// 1 CRITICAL · 11 ZERO-DAY · 9 CVE · 10 EXPLOIT IN THE LAST 24H
CYBERSEC

Bitdefender Shredder Privilege Escalation to SYSTEM: Update Immediately to 27.0.58.315

ZDI-26-448 exploits Bitdefender's File Shredder to escalate local privileges to SYSTEM. CVE-2026-6851 carries a CVSS 4.0 score of 7.0;…

Aug 05, 2026views - 1.2k

CYBERSECCVE

CVE-2026-63077: Critical RCE in JetBrains TeamCity, CVSS 9.8

JetBrains has patched a deserialization vulnerability in TeamCity On-Premises with a CVSS 9.8 score. The unauthenticated RCE via the a…

Aug 05, 2026views - 1.3k

CYBERSEC

Trend Micro Cleaner One Pro: File Cleanup Turns Into a SYSTEM-Level Attack

A vulnerability in the Junk Files Cleanup component of Trend Micro Cleaner One Pro allows a local attacker to delete arbitrary files w…

Aug 05, 2026views - 1.2k

CYBERSECCRITICAL

WatchGuard FireWare OS: Directory Traversal in sigd Service Opens Path to Code Execution

A directory traversal vulnerability in the sigd service of WatchGuard FireWare OS allows an authenticated remote attacker to create ar…

Aug 05, 2026views - 1.3k

CYBERSEC

Three Decades of Forensic DNA Evidence Left Without Digital Signatures

A CVSS 8.2 vulnerability in Thermo Fisher Applied Biosystems software allows tampering with forensic DNA files. The patch adds digital…

Aug 04, 2026views - 1.3k

CYBERSECZERO-DAY

Exploitarium Turns Zero-Day Disclosure into Permanent Infrastructure

The Exploitarium repository has published 204 zero-day exploits for open-source projects without vendor notification. CVE-2026-55200 a…

Aug 04, 2026views - 1.1k

CYBERSECCVE

Fortinet CVE-2026-24858: Active Exploitation, SSO Bypass, CVSS 9.8

Fortinet has patched CVE-2026-24858, a critical authentication bypass with a CVSS 9.8 score that is under active exploitation. CISA ha…

Aug 04, 2026views - 1.2k

CYBERSEC

AI Agent Prompt Injection: SOCs Are Blind to Language as a Weapon

Gartner and OWASP confirm prompt injection as the top AI threat for 2026. Traditional SOCs cannot detect attacks that weaponize natura…

Aug 04, 2026views - 1.4k

CYBERSECEXPLOIT

GhostLock: The Exploit That Unlocks Linux in 5 Seconds — 15 Years in the Shadows

On July 7, 2026, Nebula Security disclosed GhostLock, a working exploit for CVE-2026-43499, a use-after-free in the Linux kernel's fut…

Aug 04, 2026views - 1.1k

CYBERSECCRITICAL

Intel and AMD Patch 70 Flaws: Two Critical CVSS 9.3 and 9.2 Bugs in GPU Drivers

On May 13, 2026, Intel and AMD released 28 advisories covering 69 vulnerabilities. Two critical flaws hit chip software drivers, not t…

Aug 04, 2026views - 1.2k

CYBERSEC

PNLD Data Breach: UK Police Contacts Published on Dark Web July 26

The Police National Legal Database confirms the exfiltration of names, organizations, and work emails of officers, government staff, a…

Aug 04, 2026views - 1.3k

CYBERSEC

Pass-ta-key Exposes the Gap Between FIDO2 Cryptography and Windows Implementation

Unit 42 reveals three post-compromise techniques that bypass PIN and biometrics on Chrome for Windows. Passkeys resist phishing, not m…

Aug 04, 2026views - 1.2k