Zyxel Warns of Critical Command Injection Flaws in 4G/5G Routers and Fiber ONTs, Urges Immediate Firmware Updates
Zyxel has published updates and security patches for several null pointer dereference and command injection vulnerabilities impacting…
continue reading..
Google Disrupts ‘GRIDTIDE’ Cyber Espionage Campaign Targeting Telecoms in 42 Countries
In February 2026, the Google Threat Intelligence Group (GTIG) together with Mandiant and other partners took significant…
continue reading..
Over 1,100 New Vulnerabilities Disclosed as Critical WordPress, BeyondTrust, and ICS Flaws Face Active Exploitation Risk
In the latest reporting period, CRIL tracked 1,102 vulnerabilities disclosed across IT and industrial control systems (ICS),…
continue reading..
SolarWinds Patches Severe Serv-U Bugs Allowing Full Server Compromise
Recently, SolarWinds released urgent security updates to address multiple critical security flaws in its Serv-U file transfer…
continue reading..
CISA Flags Actively Exploited Roundcube Webmail Flaws, Adds Critical RCE and XSS Bugs to KEV Catalog
Recently, the U.S. Cybersecurity and Infrastructure Security Agency (CISA) updated its Known Exploited Vulnerabilities (KEV) Catalog with…
continue reading..
CISA Warns of Critical Flaws in USR-W610 Industrial Gateway, Exposing OT Networks to Remote Compromise and Wireless Disruption
The USR-W610 industrial serial-to-Ethernet/Wi-Fi gateway, manufactured by Jinan USR IOT Technology Limited, is affected by multiple security…
continue reading..
CVE-2026-24790: Critical Authentication Bypass in Welker OdorEyes XL4 Controller Exposes Industrial Gas Systems to Remote Manipulation
CVE: CVE-2026-24790Name: Missing authentication for a critical function in Welker OdorEyes EcoSystem Pulse Bypass System (XL4 Controller)CVSS…
continue reading..
Critical VS Code Flaw (CVE-2025-65717) Exposes Millions of Developers to Remote File Theft via Live Server Extension
On 16 February 2026, a critical vulnerability identified as CVE-2025-65717 was published in the Common Vulnerabilities and…
continue reading..
Google Patches First Chrome Zero-Day of 2026 as Actively Exploited CSS Vulnerability Hits Desktop Users
In mid-February 2026, Google rolled out an important Stable Channel update for its Chrome browser across desktop…
continue reading..
