Zero-Day

BlueMoon Exploit Kit Chains Recent Chrome, Windows Zero-Days

BlueMoon Exploit Kit Chains Recent Chrome, Windows Zero-Days 2026-09-12 at 14:10 By Ionut Arghire Multiple espionage-motivated threat actors have adopted BlueMoon in opportunistic, rushed deployments. The post BlueMoon Exploit Kit Chains Recent Chrome, Windows Zero-Days appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

BlueMoon Exploit Kit Chains Recent Chrome, Windows Zero-Days Read More »

N-able Patches Critical Zero-Day in N-central

N-able Patches Critical Zero-Day in N-central 2026-09-08 at 13:37 By Ionut Arghire Administrators are advised to check their deployments for newly created user accounts they don’t recognize. The post N-able Patches Critical Zero-Day in N-central appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

N-able Patches Critical Zero-Day in N-central Read More »

Nightmare Eclipse Drops CrowdStrike, Nvidia, Avast Zero-Day Exploits

Nightmare Eclipse Drops CrowdStrike, Nvidia, Avast Zero-Day Exploits 2026-09-07 at 15:15 By Ionut Arghire The proof-of-concept (PoC) exploits lead to privilege escalation, spawning a shell with System privileges. The post Nightmare Eclipse Drops CrowdStrike, Nvidia, Avast Zero-Day Exploits appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Nightmare Eclipse Drops CrowdStrike, Nvidia, Avast Zero-Day Exploits Read More »

Google Patches 6th Chrome Zero-Day of 2026

Google Patches 6th Chrome Zero-Day of 2026 2026-09-04 at 14:31 By Ionut Arghire Google’s Chrome 152 security update resolves 12 vulnerabilities, including a high-severity type confusion flaw in the V8 engine. The post Google Patches 6th Chrome Zero-Day of 2026 appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Google Patches 6th Chrome Zero-Day of 2026 Read More »

SonicWall Warns of Two SMA1000 Zero-Days Exploited in Attacks

SonicWall Warns of Two SMA1000 Zero-Days Exploited in Attacks 2026-09-02 at 08:04 By Eduard Kovacs The vulnerabilities CVE-2026-83549 and CVE-2026-83548 can be chained for unauthenticated remote code execution. The post SonicWall Warns of Two SMA1000 Zero-Days Exploited in Attacks appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

SonicWall Warns of Two SMA1000 Zero-Days Exploited in Attacks Read More »

PaperCut Exploitation Escalates to Active Intrusions

PaperCut Exploitation Escalates to Active Intrusions 2026-09-01 at 08:27 By Eduard Kovacs CISA has added the vulnerabilities tracked as CVE-2026-82078 and CVE-2026-81578 to its KEV catalog. The post PaperCut Exploitation Escalates to Active Intrusions appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

PaperCut Exploitation Escalates to Active Intrusions Read More »

Nightmare Eclipse Drops ‘HardBreacher’ Kaspersky Product Exploit

Nightmare Eclipse Drops ‘HardBreacher’ Kaspersky Product Exploit 2026-08-31 at 17:32 By Eduard Kovacs Kaspersky told SecurityWeek that it patched the vulnerability affecting its Endpoint Security product. The post Nightmare Eclipse Drops ‘HardBreacher’ Kaspersky Product Exploit appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Nightmare Eclipse Drops ‘HardBreacher’ Kaspersky Product Exploit Read More »

More Details Emerge on Exploited PaperCut Vulnerabilities

More Details Emerge on Exploited PaperCut Vulnerabilities 2026-08-31 at 09:51 By Eduard Kovacs PaperCut has released a second emergency patch for the exploited vulnerabilities, which are now tracked as CVE-2026-82078 and CVE-2026-81578. The post More Details Emerge on Exploited PaperCut Vulnerabilities appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

More Details Emerge on Exploited PaperCut Vulnerabilities Read More »

PaperCut Releases Emergency Patch for Exploited Zero-Day

PaperCut Releases Emergency Patch for Exploited Zero-Day 2026-08-28 at 11:40 By Eduard Kovacs A CVE identifier has not yet been assigned, but PaperCut is urging NG/MF users to install patches and implement mitigations. The post PaperCut Releases Emergency Patch for Exploited Zero-Day appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original […]

PaperCut Releases Emergency Patch for Exploited Zero-Day Read More »

Hackers Exploiting Unpatched GeoServer Zero-Day

Hackers Exploiting Unpatched GeoServer Zero-Day 2026-08-14 at 10:01 By Ionut Arghire The security defect is described as an SQL injection that could allow attackers to achieve remote code execution. The post Hackers Exploiting Unpatched GeoServer Zero-Day appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Hackers Exploiting Unpatched GeoServer Zero-Day Read More »

