⤷ Title: Actively Exploited Google Chrome Zero-Day (CVE-2025-6554) Added to CISA’s KEV Catalog, PoC Available
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 03 Jul 2025 02:43:32 +0000
════════════════════════
⌗ Tags: #Vulnerability #chrome #CISA KEV #CVE_2025_6554 #cybersecurity #Exploited in Wild #google chrome #JavaScript Engine #rce #Remote Code Execution #Type Confusion #V8 #zero_day
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 03 Jul 2025 02:43:32 +0000
════════════════════════
⌗ Tags: #Vulnerability #chrome #CISA KEV #CVE_2025_6554 #cybersecurity #Exploited in Wild #google chrome #JavaScript Engine #rce #Remote Code Execution #Type Confusion #V8 #zero_day
Daily CyberSecurity
Actively Exploited Google Chrome Zero-Day (CVE-2025-6554) Added to CISA’s KEV Catalog, PoC Available
Google has urgently patched a high-severity zero-day (CVE-2025-6554) in Chrome's V8 JavaScript engine. This type confusion flaw is actively exploited in the wild, risking RCE.
⤷ Title: Microsoft Edge Alert: Two High-Severity Flaws (CVE-2025-6554, CVE-2025-49713) Allow Remote Code Execution, One Actively Exploited
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 04 Jul 2025 00:50:41 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_49713 #CVE_2025_6554 #cybersecurity #Edge #Exploited in Wild #microsoft edge #rce #Remote Code Execution #Type Confusion #V8 #Vulnerability #zero_day
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 04 Jul 2025 00:50:41 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_49713 #CVE_2025_6554 #cybersecurity #Edge #Exploited in Wild #microsoft edge #rce #Remote Code Execution #Type Confusion #V8 #Vulnerability #zero_day
Daily CyberSecurity
Microsoft Edge Alert: Two High-Severity Flaws (CVE-2025-6554, CVE-2025-49713) Allow Remote Code Execution, One Actively Exploited
Microsoft Edge version 138.0.3351.65 fixes two RCE flaws: a V8 zero-day (CVE-2025-6554) actively exploited, and an Edge-specific type confusion (CVE-2025-49713).
⤷ Title: CISA Warns: TeleMessage TM SGNL Actively Exploited for Data Leaks, Patch by July 22
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sat, 05 Jul 2025 03:28:08 +0000
════════════════════════
⌗ Tags: #Vulnerability #CISA #CVE_2025_48927 #CVE_2025_48928 #cybersecurity #data leak #Exploited in Wild #Government #Heap Dump #Memory Dump #Spring Boot Actuator #TeleMessage TM SGNL #vulnerability
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sat, 05 Jul 2025 03:28:08 +0000
════════════════════════
⌗ Tags: #Vulnerability #CISA #CVE_2025_48927 #CVE_2025_48928 #cybersecurity #data leak #Exploited in Wild #Government #Heap Dump #Memory Dump #Spring Boot Actuator #TeleMessage TM SGNL #vulnerability
Penetration Testing Tools
CISA Warns: TeleMessage TM SGNL Actively Exploited for Data Leaks, Patch by July 22
CISA warns of active exploitation of TeleMessage TM SGNL (CVE-2025-48927, CVE-2025-48928), exposing memory dumps & passwords. Federal agencies must patch or cease use by July 22.
⤷ Title: Critical Wing FTP Server RCE (CVE-2025-47812) Actively Exploited In The Wild
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 11 Jul 2025 00:38:50 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_47812 #cybersecurity #Exploited in Wild #FTP Server #Huntress #Lua #Null Byte Injection #rce #Remote Code Execution #Vulnerability #Wing FTP Server
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 11 Jul 2025 00:38:50 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_47812 #cybersecurity #Exploited in Wild #FTP Server #Huntress #Lua #Null Byte Injection #rce #Remote Code Execution #Vulnerability #Wing FTP Server
Daily CyberSecurity
Critical Wing FTP Server RCE (CVE-2025-47812) Actively Exploited In The Wild
Huntress witnessed active exploitation of a critical RCE flaw (CVE-2025-47812) in Wing FTP Server, allowing root/SYSTEM access via null byte injection and Lua code execution.
