Skip to content

  • Home
  • Tools
    • IOC Defang/Refang Tool
    • Universal Encoder Decoder
    • File Hash Calculator
    • Password Crack Time Simulator
    • Multi-URL IOC Checker
  • CyberSecurity News
  • Latest Cyber Attack
  • Vulnerabilities
  • Threat Advisories
  • MITRE ATT&CK
    • Collection
    • Command and Control
    • Credential Access
    • Defense Evasion
    • Discovery
    • Execution
    • Exfiltration
    • Impact
    • Initial Access
    • Lateral Movement
    • Persistence
    • Privilege Escalation
    • Reconnaissance
    • Resource Development
  • Ransomware
  • Malware
  • Cyber Kill Chain

  • Home
  • Tools
    • IOC Defang/Refang Tool
    • Universal Encoder Decoder
    • File Hash Calculator
    • Password Crack Time Simulator
    • Multi-URL IOC Checker
  • CyberSecurity News
  • Latest Cyber Attack
  • Vulnerabilities
  • Threat Advisories
  • MITRE ATT&CK
    • Collection
    • Command and Control
    • Credential Access
    • Defense Evasion
    • Discovery
    • Execution
    • Exfiltration
    • Impact
    • Initial Access
    • Lateral Movement
    • Persistence
    • Privilege Escalation
    • Reconnaissance
    • Resource Development
  • Ransomware
  • Malware
  • Cyber Kill Chain

January 2026

CVE-2021-47744: Actively Exploited Hard-Coded Root Credential Enables Remote Device Takeover

  • Vulnerabilities
AegironJanuary 1, 2026January 1, 20268 mins0
Vulnerability Name: Hard-coded Root Credentials in Cypress Solutions CTM-200 / CTM-ONECVE ID: CVE-2021-47744Vendor: Cypress SolutionsAffected Products: CTM-200,…
continue reading..

High-Risk Security Flaws Expose WordPress Sites to Account Takeover and Data Compromise

  • Vulnerabilities
AegironJanuary 1, 2026January 1, 20267 mins0
Vulnerability Details Product CVE ID Vulnerability Type CVSS Score Severity Attack Vector Authentication User Interaction Exploitability Exploit…
continue reading..

Unleash Protocol Drained in Shai-Hulud-Style Crypto Attack

  • Latest Cyber Attack
CyberDefenderJanuary 1, 2026January 1, 20264 mins0
On January 1, 2026, the decentralized intellectual-property platform Unleash Protocol disclosed a major security breach in which…
continue reading..

CVE-2025-61037: Simple File System Trick Leads to Full SYSTEM Takeover in SevenCs ORCA G2

  • Threat Advisories
AegironJanuary 1, 2026January 1, 202610 mins0
Vulnerability Summary Why This Matters This vulnerability enables a user without administrative rights to escalate to full…
continue reading..

HIGH-RISK WINDOWS KERNEL SECURITY MISCONFIGURATION IN ORCA G2 (CVE-2025-64699) ALLOWS SYSTEM-LEVEL COMPROMISE

  • Threat Advisories
AegironJanuary 1, 2026January 1, 20268 mins0
Title: Incorrect NULL DACL Applied to Device Object Allows Unauthorized Raw Disk AccessAffected Product: ORCA G2 (Version…
continue reading..

Hong Kong Sets Global Benchmark with 12-Hour Cyber Incident Reporting

  • CyberSecurity News
CyberDefenderJanuary 1, 2026January 1, 20264 mins0
Hong Kong has enacted its first dedicated cybersecurity law aimed at safeguarding the computer systems of “critical…
continue reading..

Massive Breach Disclosure: Aflac Insurance 22.65 million affected

  • Latest Cyber Attack
CyberDefenderJanuary 1, 2026January 1, 20265 mins0
On December 31, Aflac disclosed the full scope of a data breach affecting 22.65 million individuals, including…
continue reading..

New Zealand Patients Warned After Health Portal Breach

  • Latest Cyber Attack
CyberDefenderJanuary 1, 2026January 1, 20266 mins0
Security experts called the breach “incredibly concerning” for patients. Some commentators noted weaknesses in implementation practices —…
continue reading..

CVE-2025-68700: Critical Authenticated Remote Code Execution in RAGFlow Leading to Full Server Compromise

  • Threat Advisories
AegironJanuary 1, 2026January 1, 20268 mins0
CVE Identification Severity & Risk Summary Impact: Complete server takeover, equivalent to full root-level compromise depending on…
continue reading..

CVE-2025-69288: Authenticated Admins Can Trigger Remote Code Execution in Titra via Unsafe Rule Evaluation

  • Threat Advisories
AegironJanuary 1, 2026January 1, 20267 mins0
Vulnerability Overview Severity & Risk Summary This vulnerability allows an authenticated Admin user to execute arbitrary system…
continue reading..
  • 1
  • …
  • 72
  • 73
  • 74
  • 75

Recent Posts

  • Ransomware Group ‘Gentlemen’ Industrializes EDR Evasion with Kernel-Le…
    Jun 22, 2026
  • SmartApeSG Compromises Okendo Reviews Widget, Exposing Thousands of E-…
    Jun 22, 2026
  • Cybercriminals Exploit Fake Microsoft Teams Transcripts to Deploy Pers…
    Jun 22, 2026
  • Thousands Targeted, Hundreds Compromised: Inside the FortiBleed Creden…
    Jun 22, 2026
  • Novel GhoLoader malware campaign detected, using unique ’10 mous…
    Jun 22, 2026
  • INC Ransomware Emerges as a Major Global Cyber Threat, Rapidly Expandi…
    Jun 19, 2026
  • Dropping Elephant Deploys Advanced Fileless Malware, Neutralizing AMSI…
    Jun 19, 2026
  • ShinyHunters Exploits Oracle PeopleSoft Zero-Day, Compromises Universi…
    Jun 19, 2026
  • Cybercriminals Weaponize Wallpaper Engine to Hijack Steam Accounts in …
    Jun 19, 2026
  • AI-Powered ClickFix Campaign Targets Brazilian Banks, Deploys SmartRAT…
    Jun 19, 2026

Popular Posts

No posts found.

Find Me On

©Cyber Security Priority 1(P1) News 2026. All Rights Reserved.
  • Contact
  • Privacy Policy
  • Terms of Service