Visualização normal

Hoje — 8 de Setembro de 2026Cybersecurity News
  • ✇Cybersecurity News
  • September 2026 SAP Security Patch Day Fixes Critical Flaws Do Son
    The September 2026 SAP Security Patch Day resolves 20 flaws. Apply these SAP Security Patch Day updates to fix CVE-2026-44756 and secure your environment. Related Posts: ASUS Patches Control Center Express and Armoury Crate Flaws Public PoC Disclosed for ZcopyReaper Linux Vulnerability (CVE-2026-43502) SonicWall SMA 1000 Vulnerabilities Exploited in Wild (PoC) The post September 2026 SAP Security Patch Day Fixes Critical Flaws appeared first on Daily CyberSecurity.
     
  • ✇Cybersecurity News
  • Liquid Network Security Incident: The White Hat Dilemma Do Son
    Discover the details of the Liquid Network hack. A white hat attacker stole 4,000 Bitcoins but returned most of the funds to force a bug bounty payment. Related Posts: Outsider Phishing Kit Survives Operation Ghost Hook Takedown Phantom Deal Scam Targets Executives With Fake NDAs Microsoft Teams IT Support Impersonation Leads to Domain Takeover The post Liquid Network Security Incident: The White Hat Dilemma appeared first on Daily CyberSecurity.
     
  • ✇Cybersecurity News
  • Node.js Malware Attacks Target Tech and Finance Sectors Do Son
    Recent Node.js malware attacks target global firms. Attackers deploy Node.js malware using trusted runtimes and smart contracts to evade detection. Related Posts: Pegasus Spyware Hits Serbian Student Activist via Zero-Click iMessage Python NodeStealer Adds Keylogging and Screen Capture Spyware Packagist Themes iOS Spyware Steals Crypto Wallet Seeds The post Node.js Malware Attacks Target Tech and Finance Sectors appeared first on Daily CyberSecurity.
     
  • ✇Cybersecurity News
  • CVE-2026-75650 (CVSS 10): Adobe Commerce Arbitrary Code Execution Exploited in the Wild Do Son
    An Adobe Commerce vulnerability, CVE-2026-75650 (CVSS 10), enables unauthenticated arbitrary code execution and is exploited in the wild. Patch now. Related Posts: September 2026 SAP Security Patch Day Fixes Critical Flaws ASUS Patches Control Center Express and Armoury Crate Flaws Public PoC Disclosed for ZcopyReaper Linux Vulnerability (CVE-2026-43502) The post CVE-2026-75650 (CVSS 10): Adobe Commerce Arbitrary Code Execution Exploited in the Wild appeared first on Daily CyberSecurity.
     
  • ✇Cybersecurity News
  • CVE-2026-76578 (CVSS 9.8): Critical FreeIPA Vulnerability Do Son
    Patch the critical FreeIPA CVE-2026-76578 immediately. This FreeIPA vulnerability allows complete, unauthenticated administrative access to your servers. Related Posts: September 2026 SAP Security Patch Day Fixes Critical Flaws ASUS Patches Control Center Express and Armoury Crate Flaws Public PoC Disclosed for ZcopyReaper Linux Vulnerability (CVE-2026-43502) The post CVE-2026-76578 (CVSS 9.8): Critical FreeIPA Vulnerability appeared first on Daily CyberSecurity.
     
  • ✇Cybersecurity News
  • Packagist Themes iOS Spyware Steals Crypto Wallet Seeds Do Son
    Researchers discovered malicious Packagist themes iOS spyware infecting unpatched iPhones. This spyware targets crypto wallets and steals device data. Related Posts: Pegasus Spyware Hits Serbian Student Activist via Zero-Click iMessage Node.js Malware Attacks Target Tech and Finance Sectors Python NodeStealer Adds Keylogging and Screen Capture Spyware The post Packagist Themes iOS Spyware Steals Crypto Wallet Seeds appeared first on Daily CyberSecurity.
     
Ontem — 7 de Setembro de 2026Cybersecurity News
  • ✇Cybersecurity News
  • CVE-2026-86218 (CVSS 10): N-central Pre-Auth RCE Exploited in the Wild Do Son
    The N-able N-central vulnerability CVE-2026-86218 is a CVSS 10 pre-auth RCE reported exploited in the wild. Apply 2026.3 HF4 immediately. Related Posts: MikroTrick PoC: RouterOS Admin Rights Exploited In Wild AI Agent Coordination: The Unprecedented OpenAI Breakout Roundcube Security Update Fixes 12 Webmail Flaws The post CVE-2026-86218 (CVSS 10): N-central Pre-Auth RCE Exploited in the Wild appeared first on Daily CyberSecurity.
     
