“Eye” Spy: Cyclops Blink Returns with Extended Capabilities 🚀 In August 2026, Counter Threat Unit™ (CTU) researchers analyzed a malicious 64-bit Linux executable named timezone_check that was disc...
Overview Earlier this month, security sleuth and researcher “Chaotic Eclipse” (also known as Nightmare-Eclipse) published a zero-day exploit known as YellowKey, which allowed them to access BitLoc...
Overview of the First VPN Service 🚀 The Federal Bureau of Investigation (FBI) has released a FLASH report to share indicators of compromise (IOCs) and tactics related to the First VPN Service. Thi...
🚨 Important Security Alert! An attachment in an email impersonating DHL about a shipment contains a link to a preconfigured SimpleHelp remote access tool—an ideal starting point for attackers to e...
2026-10-02 Daily Vulns
NEW: CVE vendor-product description metric Referenceurl title GithubURL CVE-2026-100891 Trusted Domain Projec...
Vulnerabilities in Monta monta.app Exposed
Vulnerabilities in Monta monta.app Exposed 🚨 Attention! Successful exploitation of these vulnerabilities could enable attackers to gain unauthorized administrative control over vulnerable charging...
Teltonika RutOS Command Injection Vulnerability
Teltonika RutOS Command Injection Vulnerability 🚨 A post-authentication command injection vulnerability has been identified in Teltonika RutOS, specifically affecting version 00.07.06.21. This vul...
Fake ChatGPT Ads on Google Lead to Malware Installation
🚨 Warning: Fake ChatGPT Ads on Google! Malvertising campaigns are shifting towards chatbots! 🚀 Google ads for fake ChatGPT pages are leading Windows users into malware traps. Researchers at Island...
Police Arrest 16-Year-Old Suspected of Running KillSec, Seize Ransomware Leak Site and Servers
Police Arrest 16-Year-Old Suspected of Running KillSec 🚨 Police in Spain have arrested a 16-year-old suspected of running the KillSec ransomware group. This arrest was part of a larger operation o...
Pentagon Data Breach Impacts Millions of US Military Personnel
Pentagon Data Breach Impacts Millions of US Military Personnel The US government is notifying nearly three million current and former military staff that their personal information was stolen duri...
MikroTik RouterOS Flaw Lets Attackers Run Code as Root
MikroTik RouterOS Flaw Alert 🚨 MikroTik’s RouterOS has a near maximum severity bug: CISA urges updating ASAP! A critical RouterOS flaw can let attackers run code as root without a password. The cr...
Meari IoT Cloud Platform OpenAPI Service Vulnerabilities
Meari IoT Cloud Platform OpenAPI Service Vulnerabilities 🚨 Critical Alert: Successful exploitation of vulnerabilities in the Meari IoT Cloud Platform OpenAPI Service could allow attackers to manip...
Hallucinating Credibility China-Aligned TA419 Impersonates its Way into US AI Policy Circles
Hallucinating Credibility: China-Aligned TA419 Impersonates its Way into US AI Policy Circles In July 2026, a China-aligned threat actor known as TA419 conducted multiple credential phishing campa...
CVE-2026-86344 - 389-ds-base Vulnerability Report
CVE-2026-86344 - 389-ds-base Vulnerability Report A new high-severity vulnerability, identified as CVE-2026-86344, has been reported in 389-ds-base. This flaw, described as “unauthenticated worker...
Armatura LLC Armatura One Vulnerabilities
Armatura LLC Armatura One Vulnerabilities Published Date: October 1, 2026 Source: CISA The recent vulnerabilities discovered in Armatura LLC’s Armatura One could lead to serious security risks. 🚨...
openSUSE Leap Adds a New Security Layer Immutable Mode
openSUSE Leap Adds a New Security Layer: Immutable Mode Starting with version 16.1, openSUSE Leap is adding another layer to its security that should further elevate it as one of the more secure d...
MALFEX npm Attack Spreads Windows RAT, Steals Discord and Browser Data
MALFEX npm Attack: A Growing Threat 🚨 CloudSEK has uncovered the MALFEX campaign, which utilizes malicious npm packages to deploy the Overlord RAT. This attack not only steals Discord and browser ...
Global Group Ransomware Abuses WinMerge to Deploy Encryptor
Global Group Ransomware Abuses WinMerge to Deploy Encryptor A Ransomware-as-a-Service (RaaS) operation known as Global Group is targeting large enterprises with phishing emails that deliver a file...
China-nexus UAT-11587 Targets Government and Policy Organizations Across Asia with Antino Backdoor
China-nexus UAT-11587 Targets Government and Policy Organizations Across Asia with Antino Backdoor 🚀 Cisco Talos has uncovered a cluster of activity tracked as UAT-11587, targeting government and ...
Star Blizzard Refines Phishing And Malware Delivery With The Redflick Technique
Star Blizzard Refines Phishing And Malware Delivery With The Redflick Technique 🚀 Source: Microsoft Date Published: September 29, 2026 STAR BLIZZARD (also known as APT29 or Nobelium) has signific...