for SIEM integration and reporting.

Upgrade Package

🔴 Live Critical Threats

  • CVE-2026-55742CVSS 9.6
    Cotonti 1.0.0 (master branch, commit f43f1fc3) is vulnerable to Cross-Site Request Forgery...
  • CVE-2026-55740CVSS 9.8
    Nur-Alam39 bus-ticket (no released versions; latest commit 459cabdbeb99c00225b26e46e3c2c30ae1de7bad) contains an unauthenticated SQL...
  • CVE-2026-48768CVSS 9.3
    TypeBot is a chatbot builder tool. In versions 3.16.1 and earlier, POST...
  • CVE-2026-54388CVSS 9.1
    Tinyproxy through 1.11.3, fixed in commit 364cdb6, fails to reject requests containing...
  • CVE-2026-54387CVSS 9.1
    Tinyproxy through 1.11.3, fixed in commit ff45d3b, fails to reconcile conflicting Content-Length...
  • CVE-2026-48814CVSS 9.1
    Network-AI is a TypeScript/Node.js multi-agent orchestrator. In versions 5.7.1 and earlier, the...
  • CVE-2026-55518CVSS 9.6
    ## Summary A critical missing authorization flaw exists in Avo's association attach...
  • CVE-2026-55471
    ### Summary `org.hl7.fhir.utilities.XsltUtilities` exposes two parallel families of XSLT transform helpers. The...
  • CVE-2026-55450CVSS 9.3
    ### Summary Unauthenticated users can upload any amount of data to the...
  • CVE-2026-55196CVSS 9.1
    Hermes WebUI before 0.51.409 contains an authentication bypass vulnerability in passkey registration...
Powered by CVE WATCHTOWER

Recent Zero-Day Vulnerabilities

  • GreatXML BitLocker Bypass: Public PoC Exploit Disclosed
  • Check Point VPN Vulnerability Exploited in the Wild with Ransomware Links
  • Weekly Threat Intelligence: June 1 to June 7, 2026
  • Cisco SD-WAN Vulnerability Exploited in the Wild with Root RCE Risks
  • Android Zero-Day Flaw Exploited in the Wild: June 2026 Patches Released
  • Exploited in the Wild: Critical OWA Spoofing Flaw (CVE-2026-42897) Hits On-Premises Exchange Servers
Our Websites
  • Penetration Testing Tools
  • The Daily Information Technology
  • Daily CyberSecurity

    • About SecurityOnline.info
    • Advertise with us
    • Announcement
    • Contact
    • Contributor Register
    • Login
    • Disclaimer
    • Privacy Policy
    • About SecurityOnline.info
    • Advertise on SecurityOnline.info
    • Contact Us

    When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

    • Disclaimer
    • Privacy Policy
    • DMCA NOTICE
    • Linkedin
    • Twitter
    • Facebook
    • Youtube
    © 2017 - 2026 Daily CyberSecurity. All Rights Reserved.