// 1 CRITICAL · 11 ZERO-DAY · 9 CVE · 10 EXPLOIT IN THE LAST 24H
CYBERSEC

Operation STANDOFF: 44 C2 Servers Mask Traffic With GitHub Redirects

VMRay Labs has mapped a Russian-speaking criminal campaign operating at least 44 command-and-control servers hosted on TimeWeb Ltd. (A…

Jul 28, 2026views - 1.2k

CYBERSECCVE

CVE-2026-56163: Microsoft Mitigates Critical AKS Flaw Without Customer Action

Microsoft assigned CVE-2026-56163 a maximum CVSS 10.0 score for a critical elevation-of-privilege vulnerability in Azure Kubernetes Se…

Jul 28, 2026views - 1.2k

CYBERSECZERO-DAY

Arista VeloCloud Zero-Day: The SD-WAN Controller That Cannot Hide

CVE-2026-16812 hits on-prem Arista VeloCloud Orchestrator with a CVSS 10.0. Active exploitation requires no credentials, and no config…

Jul 28, 2026views - 1.3k

CYBERSEC

Hotel Wi-Fi DNS Attacks Steal Microsoft 365 Accounts, Bypass MFA

Threat actors compromise hotel and conference center Wi-Fi captive portals to manipulate DNS and steal Microsoft 365 credentials, sess…

Jul 28, 2026views - 1.2k

CYBERSECEXPLOIT

Certighost: Ten Days After the Patch, the Exploit Is Public and the Domain Falls

The Certighost proof-of-concept for CVE-2026-54121 lets a standard domain user impersonate a Domain Controller via AD CS. Released exa…

Jul 27, 2026views - 1.1k

CYBERSECCRITICAL

Heimdall Data Database Proxy: RCE Vulnerability with Root Privileges Discovered

Trend Micro's Zero Day Initiative published advisory ZDI-26-447 covering CVE-2026-12357 (CVSS 7.2). The flaw in Heimdall Data Database…

Jul 27, 2026views - 1.1k

CYBERSEC

Iran APT Sabotages US PLCs: CISA Warns of Physical Risk

The US government discloses an Iranian APT compromising internet-exposed PLCs in water and energy facilities, disabling safety logic t…

Jul 27, 2026views - 3.7k

CYBERSECZERO-DAY

CISA Mandates Three-Day Patch for Splunk Zero-Day: New BOD 26-04 Ups the Ante

CVE-2026-20253 in Splunk Enterprise carries a CVSS 9.8 and pre-authentication RCE. CISA set a three-day deadline via the new Binding O…

Jul 27, 2026views - 1.1k

CYBERSECCRITICAL

From Zero to Shell: The wp2shell Chain Strikes WordPress Core in Seconds

The HackerHood group has reproduced the wp2shell exploit chain against WordPress 6.9.1 in a lab setting, achieving pre-authentication…

Jul 27, 2026views - 1.1k

CYBERSECCRITICAL

Delta Electronics DTM Soft Exposed to User-Interaction RCE via Project Files

The industrial configuration software DTM Soft contains a deserialization flaw in project files that enables remote code execution wit…

Jul 27, 2026views - 1.2k

CYBERSECCRITICAL

X.Org Server: Critical Glamor Font Bug Allows Root Privilege Escalation

CVE-2026-55999 in the Glamor Font component of X.Org Server and Xwayland lets any local user with an X connection escalate to root. Pa…

Jul 26, 2026views - 1.1k

CYBERSECEXPLOIT

GitHub Actions Unwittingly Became an ISP for Criminals

Threat actors turned GitHub Actions runners into botnet nodes for large-scale cPanel/WHM scanning and exploitation. The campaign gener…

Jul 26, 2026views - 1.2k