LIVE
CVE-2026-1337 · Cisco IOS XE RCE — CVSS 9.8 · Patch available CRITICAL · LockBit 4.0 targeting healthcare networks across EU/NA SUPPLY CHAIN · 50k dev machines compromised via malicious npm packages CISA KEV · 12 new CVEs added to Known Exploited Vulnerabilities catalog APT41 · New UEFI rootkit "PhantomNet" found in telecom breaches CVE-2026-0892 · Fortinet FortiOS auth bypass — CVSS 9.6 · Patch now PHISHING · AI-powered MFA bypass kit "GhostGPT" sold on darknet forums CVE-2026-1337 · Cisco IOS XE RCE — CVSS 9.8 · Patch available CRITICAL · LockBit 4.0 targeting healthcare networks across EU/NA SUPPLY CHAIN · 50k dev machines compromised via malicious npm packages CISA KEV · 12 new CVEs added to Known Exploited Vulnerabilities catalog APT41 · New UEFI rootkit "PhantomNet" found in telecom breaches CVE-2026-0892 · Fortinet FortiOS auth bypass — CVSS 9.6 · Patch now PHISHING · AI-powered MFA bypass kit "GhostGPT" sold on darknet forums
⚡  Real-time Security Intelligence

Stay Ahead of Every Threat

The sharpest cybersecurity news, CVE alerts, and threat intelligence — curated from the world's top security researchers.

The Hacker News Krebs on Security BleepingComputer Dark Reading SecurityWeek NIST NVD
2,847
New CVEs
142
Critical
38
Ransomware Groups
17
Active APTs
🌏 Global Threat Map
LIVE
0
Attacks / min
0
Blocked Today
0
Malware Samples
0
New CVEs Today
Ransomware Exploit APT DDoS
Top Stories
🔐 THREAT · APT · ZERO-DAY
Zero-Day Nation-State

Nation-State Actors Exploit Zero-Day in Enterprise Firewalls to Deploy Stealthy Backdoors

Advanced persistent threat groups linked to state-sponsored actors have been observed chaining two unpatched vulnerabilities in leading enterprise firewall appliances. The attack chain allows unauthenticated remote code execution and persistence via a memory-resident implant invisible to standard AV tools.

01
Ransomware

LockBit 4.0 Variant Targets Healthcare Sector with New Double-Extortion Tactics

A new LockBit variant is actively targeting hospital networks across Europe and North America, featuring an updated loader that evades EDR solutions by abusing a signed kernel driver.

Krebs on Security2h ago
02
Supply Chain

Malicious npm Packages Steal AWS Credentials from 50,000+ Developer Machines

Typosquatted npm packages exfiltrate cloud credentials via DNS tunneling, bypassing most DLP solutions. Campaign active for 3 weeks before detection.

BleepingComputer4h ago
03
CISA KEV

CISA Adds 12 New CVEs to Known Exploited Vulnerabilities Catalog

Flaws in Cisco IOS, Fortinet FortiOS, and Microsoft Exchange Server among the newly added entries. Federal agencies have 72 hours to patch or disconnect.

Dark Reading6h ago
04
Research

AI-Powered Phishing Kit "GhostGPT" Bypasses MFA in Real Time

New PhaaS platform uses generative AI to craft hyper-personalised lures with adversary-in-the-middle capabilities — OTP interception included out of the box.

Wired Security8h ago
05
APT

APT41 Linked to Major Telecom Breaches Across Southeast Asia

Mandiant attributes intrusions to APT41, deploying "PhantomNet" rootkit that persists across firmware updates by targeting the UEFI boot process.

SecurityWeek12h ago
06
Tools

"VulnGraph" Maps Attack Paths Across Hybrid Cloud Environments

New open-source graph-based tool visualises attack paths across on-prem Active Directory and cloud IAM roles simultaneously. Released on GitHub.

Exploit-DBYesterday
💬 Community Board
💬 Security Community — posts
👤 Anonymous · no login required
Loading…