Skip to content

  • Home
  • Tools
    • IOC Defang/Refang Tool
    • Universal Encoder Decoder
    • File Hash Calculator
    • Password Crack Time Simulator
    • Multi-URL IOC Checker
  • CyberSecurity News
  • Latest Cyber Attack
  • Vulnerabilities
  • Threat Advisories
  • MITRE ATT&CK
    • Collection
    • Command and Control
    • Credential Access
    • Defense Evasion
    • Discovery
    • Execution
    • Exfiltration
    • Impact
    • Initial Access
    • Lateral Movement
    • Persistence
    • Privilege Escalation
    • Reconnaissance
    • Resource Development
  • Ransomware
  • Malware
  • Cyber Kill Chain

  • Home
  • Tools
    • IOC Defang/Refang Tool
    • Universal Encoder Decoder
    • File Hash Calculator
    • Password Crack Time Simulator
    • Multi-URL IOC Checker
  • CyberSecurity News
  • Latest Cyber Attack
  • Vulnerabilities
  • Threat Advisories
  • MITRE ATT&CK
    • Collection
    • Command and Control
    • Credential Access
    • Defense Evasion
    • Discovery
    • Execution
    • Exfiltration
    • Impact
    • Initial Access
    • Lateral Movement
    • Persistence
    • Privilege Escalation
    • Reconnaissance
    • Resource Development
  • Ransomware
  • Malware
  • Cyber Kill Chain

January 2026

CVE-2026-0650: Critical Authentication Bypass Exposes OpenFlagr Control Plane

  • Vulnerabilities
AegironJanuary 7, 2026January 7, 20268 mins0
CVE ID: CVE-2026-0650Affected Product: OpenFlagr – FlagrImpacted Versions: All versions up to and including 1.1.18CVSS v3.1 Score:…
continue reading..

CVE-2026-0628: WebView Policy Bypass in Android & Chrome Enables Unauthorized Script Execution

  • Vulnerabilities
AegironJanuary 7, 2026January 7, 20267 mins0
Product: Android System WebView / Google Chrome (WebView component)Vendor: GoogleCVE ID: CVE-2026-0628CVSS v3.1 Score: 8.1 (High)Severity: HighAttack…
continue reading..

Multiple RCE and Privilege-Escalation Vulnerabilities in Veeam Backup & Replication (January 2026)

  • Threat Advisories
CyberDefenderJanuary 7, 2026January 7, 202618 mins0
On 6–7 January 2026 Veeam published fixes for four vulnerabilities in Veeam Backup & Replication (13.x builds…
continue reading..

TridentLocker Strikes Again: How a Quiet Credential Compromise Led to a 3.4GB Data Theft

  • Cyber Threat Intelligence
AegironJanuary 7, 2026January 7, 202610 mins0
Incident Name: TridentLocker Ransomware Data TheftDate of Disclosure: January 7, 2026Target Organization: Sedgwick Government SolutionsAttack Type: Ransomware…
continue reading..

One Click Is Enough: Commodity Loader Emails Quietly Opening the Door to Full System Takeovers

  • Cyber Threat Intelligence
AegironJanuary 7, 2026January 7, 20269 mins0
Executive Summary A large-scale malicious email campaign, now commonly referred to as the Commodity Loader Campaign, has…
continue reading..

Microsoft Cancels Planned Exchange Online Bulk Email Limit

  • CyberSecurity News
CyberDefenderJanuary 7, 2026January 7, 20263 mins0
Microsoft has canceled indefinitely its previously planned daily limit on the number of external recipients Exchange Online…
continue reading..

Attackers Abuse Google Cloud Services to Steal Microsoft 365 Credentials

  • CyberSecurity News
CyberDefenderJanuary 7, 2026January 7, 20264 mins0
Cybersecurity researchers have uncovered an ongoing phishing campaign where threat actors are actively misusing Google Cloud infrastructure…
continue reading..

CVE-2025-13744: Stored XSS in Search & Filter Views Enables Session Hijack and Admin Compromise

  • Vulnerabilities
AegironJanuary 7, 2026January 7, 20269 mins0
CVE-2025-13744 Vulnerability Type: Cross-Site Scripting (XSS)Category: Web Application – Stored XSSCVSS Score: 8.4Severity: HighAttack Vector: NetworkAttack Complexity:…
continue reading..

CVE-2025-47388: Qualcomm DSP Memory Corruption Exposes Android Devices to Kernel Crash and Privilege Escalation

  • Vulnerabilities
AegironJanuary 7, 2026January 7, 20268 mins0
Executive Summary What This Vulnerability Is CVE-2025-47388 is a memory corruption flaw in Qualcomm’s DSP service, a…
continue reading..

CVE-2025-15471: Critical Unauthenticated OS Command Injection in TRENDnet TEW-713RE Router

  • Vulnerabilities
AegironJanuary 7, 2026January 7, 202615 mins0
Executive summary There’s an OS command-injection flaw in the TEW-713RE web management stack. An attacker who can…
continue reading..
  • 1
  • …
  • 61
  • 62
  • 63
  • 64
  • 65
  • …
  • 75

Recent Posts

  • Ransomware Group ‘Gentlemen’ Industrializes EDR Evasion with Kernel-Le…
    Jun 22, 2026
  • SmartApeSG Compromises Okendo Reviews Widget, Exposing Thousands of E-…
    Jun 22, 2026
  • Cybercriminals Exploit Fake Microsoft Teams Transcripts to Deploy Pers…
    Jun 22, 2026
  • Thousands Targeted, Hundreds Compromised: Inside the FortiBleed Creden…
    Jun 22, 2026
  • Novel GhoLoader malware campaign detected, using unique ’10 mous…
    Jun 22, 2026
  • INC Ransomware Emerges as a Major Global Cyber Threat, Rapidly Expandi…
    Jun 19, 2026
  • Dropping Elephant Deploys Advanced Fileless Malware, Neutralizing AMSI…
    Jun 19, 2026
  • ShinyHunters Exploits Oracle PeopleSoft Zero-Day, Compromises Universi…
    Jun 19, 2026
  • Cybercriminals Weaponize Wallpaper Engine to Hijack Steam Accounts in …
    Jun 19, 2026
  • AI-Powered ClickFix Campaign Targets Brazilian Banks, Deploys SmartRAT…
    Jun 19, 2026

Popular Posts

No posts found.

Find Me On

©Cyber Security Priority 1(P1) News 2026. All Rights Reserved.
  • Contact
  • Privacy Policy
  • Terms of Service