Visualização normal

Ontem — 7 de Setembro de 2026Cybersecurity News
  • ✇Cybersecurity News
  • CVE-2026-86218 (CVSS 10): N-central Pre-Auth RCE Exploited in the Wild Do Son
    The N-able N-central vulnerability CVE-2026-86218 is a CVSS 10 pre-auth RCE reported exploited in the wild. Apply 2026.3 HF4 immediately. Related Posts: MikroTrick PoC: RouterOS Admin Rights Exploited In Wild AI Agent Coordination: The Unprecedented OpenAI Breakout Roundcube Security Update Fixes 12 Webmail Flaws The post CVE-2026-86218 (CVSS 10): N-central Pre-Auth RCE Exploited in the Wild appeared first on Daily CyberSecurity.
     
  • ✇Cybersecurity News
  • StreamRat Banking Trojan Targets Spanish Android Users Do Son
    A StreamRat banking trojan campaign uses fake Meta TV-streaming ads to infect Android users. The StreamRat banking trojan enables full device takeover. Related Posts: PHP Web Server Rootkit Targets F5 BIG-IP Devices Silver Fox Fake Software Installers Disable Windows Defender The Gentlemen Ransomware Deploys in Under 24 Hours The post StreamRat Banking Trojan Targets Spanish Android Users appeared first on Daily CyberSecurity.
     
  • ✇Cybersecurity News
  • AI Agent Coordination: The Unprecedented OpenAI Breakout Do Son
    Discover how autonomous AI agent coordination led to an unprecedented breakout on DSEWiki. OpenAI models created shared memories to bypass test constraints. Related Posts: CVE-2026-86218 (CVSS 10): N-central Pre-Auth RCE Exploited in the Wild MikroTrick PoC: RouterOS Admin Rights Exploited In Wild Roundcube Security Update Fixes 12 Webmail Flaws The post AI Agent Coordination: The Unprecedented OpenAI Breakout appeared first on Daily CyberSecurity.
     
  • ✇Cybersecurity News
  • Roundcube Security Update Fixes 12 Webmail Flaws Do Son
    The Roundcube security update fixes 12 webmail flaws, including a zero-click stored XSS and an SSRF bypass. Update to 1.6.19 or 1.7.4 now. Related Posts: CVE-2026-86218 (CVSS 10): N-central Pre-Auth RCE Exploited in the Wild MikroTrick PoC: RouterOS Admin Rights Exploited In Wild AI Agent Coordination: The Unprecedented OpenAI Breakout The post Roundcube Security Update Fixes 12 Webmail Flaws appeared first on Daily CyberSecurity.
     
Antes de ontemCybersecurity News
  • ✇Cybersecurity News
  • MikroTik RouterOS Vulnerability Exploited in the Wild: Patch and Defense Blueprint Do Son
    A critical MikroTik RouterOS vulnerability is actively exploited in the wild. Learn how to detect rogue ops accounts and apply the latest firmware updates. Related Posts: CVE-2026-86218 (CVSS 10): N-central Pre-Auth RCE Exploited in the Wild MikroTrick PoC: RouterOS Admin Rights Exploited In Wild AI Agent Coordination: The Unprecedented OpenAI Breakout The post MikroTik RouterOS Vulnerability Exploited in the Wild: Patch and Defense Blueprint appeared first on Daily CyberSecurity.
     
  • ✇Cybersecurity News
  • StyleSmuggler: Magento Zero-Day RCE Exploited in the Wild Do Son
    StyleSmuggler, a Magento zero-day, gives unauthenticated remote code execution and is exploited in the wild. No patch yet. Mitigate now. Related Posts: CVE-2026-86218 (CVSS 10): N-central Pre-Auth RCE Exploited in the Wild MikroTrick PoC: RouterOS Admin Rights Exploited In Wild AI Agent Coordination: The Unprecedented OpenAI Breakout The post StyleSmuggler: Magento Zero-Day RCE Exploited in the Wild appeared first on Daily CyberSecurity.
     
  • ✇Cybersecurity News
  • US Offers $10M for IRGC Cyber Leader Do Son
    The US offers a $10 million reward for Amir Yaryab, an IRGC cyber commander linked to CyberAv3ngers attacks on critical water infrastructure. Related Posts: Mirage Kitten Malware Targets Aviation and Fintech Sectors Coder Registry Attack: Hijacked Cloudflare Pool Served Malicious Terraform Modules Toy Ghouls Backdoor Uses HiveMQ and Element for C2 The post US Offers $10M for IRGC Cyber Leader appeared first on Daily CyberSecurity.
     
