“Eye” Spy: Cyclops Blink Returns with Extended Capabilities 🚀 In August 2026, Counter Threat Unit™ (CTU) researchers analyzed a malicious 64-bit Linux executable named timezone_check that was disc...
Overview Earlier this month, security sleuth and researcher “Chaotic Eclipse” (also known as Nightmare-Eclipse) published a zero-day exploit known as YellowKey, which allowed them to access BitLoc...
Overview of the First VPN Service 🚀 The Federal Bureau of Investigation (FBI) has released a FLASH report to share indicators of compromise (IOCs) and tactics related to the First VPN Service. Thi...
🚨 Important Security Alert! An attachment in an email impersonating DHL about a shipment contains a link to a preconfigured SimpleHelp remote access tool—an ideal starting point for attackers to e...
Critical Dell ObjectScale Vulnerabilities Allow Malicious Users to Compromise the Affected System
Critical Dell ObjectScale Vulnerabilities 🚨 Dell Technologies has released a security advisory regarding multiple vulnerabilities affecting Dell ObjectScale and Elastic Cloud Storage (ECS) deploym...
2026-09-13 Daily Vulns
NEW: CVE vendor-product description metric Referenceurl title GithubURL CVE-2026-70341 Microsoft - Microsoft ...
From Hacks to Bioweapons, Claude Misuse Is Now Everywhere
From Hacks to Bioweapons, Claude Misuse Is Now Everywhere 🚨 Anthropic has been perhaps more vocal than any other AI company about the ways in which its tools are prone to misuse. It published some...
India's STPI Serves TerminalFix-Style Attack via Fake Cloudflare Check
India’s STPI Serves TerminalFix-Style Attack via Fake Cloudflare Check 🚨 A website linked to India’s Software Technology Parks of India (STPI) is serving a spoofed Cloudflare verification page tha...
Crypto Customers Targeted by Scammers After Email Marketing Provider Breach
Crypto Customers Targeted by Scammers 🚨 An attacker breached an email marketing platform and launched targeted attacks against the newsletter subscribers of some of its customers, especially those...
Countering Misuse of AI - September 2026
Countering Misuse of AI - September 2026 Source: Anthropic Date Published: September 11, 2026 Over the past eight months, our Threat Intelligence team identified and disrupted operations in which...
Surfshark VPN Breach Hackers Access Internal Testing Servers
Surfshark VPN Breach: Hackers Access Internal Testing Servers 🚨 Surfshark disclosed that hackers accessed one of its internal test servers after a configuration error exposed it to the internet. T...
MantaxOtax Android Malware Combines Ransomware With Spyware
MantaxOtax Android Malware Combines Ransomware With Spyware 🚨 MantaxOtax Android malware has combined file encryption with extensive surveillance, allowing attackers to steal messages, credentials...
Will AI Kill Us All Within The Next Decade?
Will AI Kill Us All Within The Next Decade? The Wall Street Journal reports that concerns are rising inside AI labs that competition is pushing tech companies to race toward self-improving models ...
New Android Malware Encrypts Files, Steals Data, and Harasses Victims
New Android Malware Strain: Mantax Otax 🚨 A new Android malware strain called Mantax Otax combines ransomware and spyware capabilities to encrypt files, steal sensitive data, and spam and harass v...
Multiple Vulnerabilities in SolarView Compact
Multiple Vulnerabilities in SolarView Compact 🚨 SolarView Compact, provided by Contec Co., Ltd., contains multiple vulnerabilities that affect various product versions. The affected products inclu...
U.S. Disrupts Xinbi Guarantee Scam Marketplace, Freezes $52.8 Million in Crypto
U.S. Disrupts Xinbi Guarantee Scam Marketplace 🚨 The U.S. Department of Justice (DOJ) announced coordinated actions against an illicit online marketplace known as Xinbi Guarantee. This marketplace...
Once Bluemoon Multiple State Aligned Threat Actors Rapidly Adopt Novel Exploit
Once Bluemoon Multiple State Aligned Threat Actors Rapidly Adopt Novel Exploit 🚨 Proofpoint has identified four espionage-motivated threat actors employing a new exploit kit that chains multiple C...
New N0va Phishkit Targets North America and EU A Growing Identity Risk for SOCs
New N0va Phishkit Targets North America and EU: A Growing Identity Risk for SOCs Recently, ANY.RUN researchers uncovered N0va, a new phishkit targeting organizations across North America and the E...
CVE-2026-88002 - Open WebUI Vulnerability Exposes Server to Hang
CVE-2026-88002 - Open WebUI Vulnerability 🚨 CVE-2026-88002: Open WebUI allows any authenticated user to hang the server via a cyclic chat message history. Open WebUI is an extensible, feature-rich...
CVE-2026-15460 - Missing Channel-State Validation in Zephyr Bluetooth Classic L2CAP Receive Path
CVE-2026-15460 - Missing Channel-State Validation in Zephyr Bluetooth Classic L2CAP Receive Path CVE-2026-15460 details a missing channel-state validation in the Zephyr Bluetooth Classic L2CAP rec...