Active Exploitation Alert
312 posts | Page 1 of 13

Active Exploitation Alert
Active Exploitation Alert: Critical FastJson CVE-2026-16723 Zero-Day RCE Targeting US Organizations in Spring Boot Applications

Active Exploitation Alert
Active Exploitation Alert: Arista VeloCloud Orchestrator CVE-2026-16812 Command Injection Vulnerability Enables Remote Compromise

Active Exploitation Alert
Cl0p Ransomware Actively Exploiting Critical Unauthenticated RCE in PTC Windchill and FlexPLM Systems

Active Exploitation Alert
Active Exploitation Alert: Unpatched Fastjson 1.x RCE Vulnerability Threatens Spring Boot Fat-JAR Applications

Active Exploitation Alert
Active Exploitation Alert: Iranian State-Sponsored Attacks Targeting Siemens, Schneider Electric, and Rockwell Automation ICS Devices in US Critical Infrastructure

Active Exploitation Alert
Active Exploitation Alert: Fake Bahrain Alert App Deploys Advanced Android Surveillance Malware Targeting Gulf Region Users

Active Exploitation Alert
Active Exploitation Alert: Critical Security Vulnerabilities in Vibe-Coded and AI-Generated Applications

Active Exploitation Alert
Active Exploitation Alert: FakeGit Campaign Abuses 7,600 GitHub Repositories to Distribute SmartLoader and Lumma Stealer Malware via Open-Source Supply Chain

Active Exploitation Alert
Active Exploitation Alert: WP2Shell Critical WordPress Core Vulnerabilities (CVE-2026-63030 & CVE-2026-60137) Enable Unauthenticated RCE in the Wild

Active Exploitation Alert
Active Exploitation Alert: Critical NGINX Vulnerabilities (CVE-2026-42533, CVE-2026-42945) Enable Remote Code Execution and Worker Crashes

Active Exploitation Alert
Active Exploitation Alert: Critical CVE-2026-6875 Remote Code Execution Vulnerability in ServiceNow AI Platform

Active Exploitation Alert
Active Exploitation Alert: Unauthenticated RCE Vulnerabilities in WordPress Core (wp2shell) with Public Exploits – Immediate Patching Required

Active Exploitation Alert
Active Exploitation Alert: Surge in ACR Stealer Malware Targeting Microsoft 365, OneDrive, SharePoint, and Edge Users

Active Exploitation Alert
Active Exploitation Alert: Google Gemini CLI Abused for Botnet Operations and Malware Deployment

Active Exploitation Alert
Active Exploitation Alert: Critical Ivanti Sentry and Fortinet Vulnerabilities (CVE-2026-10520) Patched Amid Ongoing Attacks

Active Exploitation Alert
Active Exploitation Alert: AsyncAPI npm Supply Chain Attack Delivers Multi-Stage Miasma Botnet via Compromised GitHub Actions

Active Exploitation Alert
Active Exploitation Alert: ShinyHunters Abuse OAuth and Vendor Integrations to Breach Salesforce and SaaS Environments

Active Exploitation Alert
Active Exploitation Alert: Jscrambler npm Packages Compromised in Coordinated Supply Chain Attack (July 2026)

Active Exploitation Alert
Active Exploitation Alert: 148 Malicious npm Packages Masquerading as Student Proxies Turn Browsers Into DDoS Botnet

Active Exploitation Alert
Active Exploitation Alert: Critical Joomla Extension Vulnerabilities Enable Remote Code Execution and Server Compromise

Active Exploitation Alert
Active Exploitation Alert: WP-SHELLSTORM Campaign Mass-Compromises WordPress Sites via Plugin Vulnerabilities

Active Exploitation Alert
Active Exploitation Alert: Critical CVE-2026-20896 Authentication Bypass in Gitea Docker Image Exposes Repositories and Secrets

Active Exploitation Alert
Active Exploitation Alert: Prompt Injection Vulnerability in GitHub Agentic Workflows Threatens Software Supply Chain Security

Active Exploitation Alert