Recent Threat News
Last 24h
An unauthenticated RCE in FortiGate appliances is under active exploitation by a Chinese-aligned APT group.
June Patch Tuesday addresses a critical wormable bug in IPv6 packet processing with no user interaction required.
Federal agencies have 21 days to patch newly added KEV entries affecting Cisco edge routers.
A long-form investigation into the ransomware cartel's revamped affiliate vetting and pay structure.
A four-bug chain enabling drive-by remote code execution on macOS and iOS, fixed in Safari 18.5.
Telemetry suggests opportunistic exploitation of an authentication bypass affecting GlobalProtect portals.
Trending CVEs
By CVSS
Top Vendors Affected
7-day rolling
Critical Vulnerabilities
Patch now
Unauthenticated RCE in FortiGate management interface via crafted HTTP request.
Wormable RCE in Windows TCP/IP stack triggered by malformed IPv6 packets.
Daily Summary
June 19