Active Exploitation Alert
320 posts | Page 2 of 14

Active Exploitation Alert
Active Exploitation Alert: ShinyHunters Abuse OAuth and Vendor Integrations to Breach Salesforce and SaaS Environments

Active Exploitation Alert
Active Exploitation Alert: Jscrambler npm Packages Compromised in Coordinated Supply Chain Attack (July 2026)

Active Exploitation Alert
Active Exploitation Alert: 148 Malicious npm Packages Masquerading as Student Proxies Turn Browsers Into DDoS Botnet

Active Exploitation Alert
Active Exploitation Alert: Critical Joomla Extension Vulnerabilities Enable Remote Code Execution and Server Compromise

Active Exploitation Alert
Active Exploitation Alert: WP-SHELLSTORM Campaign Mass-Compromises WordPress Sites via Plugin Vulnerabilities

Active Exploitation Alert
Active Exploitation Alert: Critical CVE-2026-20896 Authentication Bypass in Gitea Docker Image Exposes Repositories and Secrets

Active Exploitation Alert
Active Exploitation Alert: Prompt Injection Vulnerability in GitHub Agentic Workflows Threatens Software Supply Chain Security

Active Exploitation Alert
Active Exploitation Alert: Iranian Cavern Manticore APT Deploys Modular Cavern C2 Malware Targeting Israeli Organizations

Active Exploitation Alert
Active Exploitation Alert: Hidden Admin Backdoor (CVE-2026-11405) in Tenda Router Firmware Enables Unauthenticated Remote Access

Active Exploitation Alert
Active Exploitation Alert: Indirect Prompt Injection Attacks Target AI Agents to Facilitate Unauthorized Cryptocurrency Payments

Active Exploitation Alert
Active Exploitation Alert: Critical Gitea Docker Authentication Bypass Vulnerability (CVE-2026-20896) Under Attack

Active Exploitation Alert
Active Exploitation Alert: Critical CVE-2024-12356 Authentication Bypass and RCE in BeyondTrust Remote Support and PRA

Active Exploitation Alert
Active Exploitation Alert: Citrix NetScaler ADC & Gateway Vulnerability (CVE-2023-4966) CitrixBleed-ing Again Under Massive Attack

Active Exploitation Alert
Active Exploitation Alert: North Korean PolinRider Supply Chain Attack Targets npm, Packagist, Go Modules, and Chrome Extensions

Active Exploitation Alert
Active Exploitation Alert: Critical Microsoft SharePoint Server RCE Vulnerability CVE-2026-45659 Added to CISA KEV Catalog

Active Exploitation Alert
Active Exploitation Alert: Google Chrome 151 Security Update Fixes 382 Vulnerabilities, Including Actively Exploited CVE-2026-11645

Active Exploitation Alert
Active Exploitation Alert: Microsoft Edge Hit by StegoAd Malware via 119 Malicious Extensions Affecting Over 2.6 Million Users

Active Exploitation Alert
Active Exploitation Alert: Critical Oracle E-Business Suite CVE-2026-46817 Vulnerability Targeting Oracle Payments Module

Active Exploitation Alert
Active Phishing Campaign Exploits Calendly and Photo ZIP Files to Target Hotels with Node.js Malware – Microsoft Alerts Hospitality Sector

Active Exploitation Alert
Active Exploitation Alert: Miasma Malware Campaign Targets npm Packages and GitHub Actions in Major Supply Chain Attack

Active Exploitation Alert
Active Exploitation Alert: Cisco CUCM CVE-2026-20230 SSRF-RCE Flaw Weaponized Within 24 Hours of Disclosure

Active Exploitation Alert
FortiBleed Credential Harvesting Campaign: Active Exploitation of FortiGate Firewalls Compromises Over 110 Million Credentials

Active Exploitation Alert
Cisco Catalyst SD-WAN Zero-Day CVE-2026-20245 Actively Exploited for Root Access and Management Plane Compromise

Active Exploitation Alert