“Eye” Spy: Cyclops Blink Returns with Extended Capabilities 🚀 In August 2026, Counter Threat Unit™ (CTU) researchers analyzed a malicious 64-bit Linux executable named timezone_check that was disc...
Overview Earlier this month, security sleuth and researcher “Chaotic Eclipse” (also known as Nightmare-Eclipse) published a zero-day exploit known as YellowKey, which allowed them to access BitLoc...
Overview of the First VPN Service 🚀 The Federal Bureau of Investigation (FBI) has released a FLASH report to share indicators of compromise (IOCs) and tactics related to the First VPN Service. Thi...
🚨 Important Security Alert! An attachment in an email impersonating DHL about a shipment contains a link to a preconfigured SimpleHelp remote access tool—an ideal starting point for attackers to e...
The Fake Sites Using a Cheap Toolkit to Sell $2,000 AI Subscriptions
The Fake Sites Using a Cheap Toolkit to Sell $2,000 AI Subscriptions 🚨 We found more than 100 subscription websites linked through the same toolkit and closely related developer details. These sit...
The AI Plot to Scan and Destroy Books
The AI Plot to Scan and Destroy Books 🚀 In 2024, authors Andrea Bartz, Charles Graeber, and Kirk Wallace Johnson sued Anthropic, the creator of Claude, alleging that the company had wrongfully dig...
RansomHouse Picks a Fight with Namibia's Defense Establishment
RansomHouse Picks a Fight with Namibia’s Defense Establishment 🚨 Namibia’s computer security incident response team has confirmed unauthorized activity in the defense ministry’s network, linking i...
Neural Override - AI-Orchestrated RAT With SCADA Tasking
Neural Override - AI-Orchestrated RAT With SCADA Tasking 🚀 We identified and analyzed Neural Override, a five-build Python RAT family controlled via Telegram and featuring an autonomous, LLM-drive...
Cybercrime Feud Erupts on Dark Web as Notorious Group Claims Hijack of Rival's Website
Cybercrime Feud Erupts on Dark Web 🚨 One of the world’s best-known cybercrime groups has announced a significant development in its ongoing rivalry. On Sunday, ShinyHunters, a notorious digital ex...
CVE-2026-61852 - Chartbrew SQL Injection Vulnerability
CVE-2026-61852 - Chartbrew: SQL Injection Vulnerability Chartbrew is an open-source web application that connects directly to databases and APIs to create charts. A critical vulnerability, CVE-202...
BigCommerce Alerts Merchants of Data Breach Linked to Ribon Apps
BigCommerce Alerts Merchants of Data Breach Linked to Ribon Apps Ecommerce platform BigCommerce has alerted multiple merchants to data breaches after attackers compromised credentials for third-pa...
2026-09-21 Daily Vulns
NEW: CVE vendor-product description metric Referenceurl title GithubURL CVE-2026-83242 Oracle Corporation - O...
CVE-2026-94090 - JusticeRage Manalyze PE Parser Vulnerability
CVE-2026-94090 - JusticeRage Manalyze PE Parser Vulnerability A security flaw, identified as CVE-2026-94090, has been discovered in JusticeRage Manalyze 1.0.0. The affected element is the function...
Beacon Cyber Security Incident Final Report
Beacon Cyber Security Incident Final Report In July 2026, we experienced a cyber-security incident in which an unauthorized third party gained access to our systems. Our investigation has conclude...
2026-09-20 Daily Vulns
NEW: CVE vendor-product description metric Referenceurl title GithubURL CVE-2024-58383 froxlor - froxlor ...
North Korean Cyber Actor Group Targeting IT Professionals
North Korean Cyber Actor Group Targeting IT Professionals The North Korean “WaterPlum” cyber actor group, commonly referred to as “Contagious Interview,” conducts cyberattacks by infiltrating unsu...
Beware the SparroWock The Backdoor That Bites, The Commands That Catch
Beware the SparroWock: The Backdoor That Bites, The Commands That Catch ESET Research’s ongoing monitoring of FamousSparrow has borne fruit once again. Our previous public report on FamousSparrow ...
New Settra Ransomware Variant Deployed in Attacks on Retail and Manufacturing
New Settra Ransomware Variant Deployed in Attacks on Retail and Manufacturing A new ransomware variant named Settra has been deployed in incidents targeting the retail and manufacturing sectors, a...
HEIF Heist Uncovering Remote Code Execution Vulnerabilities
HEIF Heist: Uncovering Remote Code Execution Vulnerabilities A recent investigation has revealed a serious vulnerability known as HEIF Heist, which could allow attackers to exploit OpenAI private ...
Gyazo Data Breach Exposes 23 Million User Records
Gyazo Data Breach Exposes 23 Million User Records 🚨 A recent breach involving Gyazo has exposed 23 million user records after attackers exploited a vulnerability in Helpfeel’s image upload server....