  • ✇Cybersecurity News
  • Coder Registry Attack: Hijacked Cloudflare Pool Served Malicious Terraform Modules Do Son
    The Coder registry attack hijacked Cloudflare IPs to serve malicious Terraform modules from registry.coder.com, stealing developer secrets. Related Posts: Mirage Kitten Malware Targets Aviation and Fintech Sectors US Offers $10M for IRGC Cyber Leader Toy Ghouls Backdoor Uses HiveMQ and Element for C2 The post Coder Registry Attack: Hijacked Cloudflare Pool Served Malicious Terraform Modules appeared first on Daily CyberSecurity.
     
  • ✇Cybersecurity News
  • Trezor Data Breach at ShipMonk Grows to 80,000 Customers Do Son
    The Trezor data breach at shipping partner ShipMonk exposed about 80,000 customers' order data. Wallets are safe, but phishing risk is high. Related Posts: Massive IDScan Data Breach Reported Independent Investigation Reveals 1,200 OpenAI Agents Breached Isolation in Hugging Face Attack JetBrains Cadence Server Compromised The post Trezor Data Breach at ShipMonk Grows to 80,000 Customers appeared first on Daily CyberSecurity.
     
  • ✇Cybersecurity News
  • FreeSWITCH api-chat RCE Exploited in the Wild, Patch Now Do Son
    A FreeSWITCH vulnerability in api-chat enables remote code execution and is exploited in the wild. Upgrade to 1.11.3 now to stay safe. Related Posts: Linux Kernel Vulnerability CVE-2024-26582: Public PoC Reaches Root Shell NTLM Reflection Bypass CVE-2026-24294 Gets Public PoC Exploit Public Details Disclosed: MediaTek t7xx WWAN Flaw The post FreeSWITCH api-chat RCE Exploited in the Wild, Patch Now appeared first on Daily CyberSecurity.
     
  • ✇Cybersecurity News
  • AWS Password Spraying Campaign Targets Root Accounts Do Son
    Datadog uncovered an AWS password spraying campaign targeting cloud environments. Protect your accounts against this AWS password spraying activity now. Related Posts: US Offers $10M for IRGC Cyber Leader Coder Registry Attack: Hijacked Cloudflare Pool Served Malicious Terraform Modules Toy Ghouls Backdoor Uses HiveMQ and Element for C2 The post AWS Password Spraying Campaign Targets Root Accounts appeared first on Daily CyberSecurity.
     
  • ✇Cybersecurity News
  • TP-Link Archer AX55 Flaws Expose Routers to Code Execution Do Son
    A TP-Link Archer AX55 vulnerability (CVE-2026-18167) risks remote code execution via EasyMesh buffer overflow. Update to build 20260527 now. Related Posts: MikroTik RouterOS Vulnerability Exploited in the Wild: Patch and Defense Blueprint StyleSmuggler: Magento Zero-Day RCE Exploited in the Wild CVE-2026-75754 (CVSS 10): ASUS Control Center Root RCE The post TP-Link Archer AX55 Flaws Expose Routers to Code Execution appeared first on Daily CyberSecurity.
     
  • ✇Cybersecurity News
  • Super Forms Vulnerability Exploited in the Wild: 13,000 Sites Face 9.8 CVSS Remote Code Execution Do Son
    CVE-2026-14894, a critical Super Forms vulnerability, is exploited in the wild. The 9.8 CVSS file upload flaw enables unauthenticated remote code execution. Related Posts: MikroTik RouterOS Vulnerability Exploited in the Wild: Patch and Defense Blueprint StyleSmuggler: Magento Zero-Day RCE Exploited in the Wild CVE-2026-75754 (CVSS 10): ASUS Control Center Root RCE The post Super Forms Vulnerability Exploited in the Wild: 13,000 Sites Face 9.8 CVSS Remote Code Execution appeared first on Dail
     
  • ✇Cybersecurity News
  • BraZetsu Malware Framework Powers Initial Access Sales Do Son
    Group-IB uncovered the BraZetsu malware framework operations targeting financial systems. Learn how this tool powers initial access broker sales. Related Posts: US Offers $10M for IRGC Cyber Leader Coder Registry Attack: Hijacked Cloudflare Pool Served Malicious Terraform Modules Toy Ghouls Backdoor Uses HiveMQ and Element for C2 The post BraZetsu Malware Framework Powers Initial Access Sales appeared first on Daily CyberSecurity.
     
