⤷ Title: Actively Exploited Google Chrome Zero-Day (CVE-2025-6554) Added to CISA’s KEV Catalog, PoC Available
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 03 Jul 2025 02:43:32 +0000
════════════════════════
⌗ Tags: #Vulnerability #chrome #CISA KEV #CVE_2025_6554 #cybersecurity #Exploited in Wild #google chrome #JavaScript Engine #rce #Remote Code Execution #Type Confusion #V8 #zero_day
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 03 Jul 2025 02:43:32 +0000
════════════════════════
⌗ Tags: #Vulnerability #chrome #CISA KEV #CVE_2025_6554 #cybersecurity #Exploited in Wild #google chrome #JavaScript Engine #rce #Remote Code Execution #Type Confusion #V8 #zero_day
Daily CyberSecurity
Actively Exploited Google Chrome Zero-Day (CVE-2025-6554) Added to CISA’s KEV Catalog, PoC Available
Google has urgently patched a high-severity zero-day (CVE-2025-6554) in Chrome's V8 JavaScript engine. This type confusion flaw is actively exploited in the wild, risking RCE.
⤷ Title: Microsoft Edge Alert: Two High-Severity Flaws (CVE-2025-6554, CVE-2025-49713) Allow Remote Code Execution, One Actively Exploited
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 04 Jul 2025 00:50:41 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_49713 #CVE_2025_6554 #cybersecurity #Edge #Exploited in Wild #microsoft edge #rce #Remote Code Execution #Type Confusion #V8 #Vulnerability #zero_day
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 04 Jul 2025 00:50:41 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_49713 #CVE_2025_6554 #cybersecurity #Edge #Exploited in Wild #microsoft edge #rce #Remote Code Execution #Type Confusion #V8 #Vulnerability #zero_day
Daily CyberSecurity
Microsoft Edge Alert: Two High-Severity Flaws (CVE-2025-6554, CVE-2025-49713) Allow Remote Code Execution, One Actively Exploited
Microsoft Edge version 138.0.3351.65 fixes two RCE flaws: a V8 zero-day (CVE-2025-6554) actively exploited, and an Edge-specific type confusion (CVE-2025-49713).
⤷ Title: CISA Warns: TeleMessage TM SGNL Actively Exploited for Data Leaks, Patch by July 22
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sat, 05 Jul 2025 03:28:08 +0000
════════════════════════
⌗ Tags: #Vulnerability #CISA #CVE_2025_48927 #CVE_2025_48928 #cybersecurity #data leak #Exploited in Wild #Government #Heap Dump #Memory Dump #Spring Boot Actuator #TeleMessage TM SGNL #vulnerability
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sat, 05 Jul 2025 03:28:08 +0000
════════════════════════
⌗ Tags: #Vulnerability #CISA #CVE_2025_48927 #CVE_2025_48928 #cybersecurity #data leak #Exploited in Wild #Government #Heap Dump #Memory Dump #Spring Boot Actuator #TeleMessage TM SGNL #vulnerability
Penetration Testing Tools
CISA Warns: TeleMessage TM SGNL Actively Exploited for Data Leaks, Patch by July 22
CISA warns of active exploitation of TeleMessage TM SGNL (CVE-2025-48927, CVE-2025-48928), exposing memory dumps & passwords. Federal agencies must patch or cease use by July 22.
⤷ Title: Critical Wing FTP Server RCE (CVE-2025-47812) Actively Exploited In The Wild
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 11 Jul 2025 00:38:50 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_47812 #cybersecurity #Exploited in Wild #FTP Server #Huntress #Lua #Null Byte Injection #rce #Remote Code Execution #Vulnerability #Wing FTP Server
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 11 Jul 2025 00:38:50 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_47812 #cybersecurity #Exploited in Wild #FTP Server #Huntress #Lua #Null Byte Injection #rce #Remote Code Execution #Vulnerability #Wing FTP Server
Daily CyberSecurity
Critical Wing FTP Server RCE (CVE-2025-47812) Actively Exploited In The Wild
Huntress witnessed active exploitation of a critical RCE flaw (CVE-2025-47812) in Wing FTP Server, allowing root/SYSTEM access via null byte injection and Lua code execution.