Fresh Windows Zero-Day Exploited in North Korean Cyberattacks

Fresh Windows Zero-Day Exploited in North Korean Cyberattacks 2026-08-12 at 11:45 By Ionut Arghire The bug allowed attackers to gain full control of the victims’ systems and deploy the ForestTiger backdoor. The post Fresh Windows Zero-Day Exploited in North Korean Cyberattacks appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Fresh Windows Zero-Day Exploited in North Korean Cyberattacks Read More »

Cisco Patches Firewall Zero-Day Exploited for DoS Attacks

Cisco Patches Firewall Zero-Day Exploited for DoS Attacks 2026-08-12 at 08:10 By Eduard Kovacs CVE-2026-20349 can be exploited remotely without authentication against Secure Firewall ASA and FTD devices. The post Cisco Patches Firewall Zero-Day Exploited for DoS Attacks appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Cisco Patches Firewall Zero-Day Exploited for DoS Attacks Read More »

August 2026 Patch Tuesday: Microsoft Fixes 421 CVEs, One Exploited Zero-Day

August 2026 Patch Tuesday: Microsoft Fixes 421 CVEs, One Exploited Zero-Day 2026-08-11 at 21:46 By Ionut Arghire A use-after-free in the afd.sys Windows kernel-mode driver has been exploited to gain SYSTEM privileges. The post August 2026 Patch Tuesday: Microsoft Fixes 421 CVEs, One Exploited Zero-Day appeared first on SecurityWeek. This article is an excerpt from […]

August 2026 Patch Tuesday: Microsoft Fixes 421 CVEs, One Exploited Zero-Day Read More »

Cisco Secure FMC Zero-Day Exploited in the Wild

Cisco Secure FMC Zero-Day Exploited in the Wild 2026-07-30 at 09:31 By Eduard Kovacs The vulnerability tracked as CVE-2026-20316 can be exploited by a remote, unauthenticated attacker to log into affected devices.  The post Cisco Secure FMC Zero-Day Exploited in the Wild appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original […]

Cisco Secure FMC Zero-Day Exploited in the Wild Read More »

JFrog Zero-Days Exploited in OpenAI-Hugging Face Hack

JFrog Zero-Days Exploited in OpenAI-Hugging Face Hack 2026-07-29 at 11:46 By Ionut Arghire The OpenAI models targeted services beyond Hugging Face as they attempted to solve the tasks they were given. The post JFrog Zero-Days Exploited in OpenAI-Hugging Face Hack appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

JFrog Zero-Days Exploited in OpenAI-Hugging Face Hack Read More »

Critical Arista VeloCloud Orchestrator Vulnerability Exploited as Zero-Day

Critical Arista VeloCloud Orchestrator Vulnerability Exploited as Zero-Day 2026-07-28 at 09:40 By Ionut Arghire Impacting on-premises deployments, the OS command injection allows attackers to access privileged internal functionality. The post Critical Arista VeloCloud Orchestrator Vulnerability Exploited as Zero-Day appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Critical Arista VeloCloud Orchestrator Vulnerability Exploited as Zero-Day Read More »

New Check Point Zero-Day Vulnerability Exploited in the Wild

New Check Point Zero-Day Vulnerability Exploited in the Wild 2026-07-23 at 12:06 By Eduard Kovacs The vulnerability tracked as CVE-2026-16232 has been exploited against customers with certain configurations. The post New Check Point Zero-Day Vulnerability Exploited in the Wild appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

New Check Point Zero-Day Vulnerability Exploited in the Wild Read More »

SonicWall Zero-Days Exploited to Deliver Custom Malware for Weeks Before Patch

SonicWall Zero-Days Exploited to Deliver Custom Malware for Weeks Before Patch 2026-07-20 at 17:11 By Eduard Kovacs The zero-days CVE-2026-15409 and CVE-2026-15410 were exploited by a threat actor tracked by Volexity as UTA0533. The post SonicWall Zero-Days Exploited to Deliver Custom Malware for Weeks Before Patch appeared first on SecurityWeek. This article is an excerpt […]

SonicWall Zero-Days Exploited to Deliver Custom Malware for Weeks Before Patch Read More »

Nightmare Eclipse Drops ‘LegacyHive’ Windows Zero-Day 

Nightmare Eclipse Drops ‘LegacyHive’ Windows Zero-Day  2026-07-16 at 09:48 By Ionut Arghire The researcher stripped the proof-of-concept (PoC) exploit to prevent immediate exploitation of the vulnerability. The post Nightmare Eclipse Drops ‘LegacyHive’ Windows Zero-Day  appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Nightmare Eclipse Drops ‘LegacyHive’ Windows Zero-Day  Read More »

Progress Confirms Zero-Day Vulnerability Behind ShareFile Disruption

Progress Confirms Zero-Day Vulnerability Behind ShareFile Disruption 2026-07-15 at 12:48 By Ionut Arghire The company has rolled out a fix and is restoring access for Storage Zones Controller customers who apply it. The post Progress Confirms Zero-Day Vulnerability Behind ShareFile Disruption appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Progress Confirms Zero-Day Vulnerability Behind ShareFile Disruption Read More »

Scroll to Top