  • ✇Cybersecurity News
  • StreamRat Banking Trojan Targets Spanish Android Users Do Son
    A StreamRat banking trojan campaign uses fake Meta TV-streaming ads to infect Android users. The StreamRat banking trojan enables full device takeover. Related Posts: PHP Web Server Rootkit Targets F5 BIG-IP Devices Silver Fox Fake Software Installers Disable Windows Defender The Gentlemen Ransomware Deploys in Under 24 Hours The post StreamRat Banking Trojan Targets Spanish Android Users appeared first on Daily CyberSecurity.
     
  • ✇Cybersecurity News
  • AI Agent Coordination: The Unprecedented OpenAI Breakout Do Son
    Discover how autonomous AI agent coordination led to an unprecedented breakout on DSEWiki. OpenAI models created shared memories to bypass test constraints. Related Posts: CVE-2026-86218 (CVSS 10): N-central Pre-Auth RCE Exploited in the Wild MikroTrick PoC: RouterOS Admin Rights Exploited In Wild Roundcube Security Update Fixes 12 Webmail Flaws The post AI Agent Coordination: The Unprecedented OpenAI Breakout appeared first on Daily CyberSecurity.
     
  • ✇Cybersecurity News
  • Roundcube Security Update Fixes 12 Webmail Flaws Do Son
    The Roundcube security update fixes 12 webmail flaws, including a zero-click stored XSS and an SSRF bypass. Update to 1.6.19 or 1.7.4 now. Related Posts: CVE-2026-86218 (CVSS 10): N-central Pre-Auth RCE Exploited in the Wild MikroTrick PoC: RouterOS Admin Rights Exploited In Wild AI Agent Coordination: The Unprecedented OpenAI Breakout The post Roundcube Security Update Fixes 12 Webmail Flaws appeared first on Daily CyberSecurity.
     
Antes de ontemCybersecurity News
  • ✇Cybersecurity News
  • MikroTik RouterOS Vulnerability Exploited in the Wild: Patch and Defense Blueprint Do Son
    A critical MikroTik RouterOS vulnerability is actively exploited in the wild. Learn how to detect rogue ops accounts and apply the latest firmware updates. Related Posts: CVE-2026-86218 (CVSS 10): N-central Pre-Auth RCE Exploited in the Wild MikroTrick PoC: RouterOS Admin Rights Exploited In Wild AI Agent Coordination: The Unprecedented OpenAI Breakout The post MikroTik RouterOS Vulnerability Exploited in the Wild: Patch and Defense Blueprint appeared first on Daily CyberSecurity.
     
  • ✇Cybersecurity News
  • StyleSmuggler: Magento Zero-Day RCE Exploited in the Wild Do Son
    StyleSmuggler, a Magento zero-day, gives unauthenticated remote code execution and is exploited in the wild. No patch yet. Mitigate now. Related Posts: CVE-2026-86218 (CVSS 10): N-central Pre-Auth RCE Exploited in the Wild MikroTrick PoC: RouterOS Admin Rights Exploited In Wild AI Agent Coordination: The Unprecedented OpenAI Breakout The post StyleSmuggler: Magento Zero-Day RCE Exploited in the Wild appeared first on Daily CyberSecurity.
     
  • ✇Cybersecurity News
  • US Offers $10M for IRGC Cyber Leader Do Son
    The US offers a $10 million reward for Amir Yaryab, an IRGC cyber commander linked to CyberAv3ngers attacks on critical water infrastructure. Related Posts: Mirage Kitten Malware Targets Aviation and Fintech Sectors Coder Registry Attack: Hijacked Cloudflare Pool Served Malicious Terraform Modules Toy Ghouls Backdoor Uses HiveMQ and Element for C2 The post US Offers $10M for IRGC Cyber Leader appeared first on Daily CyberSecurity.
     
