Overview Earlier this month, security sleuth and researcher “Chaotic Eclipse” (also known as Nightmare-Eclipse) published a zero-day exploit known as YellowKey, which allowed them to access BitLoc...
Overview of the First VPN Service 🚀 The Federal Bureau of Investigation (FBI) has released a FLASH report to share indicators of compromise (IOCs) and tactics related to the First VPN Service. Thi...
🚨 Important Security Alert! An attachment in an email impersonating DHL about a shipment contains a link to a preconfigured SimpleHelp remote access tool—an ideal starting point for attackers to e...
2026-08-31 Daily Vulns
NEW: CVE vendor-product description metric Referenceurl title GithubURL CVE-2026-10522 Unknown - MemberHero ...
Hackers Target PaperCut Servers 47% Unpatched
Hackers Target PaperCut Servers: 47% Unpatched 🚨 Attention all PaperCut users! PaperCut servers are currently under active attack, with 47% of tracked installations still running unpatched versio...
2026-08-30 Daily Vulns
NEW: CVE vendor-product description metric Referenceurl title GithubURL CVE-2026-16061 Unknown - Rest Routes ...
Protect Your WhatsApp Account with New Passkey and 2FA Upgrades
Protect Your WhatsApp Account with New Passkey and 2FA Upgrades 🚀 WhatsApp announced on August 25 that more than one billion people now use passkeys to log back into the app. The announcement inclu...
Multiple Vulnerabilities in SOY Series
Multiple Vulnerabilities in SOY Series 🚨 Multiple vulnerabilities have been identified in the SOY series provided by Tsuyoshi Saito. These vulnerabilities affect: SOY Calendar ver 2.4.0 and ea...
CVE-2026-82343 - Gimp Vulnerability Details
CVE-2026-82343 - Gimp Vulnerability Details A flaw, tracked as CVE-2026-82343, was found in the file-psd plugin in GIMP. When processing a specially crafted PSD image file, the plugin does not pro...
CVE-2026-82306 - StarRocks Query Detail Endpoint Vulnerability
CVE-2026-82306 - StarRocks Query Detail Endpoint Vulnerability CVE-2026-82306: The StarRocks Query Detail Endpoint is vulnerable and returns every user’s query history. This is a MEDIUM severity v...
CVE-2026-82291 - HeyForm Reflects Any Origin in CORS Responses While Allowing Credentials
CVE-2026-82291 - HeyForm Reflects Any Origin in CORS Responses While Allowing Credentials HeyForm, prior to version 3.0.0-rc.8, reflects the request Origin header in CORS responses while allowing ...
JavaScript Obfuscation From Party Trick to Phishing Kit
JavaScript Obfuscation: From Party Trick to Phishing Kit We open a JavaScript artifact hoping for code, and instead get string arrays, strangely named functions, encoded URLs, runtime decoders, an...
Installer for Rakuten Kobo Desktop Application Vulnerability
Vulnerability Alert 🚨 Title: Installer for Rakuten Kobo Desktop Application (Windows version) may insecurely load Dynamic Link Libraries Source: Japan Vulnerability Network Date Published: Augus...
Hackers Steal Data from Millions of UK Airport Customers
Major Data Breach at UK Airports 🚨 Three major UK airports have been affected by a cyber security incident where criminal hackers accessed the data of almost nine million people and demanded a ran...
ATF Responds to Major Cybersecurity Incident After Ransomware Gang's Claims
ATF Responds to Major Cybersecurity Incident 🚨 The Bureau of Alcohol, Tobacco, Firearms and Explosives (ATF) is currently addressing a major cybersecurity incident following claims made by the Qil...
AI Girlfriend Review Site's Secrets Exposed for Three Weeks
AI Girlfriend Review Site’s Secrets Exposed for Three Weeks 🚨 Our story comes courtesy of Mia Morin, Editor & AI Quality Analyst at Intimeros, a site that rates, reviews, and evaluates AI comp...
Two Alleged 'TeamPCP' Hackers Arrested in Australia
Two Alleged ‘TeamPCP’ Hackers Arrested in Australia 🚨 Authorities in Australia have arrested two men believed to be members of TeamPCP, a notorious cybercrime and data extortion group responsible ...
Threat Intelligence Report - University Leak Exposes Russia’s Military Cyber Training Pipeline
Threat Intelligence Report - University Leak Exposes Russia’s Military Cyber Training Pipeline Recently leaked records have revealed that Bauman Moscow State Technical University’s Department No. ...
Open Directory Exposes Moobot Source Code and Ongoing Activity Post 2024 Court-Authorized Disruption
Open Directory Exposes Moobot Source Code and Ongoing Activity Post 2024 Court-Authorized Disruption A misconfigured open directory on 86.53.111[.]212:8080 exposed critical details of an active cy...
Carry-On Compromise TA4922 Packs PackClient
Carry-On Compromise: TA4922 Packs PackClient Date Published: August 27, 2026 Source: Proofpoint 🚨 Proofpoint researchers have recently uncovered a new RAT framework named PackClient. This malware...