Related Threat Clusters
-
Critical Exploitation of Cisco CM and Samsung KNOX Vulnerabilities
Active exploitation of two critical vulnerabilities has been reported: CVE-2026-20230 in Cisco Unified CM and CVE-2026-20971 in Samsung KNOX. The Cisco flaw, a server-side request forgery (SSRF), poses an immediate…
4 articles · Updated June 23, 2026 -
Lazarus Group Exploits Windows Zero-Day to Target Defense Sector
The North Korean hacking group Lazarus exploited a zero-day vulnerability (CVE-2026-68820) in the Windows Ancillary Function Driver for WinSock (afd.sys) to gain SYSTEM-level access to defense sector systems. This…
33 articles · Updated August 12, 2026 -
Critical Chrome Zero-Day CVE-2026-85046 Exploited in the Wild
Google has released an emergency update for Chrome to address CVE-2026-85046, a high-severity zero-day vulnerability in the V8 JavaScript and WebAssembly engine, rated 8.8 on the CVSS scale. The flaw, identified as a…
43 articles · Updated September 4, 2026 -
F5 Issues Critical Patches for NGINX Vulnerabilities Allowing Remote Code Execution
On June 17, 2026, F5 released emergency patches for two critical vulnerabilities in NGINX, CVE-2026-42530 and CVE-2026-42055. These vulnerabilities affect NGINX Open Source, NGINX Plus, and related products, allowing…
24 articles · Updated June 18, 2026 -
Microsoft September 2026 Patch Tuesday Addresses 973 Vulnerabilities, Two Zero-Days Exploited
On September 8, 2026, Microsoft released its largest Patch Tuesday update, addressing a record 973 vulnerabilities, including 113 rated critical. Among these, two zero-day vulnerabilities, CVE-2026-81963 and…
15 articles · Updated September 8, 2026 -
Critical Bad Epoll Vulnerability Grants Root Access to Unprivileged Users
A newly disclosed Linux kernel vulnerability, named Bad Epoll (CVE-2026-46242), allows unprivileged local users to escalate to root privileges on systems running kernel version 6.4 or later. This use-after-free…
16 articles · Updated July 4, 2026 -
Critical XSS and Memory Vulnerabilities in Oracle PHP Releases
Oracle has released important security updates for PHP versions 7.4 and 8.0, addressing multiple vulnerabilities including critical cross-site scripting (XSS) flaws and memory management issues. The updates fix…
2 articles · Updated July 6, 2026 -
Critical Python Vulnerabilities Affect Multiple Versions
Recent security updates for Python 3.10, 3.12, and 3.15 address critical vulnerabilities impacting various systems. Key vulnerabilities include CVE-2026-1502, which allows HTTP header injection, and CVE-2026-6100, which…
11 articles · Updated April 20, 2026 -
Critical Januscape Vulnerability in Linux KVM Exposes Cloud Servers to Attacks
A critical vulnerability in Linux KVM, named Januscape (CVE-2026-53359), has been discovered after lying dormant for 16 years. This flaw allows attackers with root access in a guest virtual machine to escape to the host…
31 articles · Updated July 7, 2026 -
Critical Denial of Service Vulnerabilities in openSUSE freerdp
Multiple critical vulnerabilities have been identified in the freerdp component of openSUSE, affecting versions 15.4 and 15.6. The vulnerabilities include CVE-2026-25941, CVE-2026-25942, CVE-2026-25952, CVE-2026-25953,…
8 articles · Updated April 27, 2026
Recent Intelligence Reports
- September 2026 Microsoft Patch Tuesday — Daily.Dev · September 8, 2026
- Microsoft’s September 2026 Patch Tuesday addresses 964 CVEs (CVE-2026-81963, CVE-2026-85880) — Tenable · September 8, 2026
- CVE-2026 — Api.Msrc.Microsoft · September 8, 2026
- CVE-2026 — Api.Msrc.Microsoft · September 8, 2026
- CVE-2026 — Api.Msrc.Microsoft · September 8, 2026
- CVE-2026 — Api.Msrc.Microsoft · September 8, 2026
- CVE-2026-69413 Windows USB Audio Class driver (usbaudio.sys) Elevation of Privilege Vulnerability — Api.Msrc.Microsoft · September 8, 2026
- CVE-2026 — Api.Msrc.Microsoft · September 8, 2026