⤷ Title: CitrixBleed 2: CVE-2025-5777 Joins CISA’s KEV Catalog Amid Active Exploitation Storm, PoC Available
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 11 Jul 2025 02:13:28 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #ADC #CISA KEV #Citrix #Citrix Bleed 2 #CVE_2025_5777 #cybersecurity #Exploited in Wild #Gateway #MFA Bypass #NetScaler #out_of_bounds read #Session Hijacking #Vulnerability
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 11 Jul 2025 02:13:28 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #ADC #CISA KEV #Citrix #Citrix Bleed 2 #CVE_2025_5777 #cybersecurity #Exploited in Wild #Gateway #MFA Bypass #NetScaler #out_of_bounds read #Session Hijacking #Vulnerability
Daily CyberSecurity
CitrixBleed 2: CVE-2025-5777 Joins CISA’s KEV Catalog Amid Active Exploitation Storm, PoC Available
CISA adds critical CitrixBleed 2 (CVE-2025-5777, CVSS 9.2) to KEV, confirming active exploitation. Attackers are extracting session tokens to bypass MFA and hijack sessions on NetScaler ADC/Gateway
⤷ Title: CISA Warns of Active Exploitation of Wing FTP Server Flaw (CVE-2025-47812), CVSS 10
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 15 Jul 2025 00:55:03 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_47812 #cybersecurity #Exploited in Wild #FTP Server #Huntress #Lua #Null Byte Injection #rce #Remote Code Execution #Vulnerability #Wing FTP Server
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 15 Jul 2025 00:55:03 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_47812 #cybersecurity #Exploited in Wild #FTP Server #Huntress #Lua #Null Byte Injection #rce #Remote Code Execution #Vulnerability #Wing FTP Server
Daily CyberSecurity
CISA Warns of Active Exploitation of Wing FTP Server Flaw (CVE-2025-47812), CVSS 10
CISA adds critical Wing FTP Server RCE flaw (CVE-2025-47812, CVSS 10.0) to KEV. Actively exploited via null byte and Lua code injection; patch to 7.4.4 immediately!
⤷ Title: Exploited in the Wild: Critical Ivanti EPMM RCE Flaws (CVSS 9.8) Under Attack
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 30 Jan 2026 01:52:21 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_1281 #CVE_2026_1340 #exploited in the wild #Ivanti EPMM #MDM #mobile security #MobileIron Core #rce #Remote Code Execution #unauthenticated RCE #zero_day
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 30 Jan 2026 01:52:21 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_1281 #CVE_2026_1340 #exploited in the wild #Ivanti EPMM #MDM #mobile security #MobileIron Core #rce #Remote Code Execution #unauthenticated RCE #zero_day
Daily CyberSecurity
Exploited in the Wild: Critical Ivanti EPMM RCE Flaws (CVSS 9.8) Under Attack
Ivanti confirms critical EPMM RCE flaws (CVE-2026-1281) are exploited in the wild. Unauthenticated attackers can compromise MDM. Patch immediately.
⤷ Title: Critical Alert: Chrome Zero-Day (CVE-2026-2441) Exploited in the Wild
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sun, 15 Feb 2026 01:47:38 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #browser security #CSS Vulnerability #CVE_2026_2441 #exploited in the wild #google chrome #infosec #Patch Alert #Remote Code Execution #use after free #zero_day
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sun, 15 Feb 2026 01:47:38 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #browser security #CSS Vulnerability #CVE_2026_2441 #exploited in the wild #google chrome #infosec #Patch Alert #Remote Code Execution #use after free #zero_day
Daily CyberSecurity
Critical Alert: Chrome Zero-Day (CVE-2026-2441) Exploited in the Wild
Google patches critical zero-day CVE-2026-2441. Attackers are exploiting this CSS use-after-free flaw in the wild. Update to Chrome 145 immediately.
⤷ Title: Exploited in the Wild & PoC Disclosed: Emergency Chrome Zero-Day (CVE-2026-2441) Patched
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 20 Feb 2026 08:00:53 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_2441 #cybersecurity #exploited in the wild #google chrome #memory corruption #Patch Alert #PoC Disclosed #UAF #use after free #zero_day
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 20 Feb 2026 08:00:53 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_2441 #cybersecurity #exploited in the wild #google chrome #memory corruption #Patch Alert #PoC Disclosed #UAF #use after free #zero_day
Daily CyberSecurity
Exploited in the Wild & PoC Disclosed: Emergency Chrome Zero-Day (CVE-2026-2441) Patched
Google patches Chrome zero-day CVE-2026-2441, an actively exploited memory flaw. With PoC exploit code now publicly disclosed, update to v145 immediately.
⤷ Title: Under Active Attack: Critical 9.8 CVSS Tutor LMS Pro Flaw Exploited in the Wild for Full Site Takeover
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 10 Mar 2026 02:40:05 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Authentication Bypass #CVE_2026_0953 #cybersecurity #exploited in the wild #infosec #Patch Alert #Social Login Flaw #Tutor LMS Pro #Vulnerability #wordpress security
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 10 Mar 2026 02:40:05 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Authentication Bypass #CVE_2026_0953 #cybersecurity #exploited in the wild #infosec #Patch Alert #Social Login Flaw #Tutor LMS Pro #Vulnerability #wordpress security
Daily CyberSecurity
Under Active Attack: Critical 9.8 CVSS Tutor LMS Pro Flaw Exploited in the Wild for Full Site Takeover
A critical 9.8 CVSS authentication bypass (CVE-2026-0953) in Tutor LMS Pro is being actively exploited in the wild. Update to version 3.9.6 immediately.
