Active Exploitation Alert
312 posts | Page 2 of 13

Active Exploitation Alert
Active Exploitation Alert: Indirect Prompt Injection Attacks Target AI Agents to Facilitate Unauthorized Cryptocurrency Payments

Active Exploitation Alert
Active Exploitation Alert: Hidden Admin Backdoor (CVE-2026-11405) in Tenda Router Firmware Enables Unauthenticated Remote Access

Active Exploitation Alert
Active Exploitation Alert: Critical Gitea Docker Authentication Bypass Vulnerability (CVE-2026-20896) Under Attack

Active Exploitation Alert
Active Exploitation Alert: Critical CVE-2024-12356 Authentication Bypass and RCE in BeyondTrust Remote Support and PRA

Active Exploitation Alert
Active Exploitation Alert: Citrix NetScaler ADC & Gateway Vulnerability (CVE-2023-4966) CitrixBleed-ing Again Under Massive Attack

Active Exploitation Alert
Active Exploitation Alert: North Korean PolinRider Supply Chain Attack Targets npm, Packagist, Go Modules, and Chrome Extensions

Active Exploitation Alert
Active Exploitation Alert: Critical Microsoft SharePoint Server RCE Vulnerability CVE-2026-45659 Added to CISA KEV Catalog

Active Exploitation Alert
Active Exploitation Alert: Google Chrome 151 Security Update Fixes 382 Vulnerabilities, Including Actively Exploited CVE-2026-11645

Active Exploitation Alert
Active Exploitation Alert: Microsoft Edge Hit by StegoAd Malware via 119 Malicious Extensions Affecting Over 2.6 Million Users

Active Exploitation Alert
Active Exploitation Alert: Critical Oracle E-Business Suite CVE-2026-46817 Vulnerability Targeting Oracle Payments Module

Active Exploitation Alert
Active Phishing Campaign Exploits Calendly and Photo ZIP Files to Target Hotels with Node.js Malware – Microsoft Alerts Hospitality Sector

Active Exploitation Alert
Active Exploitation Alert: Miasma Malware Campaign Targets npm Packages and GitHub Actions in Major Supply Chain Attack

Active Exploitation Alert
Active Exploitation Alert: Cisco CUCM CVE-2026-20230 SSRF-RCE Flaw Weaponized Within 24 Hours of Disclosure

Active Exploitation Alert
FortiBleed Credential Harvesting Campaign: Active Exploitation of FortiGate Firewalls Compromises Over 110 Million Credentials

Active Exploitation Alert
Cisco Catalyst SD-WAN Zero-Day CVE-2026-20245 Actively Exploited for Root Access and Management Plane Compromise

Active Exploitation Alert
Active Exploitation Alert: Stealthy Mistic Backdoor Targets Enterprise Networks via KongTuke Ransomware Access Broker

Active Exploitation Alert
Active Exploitation Alert: Cisco Catalyst SD-WAN Zero-Day (CVE-2026-20245) Enables Root Access via Authenticated File Upload Exploit

Active Exploitation Alert
Active Exploitation of Critical CVE-2026-20253 in Splunk Enterprise: Unauthenticated RCE via PostgreSQL Sidecar Service

Active Exploitation Alert
DragonForce Hackers Exploit Microsoft Teams TURN Relays to Conceal Backdoor.Turn C2 in Targeted Ransomware Attacks

Active Exploitation Alert
Active Exploitation Alert: Critical CVE-2026-42945 NGINX Rift Vulnerability in NGINX and F5 Products—Patch Immediately

Active Exploitation Alert
Active Exploitation Alert: North Korean APT37 Uses Fake Microsoft Account Alerts and LNK Files to Deploy NarwhalRAT Malware on Windows Systems

Active Exploitation Alert
Critical LiteLLM Vulnerability Chain Enables Remote Code Execution and Full AI Gateway Server Takeover (CVE-2026-42271, CVE-2026-47101, CVE-2026-47102, CVE-2026-40217)

Active Exploitation Alert
ShinyHunters Exploits Oracle PeopleSoft Zero-Day CVE-2026-35273 in Widespread Higher Education Cyberattack

Active Exploitation Alert