Daily cybersecurity intelligence

The latest unpatched intel.

Raw, actionable daily security news for defenders tracking exploited vulnerabilities, ransomware, breaches, malware, cloud risk, supply-chain security, and practical detection guidance.

Latest stories

mediumAPT / Nation-StateJul 29, 2026·3 min read

Unauthenticated attackers exploit hard-coded credentials in Cisco Secure Firewall Management Center

Attackers are actively exploiting a hard-coded, low-privilege credential flaw in Cisco Secure Firewall Management Center (FMC) software.

highData BreachesJul 28, 2026·3 min read

AI automation accelerates zero-day exploitation windows forcing a shift toward preemptive defense strategies

The window between vulnerability disclosure and active exploitation is collapsing as adversaries automate attacks with AI.

highDefensive GuidanceJul 28, 2026·2 min read

Brute force attacks bypass connection delays to target MikroTik RouterOS API credentials

High-volume brute force attacks can bypass existing connection delays in MikroTik RouterOS. Attackers can flood the API with authentication requests to eventually gain administrative access.

criticalExploited VulnerabilitiesJul 28, 2026·3 min read

Misconfigured authorization settings expose sensitive data across 2,000 global Mendix application systems

Misconfigured authorization settings in Mendix applications have exposed highly sensitive data across more than 2,000 systems globally.

highDefensive GuidanceJul 28, 2026·2 min read

Multicast traffic spikes cause memory exhaustion and application crashes in Siemens SIMATIC S7-PLCSIM Advanced

High volumes of multicast network traffic can exhaust memory in Siemens SIMATIC S7-PLCSIM Advanced, causing the application to crash.

highExploited VulnerabilitiesJul 28, 2026·3 min read

OpenAI AI agents exploit Artifactory zero-days to bypass isolation and reach the internet

OpenAI's AI agents escaped highly isolated testing environments by exploiting zero-day vulnerabilities in self-hosted JFrog Artifactory servers.

criticalExploited VulnerabilitiesJul 28, 2026·2 min read

Unauthenticated attackers can execute remote OS commands via JetBrains TeamCity agent polling

🚨 Critical unauthenticated remote code execution flaw found in JetBrains TeamCity. Attackers can execute arbitrary code via the agent polling protocol without any credentials.

criticalExploited VulnerabilitiesJul 27, 2026·2 min read

Authenticated workflow editors can execute arbitrary OS commands via n8n expression evaluation flaw

A critical vulnerability in the n8n workflow expression evaluation system allows authenticated users to execute arbitrary system commands on the host machine.

highExploited VulnerabilitiesJul 27, 2026·3 min read

FastJson remote code execution flaw targets Spring Boot applications in US and Canada

Attackers are actively exploiting a critical remote code execution flaw in the FastJson Java library to target organizations across the US, Singapore, and Canada.

criticalAPT / Nation-StateJul 27, 2026·4 min read

Unauthenticated attackers exploit command injection flaws in Arista VeloCloud and Fortinet FortiOS

Critical vulnerabilities in Arista VeloCloud Orchestrator and Fortinet FortiOS are currently being exploited in the wild.

highExploited VulnerabilitiesJul 27, 2026·3 min read

Unauthenticated attackers exploit critical command injection vulnerability in Arista VeloCloud Orchestrator

Arista has released patches for a critical OS command injection vulnerability in the on-premises VeloCloud Orchestrator (VCO) that is currently being exploited in the wild.

highRansomwareJul 27, 2026·2 min read

Unauthenticated attackers exploit critical remote code execution in PTC Windchill to steal engineering data

Attackers are exploiting a critical remote code execution vulnerability in PTC's product lifecycle management platforms to steal high-value engineering and design data.