⤷ Title: Under Active Attack: Critical 9.1 CVSS FortiClient EMS Flaw Exploited in the Wild
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 04 Apr 2026 01:35:30 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_35616 #Enterprise Security #exploited in the wild #FortiClient EMS #Fortinet #Hotfix #Improper Access Control #infosec #rce #security patch #zero_day
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 04 Apr 2026 01:35:30 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_35616 #Enterprise Security #exploited in the wild #FortiClient EMS #Fortinet #Hotfix #Improper Access Control #infosec #rce #security patch #zero_day
Daily CyberSecurity
Under Active Attack: Critical 9.1 CVSS FortiClient EMS Flaw Exploited in the Wild
Security teams are on high alert as Fortinet confirms that a critical vulnerability in its FortiClient EMS (Endpoint Management Server) is currently being leveraged by attackers in active campaign…
⤷ Title: Cisco Unified CM RCE Flaw Exploited in the Wild as PoC Code Goes Public
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Mon, 29 Jun 2026 02:30:15 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CISA KEV #cisco #Cisco Unified CM #CUCM #CVE_2026_20230 #exploited in the wild #proof_of_concept #rce #ssrf #WebDialer
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Mon, 29 Jun 2026 02:30:15 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CISA KEV #cisco #Cisco Unified CM #CUCM #CVE_2026_20230 #exploited in the wild #proof_of_concept #rce #ssrf #WebDialer
Daily CyberSecurity
Cisco Unified CM RCE Flaw Exploited in the Wild as PoC Code Goes Public
TL;DR Attackers are exploiting a Cisco Unified CM RCE flaw in live attacks. Tracked as CVE-2026-20230, it carries a CVSS score of 8.6. Researchers have now published full technical details and pro…
⤷ Title: Citrix NetScaler Vulnerability CVE-2026-8451 Exploited in the Wild as PoC Goes Public
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 02 Jul 2026 17:12:06 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Citrix #CitrixBleed #CVE_2026_8451 #exploited in the wild #NetScaler
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 02 Jul 2026 17:12:06 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Citrix #CitrixBleed #CVE_2026_8451 #exploited in the wild #NetScaler
Daily CyberSecurity
Citrix NetScaler Vulnerability CVE-2026-8451 Exploited in the Wild as PoC Goes Public
TL;DR Attackers are exploiting a Citrix NetScaler vulnerability in the wild, tracked as CVE-2026-8451 (CVSS 8.8). The pre-auth memory overread affects appliances configured as a SAML identity prov…
⤷ Title: Django SQL Injection Flaw CVE-2026-1207 Is Being Exploited in the Wild
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 02:56:37 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Crowdsec #CVE_2026_1207 #Django #exploited in the wild #PostGIS #RasterField #red hat #sql injection
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Fri, 10 Jul 2026 02:56:37 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Crowdsec #CVE_2026_1207 #Django #exploited in the wild #PostGIS #RasterField #red hat #sql injection
Daily CyberSecurity
Django SQL Injection Flaw CVE-2026-1207 Is Being Exploited in the Wild
TL;DR CVE-2026-1207 is a high-severity Django SQL injection flaw, scored 8.3. It affects RasterField lookups when Django runs on a PostGIS database. Security firm CrowdSec and Canada’s cyber…
⤷ Title: CVE-2026-50522 SharePoint RCE Flaw Exploited in the Wild With Public PoC Exploit
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Tue, 21 Jul 2026 12:45:54 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_50522 #CVE_2026_58644 #Deserialization #DEVCORE #exploited in the wild #Microsoft #proof_of_concept #Remote Code Execution #Sharepoint #SharePoint RCE
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Tue, 21 Jul 2026 12:45:54 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_50522 #CVE_2026_58644 #Deserialization #DEVCORE #exploited in the wild #Microsoft #proof_of_concept #Remote Code Execution #Sharepoint #SharePoint RCE
Daily CyberSecurity
CVE-2026-50522 SharePoint RCE Flaw Exploited in the Wild With Public PoC Exploit
TL;DR CVE-2026-50522 is a critical SharePoint RCE flaw rated CVSS 9.8. Researchers report active exploitation attempts, and a public proof-of-concept exploit is now available. Microsoft patched th…