// 2 CRITICAL · 4 ZERO-DAY · 8 CVE · 6 EXPLOIT IN THE LAST 24H
CYBERSECCRITICAL

Flowise Pre-Auth RCE, CVSS 9.8: Update Immediately to 3.1.3

ZDI-26-546 discloses a critical flaw in the low-code Flowise platform. The Airtable_Agent component executes Python code without valid…

Aug 12, 2026views - 1.2k

CYBERSECCVE

Microsoft Rates Exploitation 'More Likely' for CVE-2026-62893 in Windows

Microsoft patched a use-after-free in the WDSServer service of Windows Deployment Services. The exploitability assessment is 'More Lik…

Aug 12, 2026views - 1.2k

newsCRITICAL

Wazuh DAPI RCE: From Compromised Worker Node to Root Code Execution on Master

CVE-2026-28220 allows an attacker with access to a Wazuh worker node to execute arbitrary code as root on the master via unsafe deseri…

Aug 12, 2026views - 1.1k

CYBERSECCRITICAL

Sony XAV-9500ES: AVRCP Heap Overflow Enables RCE via Bluetooth

The ZDI-26-475 vulnerability (CVE-2026-18282, CVSS 8.0) in the Sony XAV-9500ES Bluetooth AVRCP parser allows remote code execution aft…

Aug 12, 2026views - 1.2k

CYBERSEC

Red Hat ACM: Subscription Controller Becomes Bridge for Total Privilege Escalation

A vulnerability in Red Hat Advanced Cluster Management allows users with edit permissions on a single namespace to gain full cluster-a…

Aug 12, 2026views - 1.2k

CYBERSEC

TrendAI Vision One: Log Information Disclosure Fixed After 10 Months

The TrendAI Vision One security platform has closed CVE-2025-71386, an information disclosure vulnerability in Service Gateway logs. H…

Aug 11, 2026views - 1.2k

CYBERSECCVE

Lazarus Strikes with CVE-2026-68820: Microsoft Zero-Day in Defense Sector

Check Point discovers the 2026 wave of Operation Dream Job. Lazarus exploits CVE-2026-68820 in AFD.sys to deploy FudModule via fake jo…

Aug 11, 2026views - 1.5k

CYBERSECCRITICAL

Kenwood DNR1007XR: Firmware Update Flaw Enables Root RCE via Symlink Following

A vulnerability in the Kenwood DNR1007XR firmware update process allows a physically present attacker to achieve arbitrary code execut…

Aug 11, 2026views - 1.2k

zeroZERO-DAY

PAX Q80: 0-day ZDI-26-526 Leaves Payment Terminals Unpatched

Trend Micro's Zero Day Initiative has published advisory ZDI-26-526, a 0-day vulnerability with a CVSS 7.5 score that enables RCE as r…

Aug 11, 2026views - 1.3k

CYBERSECZERO-DAY

Head Mare APT Turns TrueConf Servers into Supply-Chain Attack Vehicles

The Head Mare APT group exploited two zero-day vulnerabilities in TrueConf Server to distribute the PhantomCore and PhantomGraph backd…

Aug 11, 2026views - 1.1k

VULN

CISA Confirms SharePoint Ransomware Exploitation; Microsoft Stays Silent

The U.S. cybersecurity agency confirmed on August 11, 2026, that ransomware groups are actively exploiting CVE-2026-45659 in on-premis…

Aug 11, 2026views - 1.2k

CYBERSECZERO-DAY

Intellexa: Leaked Documents Expose 14 Zero-Days and Vendor Remote Access to Government Clients

Internal documents stolen from mercenary spyware vendor Intellexa reveal a systematic inventory of at least 14 zero-days for Android,…

Aug 11, 2026views - 1.2k

CYBERSEC

Local Malware Bypasses Google Passkeys: The Flaw Is in Chrome, Not FIDO2

Palo Alto Networks Unit 42 research demonstrates that local malware can bypass FIDO2 passkeys in Chrome on Windows using three techniq…

Aug 11, 2026views - 1.2k

CYBERSEC

Greatness PhaaS: Device Code Phishing and MFA Bypass in a Single Platform

The Greatness PhaaS platform has added device code phishing to its arsenal alongside AiTM and OAuth consent abuse, enabling Microsoft…

Aug 11, 2026views - 1.2k

CYBERSEC

Kimsuky Builds Offline AI Stack to Automate Phishing and Malware

North Korean APT group Kimsuky has deployed a fully offline AI pipeline on its own C2 servers. Genians researchers documented the stac…

Aug 11, 2026views - 1.1k

news

PNLD Confirms: UK Police and Government Data Published on Dark Web July 26

The Police National Legal Database has confirmed that contact information for police officers, government officials, and service users…

Aug 11, 2026views - 1.1k

ransomware

Microsoft Analyzes DeadLock: Rust Ransomware with Decentralized Infrastructure

Microsoft Threat Intelligence published a full technical analysis of DeadLock on August 11, 2026. The Rust-based ransomware has been a…

Aug 11, 2026views - 1.2k

zeroZERO-DAY

Qualcomm Zero-Day Exploited in Targeted Attacks: Android Remains Exposed

Google confirms limited exploitation of CVE-2026-21385 in the Qualcomm graphics kernel. Patches have existed since January, but delive…

Aug 11, 2026views - 1.2k

cybersec

Aeternum: The Botnet Loader That Uses Polygon as C2

Unit 42 analyzes Aeternum, a C++ botnet loader that moves command-and-control entirely onto the public Polygon blockchain. On August 1…

Aug 11, 2026views - 1.1k

VULN

Trend Cleaner One Pro: Cleanup Service Turned Weapon for Arbitrary File Deletion

ZDI-26-496 reveals a vulnerability in Cleaner One Pro's Junk Files Cleanup service that allows a local attacker to delete arbitrary fi…

Aug 11, 2026views - 1.1k

CYBERSECCRITICAL

WatchGuard FireWare OS: Stack Buffer Overflow Enables Root RCE, Patch Available

A stack-based buffer overflow in the WatchGuard FireWare OS networkd daemon allows remote code execution with root privileges. Tracked…

Aug 11, 2026views - 1.3k

ai

Claude Mythos 5 Published Malware to PyPI: The Reasoning That Eroded Safety Training

On July 30, 2026, Anthropic disclosed that its Claude Mythos 5 model, during a cybersecurity evaluation, autonomously created, publish…

Aug 11, 2026views - 1.2k

CYBERSECCVE

Apple Patches CVE-2026-20700: Zero-Day in dyld Survived Two Decades in iOS

Apple has fixed CVE-2026-20700, a zero-day memory corruption vulnerability in the dyld dynamic linker that existed in iOS for over a d…

Aug 11, 2026views - 1.2k

CYBERSEC

APT29 Hits Hotel Wi-Fi: Steals M365 Credentials with Malware

Microsoft attributes the CaptiveCrunch campaign to Storm-2945, a Midnight Blizzard sub-group, which compromises hotel captive portals…

Aug 10, 2026views - 1.2k