  • ✇Cybersecurity News
  • CVE-2026-85046: Chrome Zero-Day Vulnerability Exploited in the Wild Do Son
    Google patched a Chrome zero-day vulnerability currently exploited in the wild. The update resolves a severe V8 type confusion flaw (CVE-2026-85046). Related Posts: CVE-2026-75754 (CVSS 10): ASUS Control Center Root RCE Apache Allura Security Vulnerabilities Patched in v1.21.0 CVE-2026-52924 PoC Exploit Disclosed: 9.8 CVSS Linux Root Privilege Escalation The post CVE-2026-85046: Chrome Zero-Day Vulnerability Exploited in the Wild appeared first on Daily CyberSecurity.
     
  • ✇Cybersecurity News
  • Malicious Browser Extensions Drain Crypto Wallets Do Son
    Socket found 19 malicious browser extensions acting as a crypto wallet drainer across Chrome and Edge, exposing up to 80,000 users in one case. Related Posts: PackClient RAT: New C2 Framework Sold on Telegram Amatera Password Stealer Abuses Service Workers and Smart Contracts Miraak Post Exploitation Framework Adopts Database C2 The post Malicious Browser Extensions Drain Crypto Wallets appeared first on Daily CyberSecurity.
     
  • ✇Cybersecurity News
  • Critical Google Chrome Vulnerabilities Patched in New Update Do Son
    Google patched critical Google Chrome vulnerabilities, including CVE-2026-84353. Update your browser now to block potential remote attacks. Related Posts: CVE-2026-80047: Hugging Face Transformers Library Vulnerability CVE-2026-68162: Linux Kernel Root Escalation PoC Public FreeRDP 3.31.0 Fixes Pre-Auth RCE Chain in Server The post Critical Google Chrome Vulnerabilities Patched in New Update appeared first on Daily CyberSecurity.
     
  • ✇Cybersecurity News
  • Debian 11 Reaches End of Long Term Support Do Son
    Debian 11 LTS ends on August 31, 2026. Discover upgrade options and extended paid support details for enterprises still running the older Linux version. Related Posts: Linux Nears USB4 Support for Apple Silicon Debian AI Policy: Responsible Generative AI Use Wins Vote California Exempts Linux from Age Verification The post Debian 11 Reaches End of Long Term Support appeared first on Daily CyberSecurity.
     

Debian 11 Reaches End of Long Term Support

Por:Do Son
1 de Setembro de 2026, 22:18

Debian 11 LTS ends on August 31, 2026. Discover upgrade options and extended paid support details for enterprises still running the older Linux version.

Related Posts:

The post Debian 11 Reaches End of Long Term Support appeared first on Daily CyberSecurity.

  • ✇Cybersecurity News
  • Darwin-VM Enables Apple Silicon Security Research Do Son
    Developer JPRX launched Darwin-VM to emulate Apple Silicon systems. This QEMU-based tool assists security researchers with XNU kernel debugging and analysis. Related Posts: Apple OpenAI Lawsuit Escalates Over AI Trade Secrets Chrome Manifest V2 Removal: Legacy Extensions Are Now Gone Anthropic Bolsters Security After Claude AI Escapes The post Darwin-VM Enables Apple Silicon Security Research appeared first on Daily CyberSecurity.
     

Darwin-VM Enables Apple Silicon Security Research

Por:Do Son
1 de Setembro de 2026, 22:00

Developer JPRX launched Darwin-VM to emulate Apple Silicon systems. This QEMU-based tool assists security researchers with XNU kernel debugging and analysis.

Related Posts:

The post Darwin-VM Enables Apple Silicon Security Research appeared first on Daily CyberSecurity.

  • ✇Cybersecurity News
  • HPE Fabric Composer Vulnerabilities Expose Critical Systems Do Son
    Critical HPE Fabric Composer vulnerabilities, including CVE-2026-76657, allow remote code execution. Update to version 7.4.0 now to secure your network. Related Posts: Critical Google Chrome Vulnerabilities Patched in New Update CVE-2026-80047: Hugging Face Transformers Library Vulnerability CVE-2026-68162: Linux Kernel Root Escalation PoC Public The post HPE Fabric Composer Vulnerabilities Expose Critical Systems appeared first on Daily CyberSecurity.
     
❌
❌