Skip to content
June 24, 2026
  • Linkedin
  • Twitter
  • Facebook
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Watchtower
  • Cyber Criminals
  • Data Leak
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Vulnerability Report
Light/Dark Button
  • Home
  • Macro Malware

Macro Malware

Hiding in Plain Sight: APT28’s “Operation MacroMaze” Hits European Govs GemStuffer RubyGems Campaign RubyGems Data Exfiltration TanStack npm Compromise Supply Chain Attack DNS Hijacking APT28 (Fancy Bear) OpenVSX Supply Chain Attack Checkmarx Plugin Breach Stryker Cyberattack CISA Alert Trans-Regional Cyber Conflict Operation Epic Fury Cyber Operation MacroMaze APT28 Cyber Espionage Notepad++ Supply Chain Attack Lotus Blossom Group Defense Industrial Base Threats GTIG Report APT28 Operation Neusploit CVE-2026-21509 Bookworm Malware
  • Cyber Security

Hiding in Plain Sight: APT28’s “Operation MacroMaze” Hits European Govs

Do Son February 17, 2026 0
A new cyberespionage campaign attributed to the notorious Russian state-sponsored group APT28 (also known as Fancy Bear...
Read More Read more about Hiding in Plain Sight: APT28’s “Operation MacroMaze” Hits European Govs
Lazarus Group Attacks Aerospace/Defense with New ChaCha20-Encrypted Comebacker Backdoor Seedworm Espionage Campaign 2026 ChromElevator Stealer DLL Sideloading SIM Swapping Crypto Theft Lazarus Comebacker, Aerospace Espionage Delete PlugX Malware
  • Cyber Security
  • Malware

Lazarus Group Attacks Aerospace/Defense with New ChaCha20-Encrypted Comebacker Backdoor

Do Son November 11, 2025 0
Cybersecurity researchers at ENKI have identified a new variant of the Comebacker backdoor, attributed to the North...
Read More Read more about Lazarus Group Attacks Aerospace/Defense with New ChaCha20-Encrypted Comebacker Backdoor
Iran-Linked MuddyWater Deploys Phoenix v4 Backdoor via Compromised Emails and NordVPN Exit Node VPN
  • Cyber Security
  • Malware

Iran-Linked MuddyWater Deploys Phoenix v4 Backdoor via Compromised Emails and NordVPN Exit Node

Do Son October 23, 2025 0
Researchers at Group-IB Threat Intelligence have uncovered a new global phishing and espionage campaign conducted by the...
Read More Read more about Iran-Linked MuddyWater Deploys Phoenix v4 Backdoor via Compromised Emails and NordVPN Exit Node

Search

Translation

CVE WATCHTOWER
🚨

Receive alerts for vulnerabilities being exploited in the wild.

⚡

Get notified instantly when a Proof of Concept (PoC) exploit is published.

🔍

Access critical info on vulnerabilities even when marked as "RESERVED".

🧠

Insights powered by decades of expertise and global intelligence sources.

🎯

Customize alerts with up to 10 keywords for your specific tech stack.

📊

Export the raw CVE database for SIEM integration and reporting.

Upgrade Package

🚨 Active Exploits in the Wild

  • CVE-2026-34908CVSS 10.0
    A malicious actor with access to the network could exploit an Improper Access Control vulnerability found in UniFi...
  • CVE-2026-34909CVSS 10.0
    A malicious actor with access to the network could exploit a Path Traversal vulnerability found in UniFi OS...
  • CVE-2026-34910CVSS 10.0
    A malicious actor with access to the network could exploit an Improper Input Validation vulnerability found in UniFi...
  • CVE-2025-67038CVSS 9.8
    An issue was discovered in Lantronix EDS5000 2.1.0.0R3. The HTTP RPC module executes a shell command to write...
  • CVE-2024-23692CVSS 9.8
    Rejetto HTTP File Server, up to and including version 2.3m, is vulnerable to a template injection vulnerability. This...
  • CVE-2026-20230CVSS 8.6
    A vulnerability in Cisco Unified Communications Manager (Unified CM) and Cisco Unified Communications Manager Session Management Edition (Unified...
  • CVE-2026-48907
    A vulnerability in the JCE editor extension for Joomla allows the creation of new editor profiles for unauthenticated...
  • CVE-2026-20253CVSS 9.8
    In Splunk Enterprise 10.2 versions below 10.2.4 and 10 versions below 10.0.7, an unauthenticated user could create or...
  • CVE-2026-4020CVSS 7.5
    The Gravity SMTP plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and...
  • CVE-2026-20182CVSS 10.0
    May 2026: This security advisory provides the details and fix information for a vulnerability that was discovered and...
Powered by CVE Watchtower

🔴 Live Critical Threats

  • CVE-2026-56237CVSS 9.1
    Capgo before 12.128.2 contains a broken authentication vulnerability in its API key...
  • CVE-2026-12417CVSS 9.8
    The SignUp & SignIn plugin for WordPress is vulnerable to Authentication Bypass...
  • CVE-2026-12416CVSS 9.8
    The Invoice Generator plugin for WordPress is vulnerable to Account Takeover via...
  • CVE-2026-12851CVSS 9.1
    Multiple OS command injection vulnerabilities exist in the libNetSetObj.so functionality of GeoVision...
  • CVE-2026-12850CVSS 9.1
    Multiple OS command injection vulnerabilities exist in the libNetSetObj.so functionality of GeoVision...
  • CVE-2026-12849CVSS 9.1
    Multiple OS command injection vulnerabilities exist in the libNetSetObj.so functionality of GeoVision...
  • CVE-2026-12848CVSS 10.0
    GV-I/O Box 4E is a smart embedded device with 4 input and...
  • CVE-2026-12847CVSS 10.0
    GV-I/O Box 4E is a smart embedded device with 4 input and...
  • CVE-2026-12846CVSS 10.0
    GV-I/O Box 4E is a smart embedded device with 4 input and...
  • CVE-2026-12486CVSS 9.1
    Multiple OS command injection vulnerabilities exist in the libNetSetObj.so functionality of GeoVision...
Powered by CVE WATCHTOWER

Our Websites
  • Penetration Testing Tools
  • The Daily Information Technology
  • Daily CyberSecurity

    • About SecurityOnline.info
    • Advertise with us
    • Announcement
    • Contact
    • Contributor Register
    • Login
    • About SecurityOnline.info
    • Advertise on SecurityOnline.info
    • Contact Us

    When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

    • Disclaimer
    • Privacy Policy
    • DMCA NOTICE
    • Linkedin
    • Twitter
    • Facebook
    • Youtube
    © 2017 - 2026 Daily CyberSecurity. All Rights Reserved.