On April 24, 2026, CISA added four actively exploited vulnerabilities to its Known Exploited Vulnerabilities catalog. The affected products include SimpleHelp remote management software, Samsung MagicINFO 9 Server, and…
Two critical vulnerabilities in Ivanti's Endpoint Manager Mobile (EPMM), CVE-2026-1281 and CVE-2026-1340, have been actively exploited in the wild, allowing unauthenticated remote code execution (RCE) with a CVSS score…
The AryStinger botnet has infected more than 4,300 D-Link routers, specifically the DIR-850L and DIR-818LW models, which are no longer supported by the manufacturer. This malware, identified by researchers at Qianxin's…
Zbtlink routers have been identified with a backdoor named ENDLESSDOORS, which allows remote command execution. This issue was reported by VulnCheck's CTO Jacob Baines, who found the routers continuously attempting to…
Following U.S. military strikes on Iran, there is an anticipated increase in cyber warfare activities targeting U.S. operational technology and critical infrastructure. Iran is expected to retaliate with cyber attacks…
During the major AWS outage in October 2025, a Mirai-based botnet named ShadowV2 was identified infecting IoT devices across 28 countries. The botnet exploited known vulnerabilities in devices from manufacturers like…
Two command injection vulnerabilities have been discovered in the D-Link DIR-823X 250416 model. CVE-2026-2082, published on February 7, 2026, affects the /goform/set_mac_clone function, while CVE-2026-2063, published on…