// 1 CRITICAL · 2 ZERO-DAY · 5 CVE · 6 EXPLOIT · 1 ADVISORY IN THE LAST 24H
CYBERSECCVE

SonicWall SMA 1000 Under Attack: CVE-2026-15409 CVSS 10.0 and TOTP Seed Theft

CVE-2026-15409 and CVE-2026-15410 exposed SonicWall SMA 1000 appliances to unauthenticated root compromise. The theft of MFA seeds ren…

Aug 20, 2026views - 1.1k

VULNZERO-DAY

Trend Micro VPN: Local Privilege Escalation Flaw Allows SYSTEM Takeover

A local privilege escalation vulnerability in Trend Micro VPN, tracked as ZDI-26-577 and CVE-2026-67212, lets an attacker with low-pri…

Aug 20, 2026views - 1k

CYBERSECZERO-DAY

INC Ransomware Chains Two SonicWall Zero-Days for Root Access via VPN Appliance

Two zero-days in SonicWall SMA 1000 let INC Ransomware gain remote root access. Pre-disclosure exploitation began June 22, three weeks…

Aug 05, 2026views - 1.4k

CYBERSEC

Hotel DNS Attacks: Corporate VPNs Aren't Enough to Protect Microsoft 365

ReliaQuest has documented an active campaign since June 2026 that compromises hotel Wi-Fi gateways to redirect Microsoft 365 logins to…

Aug 03, 2026views - 1.2k

CYBERSEC

Hotel Wi-Fi DNS Attacks Steal Microsoft 365 Accounts, Bypass MFA

Threat actors compromise hotel and conference center Wi-Fi captive portals to manipulate DNS and steal Microsoft 365 credentials, sess…

Jul 28, 2026views - 1.2k

VULNZERO-DAY

WatchGuard FireWare OS: IKEv2 Bug Enables Remote DoS with a Single Packet

A null pointer dereference in WatchGuard FireWare OS exposes firewalls with active IKEv2 VPN to remote denial-of-service. CVE-2026-130…

Jul 23, 2026views - 1.3k

CYBERSECCVE

From VPN Bypass to Encrypted Domain: How CVE-2026-0257 Fuels Qilin Ransomware

Arctic Wolf Labs confirms active exploitation of CVE-2026-0257 to deploy Qilin ransomware. Specific TTPs reveal shared infrastructure…

Jul 21, 2026views - 1.3k

vpn

US Sanctions First VPN Provider: Anonymity as Criminal Infrastructure

The Treasury Department sanctions First VPN Service and its Ukrainian administrator for supporting ransomware groups. It marks the fir…

Jul 14, 2026views - 1.8k

CYBERSECZERO-DAY

FortiBleed: 75,000 Firewalls at Risk from Stolen Credentials, Not a Zero-Day

FortiBleed hits already-patched FortiGate devices: credentials stolen in prior incidents enable administrative access without exploiti…

Jul 14, 2026views - 1.4k

CYBERSEC

FortiBleed Fuels INC and Lynx: One Operator Serving Two Ransomware Clients

SOCRadar has documented the link between FortiBleed and the INC and Lynx ransomware groups. A single operator accessed the negotiation…

Jul 05, 2026views - 1.4k

CYBERSEC

FortiBleed: 74,000 Fortinet Credentials Exposed, CISA Orders Immediate Action

CISA mandates immediate hardening for roughly 74,000 Fortinet devices after the FortiBleed credential leak. Valid credentials are circ…

Jun 21, 2026views - 810

CYBERSECCVE

CVE-2026-50751: Check Point VPN Zero-Day Exploited by Qilin Affiliate; Patch Released June 8

A Qilin ransomware affiliate exploited a critical zero-day in Check Point VPN’s IKEv1 protocol for over a month. The flaw (CVSS 9.3) a…

Jun 08, 2026views - 1.1k