⤷ Title: CitrixBleed 2: CVE-2025-5777 Joins CISA’s KEV Catalog Amid Active Exploitation Storm, PoC Available
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 11 Jul 2025 02:13:28 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #ADC #CISA KEV #Citrix #Citrix Bleed 2 #CVE_2025_5777 #cybersecurity #Exploited in Wild #Gateway #MFA Bypass #NetScaler #out_of_bounds read #Session Hijacking #Vulnerability
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 11 Jul 2025 02:13:28 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #ADC #CISA KEV #Citrix #Citrix Bleed 2 #CVE_2025_5777 #cybersecurity #Exploited in Wild #Gateway #MFA Bypass #NetScaler #out_of_bounds read #Session Hijacking #Vulnerability
Daily CyberSecurity
CitrixBleed 2: CVE-2025-5777 Joins CISA’s KEV Catalog Amid Active Exploitation Storm, PoC Available
CISA adds critical CitrixBleed 2 (CVE-2025-5777, CVSS 9.2) to KEV, confirming active exploitation. Attackers are extracting session tokens to bypass MFA and hijack sessions on NetScaler ADC/Gateway
⤷ Title: CISA Warns of Active Exploitation of Wing FTP Server Flaw (CVE-2025-47812), CVSS 10
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 15 Jul 2025 00:55:03 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_47812 #cybersecurity #Exploited in Wild #FTP Server #Huntress #Lua #Null Byte Injection #rce #Remote Code Execution #Vulnerability #Wing FTP Server
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 15 Jul 2025 00:55:03 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_47812 #cybersecurity #Exploited in Wild #FTP Server #Huntress #Lua #Null Byte Injection #rce #Remote Code Execution #Vulnerability #Wing FTP Server
Daily CyberSecurity
CISA Warns of Active Exploitation of Wing FTP Server Flaw (CVE-2025-47812), CVSS 10
CISA adds critical Wing FTP Server RCE flaw (CVE-2025-47812, CVSS 10.0) to KEV. Actively exploited via null byte and Lua code injection; patch to 7.4.4 immediately!
⤷ Title: Exploited in the Wild: Critical Ivanti EPMM RCE Flaws (CVSS 9.8) Under Attack
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 30 Jan 2026 01:52:21 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_1281 #CVE_2026_1340 #exploited in the wild #Ivanti EPMM #MDM #mobile security #MobileIron Core #rce #Remote Code Execution #unauthenticated RCE #zero_day
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 30 Jan 2026 01:52:21 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_1281 #CVE_2026_1340 #exploited in the wild #Ivanti EPMM #MDM #mobile security #MobileIron Core #rce #Remote Code Execution #unauthenticated RCE #zero_day
Daily CyberSecurity
Exploited in the Wild: Critical Ivanti EPMM RCE Flaws (CVSS 9.8) Under Attack
Ivanti confirms critical EPMM RCE flaws (CVE-2026-1281) are exploited in the wild. Unauthenticated attackers can compromise MDM. Patch immediately.
⤷ Title: Critical Alert: Chrome Zero-Day (CVE-2026-2441) Exploited in the Wild
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sun, 15 Feb 2026 01:47:38 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #browser security #CSS Vulnerability #CVE_2026_2441 #exploited in the wild #google chrome #infosec #Patch Alert #Remote Code Execution #use after free #zero_day
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sun, 15 Feb 2026 01:47:38 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #browser security #CSS Vulnerability #CVE_2026_2441 #exploited in the wild #google chrome #infosec #Patch Alert #Remote Code Execution #use after free #zero_day
Daily CyberSecurity
Critical Alert: Chrome Zero-Day (CVE-2026-2441) Exploited in the Wild
Google patches critical zero-day CVE-2026-2441. Attackers are exploiting this CSS use-after-free flaw in the wild. Update to Chrome 145 immediately.
⤷ Title: Exploited in the Wild & PoC Disclosed: Emergency Chrome Zero-Day (CVE-2026-2441) Patched
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 20 Feb 2026 08:00:53 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_2441 #cybersecurity #exploited in the wild #google chrome #memory corruption #Patch Alert #PoC Disclosed #UAF #use after free #zero_day
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 20 Feb 2026 08:00:53 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_2441 #cybersecurity #exploited in the wild #google chrome #memory corruption #Patch Alert #PoC Disclosed #UAF #use after free #zero_day
Daily CyberSecurity
Exploited in the Wild & PoC Disclosed: Emergency Chrome Zero-Day (CVE-2026-2441) Patched
Google patches Chrome zero-day CVE-2026-2441, an actively exploited memory flaw. With PoC exploit code now publicly disclosed, update to v145 immediately.
⤷ Title: Under Active Attack: Critical 9.8 CVSS Tutor LMS Pro Flaw Exploited in the Wild for Full Site Takeover
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 10 Mar 2026 02:40:05 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Authentication Bypass #CVE_2026_0953 #cybersecurity #exploited in the wild #infosec #Patch Alert #Social Login Flaw #Tutor LMS Pro #Vulnerability #wordpress security
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 10 Mar 2026 02:40:05 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Authentication Bypass #CVE_2026_0953 #cybersecurity #exploited in the wild #infosec #Patch Alert #Social Login Flaw #Tutor LMS Pro #Vulnerability #wordpress security
Daily CyberSecurity
Under Active Attack: Critical 9.8 CVSS Tutor LMS Pro Flaw Exploited in the Wild for Full Site Takeover
A critical 9.8 CVSS authentication bypass (CVE-2026-0953) in Tutor LMS Pro is being actively exploited in the wild. Update to version 3.9.6 immediately.