CYBER ATTACK

ZerOwl — Find Vulnerabilities Before Hackers Do
Prometei Botnet Attacking Windows Server to Gain Remote Access and Deploy Malware

Prometei Botnet Attacking Windows Server to Gain Remote Access and Deploy Malware

CYBER ATTACKZerowl

Windows Server Attack by the Prometei Botnet Prometei, a Russian-affiliated botnet that has been operational since 2016, is being used in a sophisticated.

Massive Spike in Attacks Exploiting Ivanti EPMM Systems 0-day Vulnerability

Massive Spike in Attacks Exploiting Ivanti EPMM Systems 0-day Vulnerability

CYBER ATTACKZerowl

Exploitation of Ivanti EPMM 0-day Vulnerability CVE-2026-1281, a critical vulnerability in Ivanti Endpoint Manager Mobile (EPMM), saw an unprecedented.

Critical SandboxJS Vulnerability Allows Remote Host Takeover – PoC Released

Critical SandboxJS Vulnerability Allows Remote Host Takeover – PoC Released

CYBER ATTACKZerowl

Release of the SandboxJS Vulnerability PoC The JavaScript library has been found to have a serious sandbox escape vulnerability that allows attackers to.

Windows Remote Access Connection Manager 0-Day Vulnerability Let Attackers Trigger DoS Attack

Windows Remote Access Connection Manager 0-Day Vulnerability Let Attackers Trigger DoS Attack

CYBER ATTACKZerowl

A zero-day vulnerability in Windows Remote Access Connection Manager Tracked as CVE-2026-21525, Microsoft has fixed a zero-day vulnerability in the.

Legacy IRC Botnet Campaign Uses Automated SSH Compromise Pipeline to Enroll Linux Hosts at Scale

Legacy IRC Botnet Campaign Uses Automated SSH Compromise Pipeline to Enroll Linux Hosts at Scale

CYBER ATTACKZerowl

A recently identified Linux botnet called SSHStalker uses automation to compromise servers via SSH and restores control over Internet Relay Chat (IRC). It.

Critical UUID Flaw in Fiber v2 on Go 1.24+ Enables Session Hijacking, CSRF Bypass, and Zero-ID DoS Risk

Critical UUID Flaw in Fiber v2 on Go 1.24+ Enables Session Hijacking, CSRF Bypass, and Zero-ID DoS Risk

CYBER ATTACKZerowl

Fiber v2 on Go has a UUID bug This article explores uuid bug fiber. . Fiber v2, a well-known Go web framework, has a serious flaw that could let hackers.

Organizations are being attacked by BQTLock and GreenBlood ransomware to encrypt and steal data.

Organizations are being attacked by BQTLock and GreenBlood ransomware to encrypt and steal data.

CYBER ATTACKZerowl

The cybersecurity landscape has seen the emergence of two advanced ransomware families, BQTLock and GREENBLOOD, which employ opposing tactics to extort.

MSHTML Framework Zero-Day Vulnerability Lets Attackers Bypass Security Features Over the Network

MSHTML Framework Zero-Day Vulnerability Lets Attackers Bypass Security Features Over the Network

CYBER ATTACKZerowl

On February 10, 2026, Microsoft revealed a serious zero-day vulnerability in the MSHTML Framework, which served as a stark reminder to Windows users This.

Microsoft Releases Extended Security Updates for Windows 10 Users

Microsoft Releases Extended Security Updates for Windows 10 Users

CYBER ATTACKZerowl

For Windows 10 versions 22H2 and 21H2, Microsoft has published KB5075912, an Extended Security Update (ESU) that targets OS builds 19045.6937 and.

Microsoft Releases Critical Windows 11 Cumulative Updates for Versions 25H2, 24H2, and 23H2

Microsoft Releases Critical Windows 11 Cumulative Updates for Versions 25H2, 24H2, and 23H2

CYBER ATTACKZerowl

Cumulative Updates for Windows 11 Essential cumulative updates for Windows 11 versions 25H2, 24H2, and 23H2 have been released in a regular Microsoft.

Critical UUID Flaw in Fiber v2 on Go 1.24+ Enables Session Hijacking and CSRF Bypass

Critical UUID Flaw in Fiber v2 on Go 1.24+ Enables Session Hijacking and CSRF Bypass

CYBER ATTACKZerowl

Four days ago, security researcher ReneWerner87 revealed GHSA-68rr-p4fp-j59v, a serious flaw in the widely used Fiber v2 web framework that should serve.

React2Shell Flaw Weaponized by ILOVEPOOP Attack Framework

React2Shell Flaw Weaponized by ILOVEPOOP Attack Framework

CYBER ATTACKZerowl

CVE-2025-55182, also referred to as "React2Shell," is being actively weaponized by a recently discovered exploit toolkit called ILOVEPOOP to search for.

Microsoft Word Zero-Day Vulnerability Allows Attackers to Bypass Security Features

Microsoft Word Zero-Day Vulnerability Allows Attackers to Bypass Security Features

CYBER ATTACKZerowl

On February 10, 2026, Microsoft revealed a significant zero-day vulnerability in Word, serving as a warning to Office users This article explores office.

Microsoft Investigates Teams Assignment Errors After Failed Service Update

Microsoft Investigates Teams Assignment Errors After Failed Service Update

CYBER ATTACKZerowl

Microsoft Looks Into Issues with Teams Assignments Widespread assignment management issues with Microsoft Teams have prompted the company to launch an.

