Skip to content

  • Home
  • Tools
    • IOC Defang/Refang Tool
    • Universal Encoder Decoder
    • File Hash Calculator
    • Password Crack Time Simulator
    • Multi-URL IOC Checker
  • CyberSecurity News
  • Latest Cyber Attack
  • Vulnerabilities
  • Threat Advisories
  • MITRE ATT&CK
    • Collection
    • Command and Control
    • Credential Access
    • Defense Evasion
    • Discovery
    • Execution
    • Exfiltration
    • Impact
    • Initial Access
    • Lateral Movement
    • Persistence
    • Privilege Escalation
    • Reconnaissance
    • Resource Development
  • Ransomware
  • Malware
  • Cyber Kill Chain

  • Home
  • Tools
    • IOC Defang/Refang Tool
    • Universal Encoder Decoder
    • File Hash Calculator
    • Password Crack Time Simulator
    • Multi-URL IOC Checker
  • CyberSecurity News
  • Latest Cyber Attack
  • Vulnerabilities
  • Threat Advisories
  • MITRE ATT&CK
    • Collection
    • Command and Control
    • Credential Access
    • Defense Evasion
    • Discovery
    • Execution
    • Exfiltration
    • Impact
    • Initial Access
    • Lateral Movement
    • Persistence
    • Privilege Escalation
    • Reconnaissance
    • Resource Development
  • Ransomware
  • Malware
  • Cyber Kill Chain

Threat Advisories

Fortinet Confirms Active Exploitation of FortiCloud SSO Zero-Day, Releases Mitigations as Patch Is Prepared

  • CyberSecurity News
CyberDefenderJanuary 28, 2026January 28, 202610 mins0
Fortinet has confirmed that a critical FortiCloud Single Sign-On (SSO) authentication bypass vulnerability, tracked as CVE-2026-24858, is…
continue reading..

Critical vm2 Flaw Lets Attackers Escape Node.js Sandbox and Execute Arbitrary Code (CVE-2026-22709)

  • CyberSecurity News
CyberDefenderJanuary 27, 2026January 27, 20265 mins0
A serious security vulnerability has been discovered in vm2, a popular JavaScript sandbox library widely used in…
continue reading..

U.S. Charges Dozens in Nationwide ATM Jackpotting Scam Tied to Millions in Losses

  • CyberSecurity News
CyberDefenderJanuary 27, 2026January 27, 20266 mins0
The U.S. Department of Justice (DoJ) has taken another major step in dismantling a sprawling international criminal…
continue reading..

New Deepfake Phishing Attacks via Zoom and Microsoft Teams Target Bitcoin Users

  • CyberSecurity News
CyberDefenderJanuary 27, 2026January 27, 20265 mins0
A new and highly sophisticated deepfake phishing attack is actively targeting Bitcoin and cryptocurrency users through video…
continue reading..

Legacy Telnet Service Under Fire: CISA Adds CVE-2026-24061 to KEV After Active Exploitation

  • CyberSecurity News
CyberDefenderJanuary 27, 2026January 27, 20268 mins0
CVE-2026-24061 is a critical authentication bypass vulnerability affecting the GNU InetUtils telnetd service. When exploited, it allows…
continue reading..

CISA Flags Years-Old Linux Privilege Escalation Bug as Actively Exploited, Adds CVE-2018-14634 to KEV Catalog

  • CyberSecurity News
CyberDefenderJanuary 27, 2026January 27, 20264 mins0
CVE-2018-14634 is a local privilege escalation vulnerability in the Linux kernel that was originally published in 2018.…
continue reading..

SmarterMail Authentication Bypass Added to CISA KEV as Active Exploitation Intensifies(CVE-2026-23760)

  • CyberSecurity News
CyberDefenderJanuary 27, 2026January 27, 20268 mins0
CVE-2026-23760 is a critical authentication bypass vulnerability affecting SmarterMail, the email and collaboration server developed by SmarterTools.…
continue reading..

Microsoft Office Zero-Day CVE-2026-21509 Actively Exploited, Allows Attackers to Bypass Built-In Security Protections

  • CyberSecurity News
CyberDefenderJanuary 27, 2026January 27, 20269 mins0
CVE-2026-21509 is a security feature bypass vulnerability in Microsoft Office that allows an attacker to circumvent Office…
continue reading..

New Linux Kernel Flaws Allow Remote System Crashes and Guest-Triggered Host Denial-of-Service

  • CyberSecurity News
CyberDefenderJanuary 26, 2026January 26, 202610 mins0
Product: Linux KernelAffected Scope: Core kernel subsystems, networking, virtualization, storage, and device driversAttack Surface: Local, guest-to-host, network…
continue reading..

WordPress Privilege Escalation Flaw Exposes Sites to Full Admin Takeover (CVE-2025-14866)

  • CyberSecurity News
CyberDefenderJanuary 26, 2026January 26, 20266 mins0
CVE-2025-14866 is a high-impact privilege escalation vulnerability affecting the Melapress Role Editor WordPress plugin (versions ≤ 1.1.1).The…
continue reading..
  • 1
  • …
  • 9
  • 10
  • 11
  • 12
  • 13
  • …
  • 31

Recent Posts

  • Ransomware Group ‘Gentlemen’ Industrializes EDR Evasion with Kernel-Le…
    Jun 22, 2026
  • SmartApeSG Compromises Okendo Reviews Widget, Exposing Thousands of E-…
    Jun 22, 2026
  • Cybercriminals Exploit Fake Microsoft Teams Transcripts to Deploy Pers…
    Jun 22, 2026
  • Thousands Targeted, Hundreds Compromised: Inside the FortiBleed Creden…
    Jun 22, 2026
  • Novel GhoLoader malware campaign detected, using unique ’10 mous…
    Jun 22, 2026
  • INC Ransomware Emerges as a Major Global Cyber Threat, Rapidly Expandi…
    Jun 19, 2026
  • Dropping Elephant Deploys Advanced Fileless Malware, Neutralizing AMSI…
    Jun 19, 2026
  • ShinyHunters Exploits Oracle PeopleSoft Zero-Day, Compromises Universi…
    Jun 19, 2026
  • Cybercriminals Weaponize Wallpaper Engine to Hijack Steam Accounts in …
    Jun 19, 2026
  • AI-Powered ClickFix Campaign Targets Brazilian Banks, Deploys SmartRAT…
    Jun 19, 2026

Popular Posts

No posts found.

Find Me On

©Cyber Security Priority 1(P1) News 2026. All Rights Reserved.
  • Contact
  • Privacy Policy
  • Terms of Service