A critical vulnerability in Fortra’s GoAnywhere Managed File Transfer (MFT) software, tracked as CVE-2025-10035, was actively exploited...
Zero-Day Exploits
A newly identified vulnerability in multiple versions of OnePlus’s OxygenOS allows any application installed on a device...
Google has released an emergency security update for its Chrome browser to address a high-severity zero-day vulnerability,...
Apple has released security updates for older iPhone and iPad models, backporting a critical fix for a...
Samsung has released a critical security update addressing a remote code execution vulnerability that was actively exploited...
A critical zero-day vulnerability in legacy Sitecore deployments, designated CVE-2025-53690, has been actively exploited by threat actors...
Google’s September 2025 Android security bulletin addresses a significant security event, patching 120 vulnerabilities across the platform...
Citrix has released emergency patches for a critical remote code execution vulnerability, tracked as CVE-2025-7775, affecting its...
Apple has released emergency security updates to address a zero-day vulnerability actively exploited in what the company...
A newly disclosed class of vulnerabilities in browser extensions for major password managers exposes tens of millions...
A significant increase in brute-force attacks targeting Fortinet SSL VPNs has raised concerns about potential zero-day vulnerabilities....
Microsoft’s August 2025 Patch Tuesday addresses 107 security vulnerabilities, including one actively exploited zero-day in Windows Kerberos....
A critical WinRAR vulnerability, tracked as CVE-2025-8088, was actively exploited as a zero-day in phishing campaigns to...
A critical vulnerability in OpenVSX, the open-source extension marketplace used by popular VS Code forks like Cursor...
Microsoft’s July 2025 Patch Tuesday Addresses 137 Vulnerabilities Including Critical WebDAV Zero-Day

Microsoft’s July 2025 Patch Tuesday Addresses 137 Vulnerabilities Including Critical WebDAV Zero-Day
Microsoft’s July 2025 Patch Tuesday has released security updates addressing 137 vulnerabilities across its product line, including...
Forensic investigations have confirmed the use of Paragon’s Graphite spyware in zero-click attacks against Apple iOS devices...
Qualcomm has addressed three critical zero-day vulnerabilities in its Adreno Graphics Processing Unit (GPU) driver that were...
A newly identified weakness in Apple’s Safari browser enables attackers to execute fullscreen browser-in-the-middle (BitM) attacks, potentially...
Multiple critical vulnerabilities in Versa Networks’ Concerto platform remain unpatched, exposing enterprise networks to authentication bypass and...
Ivanti has issued an urgent patch advisory for two zero-day vulnerabilities (CVE-2025-4427 and CVE-2025-4428) affecting its Endpoint...