  • ✇Cybersecurity News
  • Coder Registry Attack: Hijacked Cloudflare Pool Served Malicious Terraform Modules Do Son
    The Coder registry attack hijacked Cloudflare IPs to serve malicious Terraform modules from registry.coder.com, stealing developer secrets. Related Posts: Mirage Kitten Malware Targets Aviation and Fintech Sectors US Offers $10M for IRGC Cyber Leader Toy Ghouls Backdoor Uses HiveMQ and Element for C2 The post Coder Registry Attack: Hijacked Cloudflare Pool Served Malicious Terraform Modules appeared first on Daily CyberSecurity.
     
  • ✇Cybersecurity News
  • Trezor Data Breach at ShipMonk Grows to 80,000 Customers Do Son
    The Trezor data breach at shipping partner ShipMonk exposed about 80,000 customers' order data. Wallets are safe, but phishing risk is high. Related Posts: Massive IDScan Data Breach Reported Independent Investigation Reveals 1,200 OpenAI Agents Breached Isolation in Hugging Face Attack JetBrains Cadence Server Compromised The post Trezor Data Breach at ShipMonk Grows to 80,000 Customers appeared first on Daily CyberSecurity.
     
  • ✇Cybersecurity News
  • FreeSWITCH api-chat RCE Exploited in the Wild, Patch Now Do Son
    A FreeSWITCH vulnerability in api-chat enables remote code execution and is exploited in the wild. Upgrade to 1.11.3 now to stay safe. Related Posts: Linux Kernel Vulnerability CVE-2024-26582: Public PoC Reaches Root Shell NTLM Reflection Bypass CVE-2026-24294 Gets Public PoC Exploit Public Details Disclosed: MediaTek t7xx WWAN Flaw The post FreeSWITCH api-chat RCE Exploited in the Wild, Patch Now appeared first on Daily CyberSecurity.
     
  • ✇Cybersecurity News
  • AWS Password Spraying Campaign Targets Root Accounts Do Son
    Datadog uncovered an AWS password spraying campaign targeting cloud environments. Protect your accounts against this AWS password spraying activity now. Related Posts: US Offers $10M for IRGC Cyber Leader Coder Registry Attack: Hijacked Cloudflare Pool Served Malicious Terraform Modules Toy Ghouls Backdoor Uses HiveMQ and Element for C2 The post AWS Password Spraying Campaign Targets Root Accounts appeared first on Daily CyberSecurity.
     
  • ✇Cybersecurity News
  • TP-Link Archer AX55 Flaws Expose Routers to Code Execution Do Son
    A TP-Link Archer AX55 vulnerability (CVE-2026-18167) risks remote code execution via EasyMesh buffer overflow. Update to build 20260527 now. Related Posts: MikroTik RouterOS Vulnerability Exploited in the Wild: Patch and Defense Blueprint StyleSmuggler: Magento Zero-Day RCE Exploited in the Wild CVE-2026-75754 (CVSS 10): ASUS Control Center Root RCE The post TP-Link Archer AX55 Flaws Expose Routers to Code Execution appeared first on Daily CyberSecurity.
     
  • ✇Cybersecurity News
  • Super Forms Vulnerability Exploited in the Wild: 13,000 Sites Face 9.8 CVSS Remote Code Execution Do Son
    CVE-2026-14894, a critical Super Forms vulnerability, is exploited in the wild. The 9.8 CVSS file upload flaw enables unauthenticated remote code execution. Related Posts: MikroTik RouterOS Vulnerability Exploited in the Wild: Patch and Defense Blueprint StyleSmuggler: Magento Zero-Day RCE Exploited in the Wild CVE-2026-75754 (CVSS 10): ASUS Control Center Root RCE The post Super Forms Vulnerability Exploited in the Wild: 13,000 Sites Face 9.8 CVSS Remote Code Execution appeared first on Dail
     
  • ✇Cybersecurity News
  • BraZetsu Malware Framework Powers Initial Access Sales Do Son
    Group-IB uncovered the BraZetsu malware framework operations targeting financial systems. Learn how this tool powers initial access broker sales. Related Posts: US Offers $10M for IRGC Cyber Leader Coder Registry Attack: Hijacked Cloudflare Pool Served Malicious Terraform Modules Toy Ghouls Backdoor Uses HiveMQ and Element for C2 The post BraZetsu Malware Framework Powers Initial Access Sales appeared first on Daily CyberSecurity.
     
❌
❌