Overview Earlier this month, security sleuth and researcher “Chaotic Eclipse” (also known as Nightmare-Eclipse) published a zero-day exploit known as YellowKey, which allowed them to access BitLoc...
Overview of the First VPN Service 🚀 The Federal Bureau of Investigation (FBI) has released a FLASH report to share indicators of compromise (IOCs) and tactics related to the First VPN Service. Thi...
🚨 Important Security Alert! An attachment in an email impersonating DHL about a shipment contains a link to a preconfigured SimpleHelp remote access tool—an ideal starting point for attackers to e...
2026-09-09 Daily Vulns
NEW: CVE vendor-product description metric Referenceurl title GithubURL CVE-2021-44319 n/a - n/a Parrot...
Grindr Settles UK Data Privacy Claims for £26m
Grindr Settles UK Data Privacy Claims for £26m Grindr has agreed to pay £26m ($35.2m) to settle a UK group action over allegations that it unlawfully processed users’ personal data and misused pri...
Massive Vietnam-Linked APIS Database Exposes Passport and Flight Data
Massive Vietnam-Linked APIS Database Exposes Passport and Flight Data 🚨 An exposed Vietnam-linked APIS database has revealed 220.8 million passenger and crew records, including sensitive passport ...
Hackers Breach F5 BIG-IP APM Devices to Deploy Linux Rootkit
Hackers Breach F5 BIG-IP APM Devices to Deploy Linux Rootkit A Linux rootkit targeting devices in F5 BIG-IP APM environments can intercept PHP file loading and inject a fileless web shell directly...
DoppelCart Fraud Network Exposed 119,000 Fake Shops Stealing Credit Cards
DoppelCart Fraud Network Exposed: 119,000 Fake Shops Stealing Credit Cards A massive operation dubbed “DoppelCart” uses more than 119,000 domains to run a network of fake e-shops that steal paymen...
AD Rights Management Service (Part 1) Architecture, Deprecation, and Reconnaissance
AD Rights Management Service (Part 1): Architecture, Deprecation, and Reconnaissance Answering six weeks of research into Active Directory Rights Management Services (AD RMS) produced a compiled t...
2026-09-08 Daily Vulns
NEW: CVE vendor-product description metric Referenceurl title GithubURL CVE-2024-11080 pickplugins - Post Gri...
Mathspace Discloses Data Breach Affecting Over 1 Million People
Mathspace Discloses Data Breach Affecting Over 1 Million People 🚨 Online maths learning platform Mathspace disclosed over the weekend that attackers stole data from more than 1 million students, s...
LG TV Flaws Could Let Attackers Listen In, Even In Standby Mode
LG TV Flaws Could Let Attackers Listen In, Even In Standby Mode Smart TVs are internet-connected computers with microphones, app stores, advertising systems, and access to the same home networks u...
Condé Nast Data of 32.8 Million Users Offered for Sale After WIRED Leak
Condé Nast Data Breach 🚨 Condé Nast user data from 32.8 million accounts is reportedly for sale, raising risks of targeted phishing, fraud, and scams. A database said to contain 32.8 million Condé...
Welsh Environment Regulator's FoI Blunder Exposes Diversity Data of 2,000 Staff
Welsh Environment Regulator’s FoI Blunder Exposes Diversity Data of 2,000 Staff Natural Resources Wales (NRW) has revealed that diversity data belonging to approximately 2,000 current and former e...
JSCeal Hides Crypto Malware in V8 Bytecode
JSCeal Hides Crypto Malware in V8 Bytecode 🚨 JSCeal is a sophisticated cryptocurrency-stealing malware that has been tracked by Check Point Research since early 2025. This malware cleverly hides i...
Hackers Drain $320M in Bitcoin from Liquid Network, Claim They're the Good Guys
Hackers Drain $320M in Bitcoin from Liquid Network, Claim They’re the Good Guys 🚨 Hackers have drained roughly $320 million in Bitcoin from the federation wallet backing the Liquid Network, while ...
2026-09-07 Daily Vulns
NEW: CVE vendor-product description metric Referenceurl title GithubURL CVE-2025-15693 Unknown - JCH Optimize...
Critical Vulnerabilities in MikroTik RouterOS Being Actively Exploited
Critical Vulnerabilities in MikroTik RouterOS Being Actively Exploited The CERT Polska team has identified and coordinated the disclosure of six vulnerabilities in MikroTik RouterOS. Combining two...
ASUS Control Center Flaw Allows Attackers to Gain Full Admin Control
ASUS Control Center Vulnerability Alert 🚨 ASUS has issued an urgent security update for ASUS Control Center Enterprise (ACC) after researchers uncovered a maximum-severity vulnerability that allow...
2026-09-06 Daily Vulns
NEW: CVE vendor-product description metric Referenceurl title GithubURL CVE-2021-44320 n/a - n/a Parrot...