Coinbase Cartel Targets High-Value Sectors with Data-Theft-First Extortion Strategy

Coinbase Cartel Targets High-Value Sectors with Data-Theft-First Extortion Strategy

CYBER ATTACKZerowl

With new threat actors using unusual strategies, the ransomware landscape is constantly changing This article explores ransom coinbase cartel. . When.

Coinbase Cartel Prioritizes Data Theft in Targeted Extortion Campaign

Coinbase Cartel Prioritizes Data Theft in Targeted Extortion Campaign

CYBER ATTACKZerowl

In September 2025, Coinbase Cartel, a ransomware group, made its debut and claimed 14 victims in that month alone This article explores coinbase cartel.

CISA Adds Six Microsoft 0-Day Vulnerabilities to KEV Catalog Following Active Exploitation

CISA Adds Six Microsoft 0-Day Vulnerabilities to KEV Catalog Following Active Exploitation

CYBER ATTACKZerowl

0-Day Vulnerabilities in Microsoft Six zero-day vulnerabilities that impact Microsoft products have been added to the U.S This article explores.

Double-extortion attacks using exposed RDP are exploited by Cephalus Ransomware.

Double-extortion attacks using exposed RDP are exploited by Cephalus Ransomware.

CYBER ATTACKZerowl

Since the middle of 2025, Cephalus ransomware has become a serious threat, using weak Remote Desktop Protocol (RDP) access to target Windows systems This.

Windows Shell Zero-Day Vulnerability Allows Attackers to Bypass Authentication

Windows Shell Zero-Day Vulnerability Allows Attackers to Bypass Authentication

CYBER ATTACKZerowl

A zero-day vulnerability in Windows Shell, identified as CVE-2026-21510, prompted Microsoft to issue an urgent patch on February 10, 2026 This article.

Windows Shell Security Feature 0-Day Vulnerability Let Attackers Bypass Authentication

Windows Shell Security Feature 0-Day Vulnerability Let Attackers Bypass Authentication

CYBER ATTACKZerowl

0-Day Vulnerability in the Windows Shell Security Feature In order to fix a serious zero-day vulnerability in Windows Shell that is presently being.

Windows Remote Access Connection Manager Zero-Day Enables DoS Attacks

Windows Remote Access Connection Manager Zero-Day Enables DoS Attacks

CYBER ATTACKZerowl

On February 10, 2026, Microsoft released urgent fixes for a zero-day vulnerability in the Windows Remote Access Connection Manager (RasMan) service This.

Ivanti Endpoint Manager Vulnerability Allows Remote Attackers to Leak Arbitrary Data

Ivanti Endpoint Manager Vulnerability Allows Remote Attackers to Leak Arbitrary Data

CYBER ATTACKZerowl

For its Endpoint Manager (EPM) software, Ivanti has released a critical security patch in a hurry, addressing two serious flaws that could allow hackers.

GitLab Patches Multiple Vulnerabilities Enabling DoS and Cross-Site Scripting Attacks

GitLab Patches Multiple Vulnerabilities Enabling DoS and Cross-Site Scripting Attacks

CYBER ATTACKZerowl

GitLab, a well-known code collaboration platform, recently released critical security updates for its Enterprise Edition (EE) and Community Edition (CE).

APT36 Uses New Disruptive Tools to Target Linux Systems

APT36 Uses New Disruptive Tools to Target Linux Systems

CYBER ATTACKZerowl

State-sponsored "espionage ecosystems" are posing an increasing threat to critical infrastructure around the world This article explores access trojans.

Windows Remote Desktop Services 0-Day Vulnerability Exploited in the Wild to Escalate Privileges

Windows Remote Desktop Services 0-Day Vulnerability Exploited in the Wild to Escalate Privileges

CYBER ATTACKZerowl

A zero-day vulnerability in Windows Remote Desktop Services A zero-day elevation of privilege vulnerability in Windows Remote Desktop Services (RDS) that.

Windows Notepad Vulnerability Allows Attackers to Execute Malicious Code Remotely

Windows Notepad Vulnerability Allows Attackers to Execute Malicious Code Remotely

CYBER ATTACKZerowl

RCE Vulnerability in Windows Notepad Microsoft has fixed CVE-2026-20841, a critical remote code execution (RCE) vulnerability in the Windows Notepad.

TeamPCP Turns Cloud Misconfigurations Into Scalable Cybercrime Engine

TeamPCP Turns Cloud Misconfigurations Into Scalable Cybercrime Engine

CYBER ATTACKZerowl

In a massive cloud exploitation campaign, a threat group called TeamPCP—also known as PCPcat, ShellForce, and DeadCatx3—has transformed misconfigured.

GitLab Patches Multiple Vulnerabilities That Enables DoS and Cross-site Scripting Attacks

GitLab Patches Multiple Vulnerabilities That Enables DoS and Cross-site Scripting Attacks

CYBER ATTACKZerowl

Vulnerabilities are fixed by GitLab This article explores vulnerability identified cve. . To fix several high-severity vulnerabilities, a critical.

FortiOS Authentication Bypass Vulnerability Allows Attackers to Bypass LDAP Login

FortiOS Authentication Bypass Vulnerability Allows Attackers to Bypass LDAP Login

CYBER ATTACKZerowl

A shocking security alert regarding a nasty bug in its FortiOS firewall software was just released by Fortinet This article explores bug fortios firewall.

Top 5 this week

Page 46 of 61