Malware & Threats Cisco Patches Catalyst SD-WAN Zero-Day Exploited by Highly Sophisticated Hackers Already added to CISA’s KEV catalog, the flaw allows attackers to bypass authentication and gain administrative privileges. Ionut ArghireFebruary 26, 2026
Nation-State Taiwan Security Firm Confirms Flaw Flagged by CISA Likely Exploited by Chinese APTs The vulnerability in TeamT5 ThreatSonar Anti-Ransomware was recently added to CISA’s KEV catalog. Eduard KovacsFebruary 24, 2026
Email Security Recent RoundCube Webmail Vulnerability Exploited in Attacks Patched in December 2025, the exploited flaw leads to XSS attacks via the animate tags in SVG documents. Ionut ArghireFebruary 23, 2026
Ransomware BeyondTrust Vulnerability Exploited in Ransomware Attacks CISA has updated its KEV entry for CVE-2026-1731 to alert organizations of exploitation in ransomware attacks. Eduard KovacsFebruary 20, 2026
Malware & Threats Ivanti Exploitation Surges as Zero-Day Attacks Traced Back to July 2025 Security researchers have seen the vulnerabilities being exploited to deliver shells, conduct reconnaissance, and download malware. Eduard KovacsFebruary 19, 2026
Vulnerabilities CISA: Hackers Exploiting Vulnerability in Product of Taiwan Security Firm TeamT5 The vulnerability added to CISA’s KEV catalog affects ThreatSonar Anti-Ransomware and it was patched in 2024. Eduard KovacsFebruary 18, 2026
Malware & Threats Dell RecoverPoint Zero-Day Exploited by Chinese Cyberespionage Group GTIG and Mandiant said the zero-day tracked as CVE-2026-22769 has been exploited by UNC6201 since at least 2024. Eduard KovacsFebruary 18, 2026
Vulnerabilities Google Patches First Actively Exploited Chrome Zero-Day of 2026 A Chrome 145 update fixes CVE-2026-2441, a vulnerability that can likely be exploited for arbitrary code execution. Eduard KovacsFebruary 16, 2026
Vulnerabilities BeyondTrust Vulnerability Targeted by Hackers Within 24 Hours of PoC Release Exploitation attempts target CVE-2026-1731, a critical unauthenticated remote code execution flaw in BeyondTrust Remote Support. Eduard KovacsFebruary 13, 2026
Vulnerabilities CISA Warns of Exploited SolarWinds, Notepad++, Microsoft Vulnerabilities Disclosed at the end of January, the SolarWinds vulnerability was likely exploited as a zero-day since December 2025. Ionut ArghireFebruary 13, 2026
Vulnerabilities Apple Patches iOS Zero-Day Exploited in ‘Extremely Sophisticated Attack’ Impacting the ‘dyld’ system component, the memory corruption issue can be exploited for arbitrary code execution. Ionut ArghireFebruary 12, 2026
Vulnerabilities 6 Actively Exploited Zero-Days Patched by Microsoft With February 2026 Updates Microsoft’s Patch Tuesday updates fix roughly 60 vulnerabilities found in the company’s products. Eduard KovacsFebruary 10, 2026
Vulnerabilities Recent SolarWinds Flaws Potentially Exploited as Zero-Days Vulnerable SolarWinds Web Help Desk instances were exploited in December 2025 for initial access. Ionut ArghireFebruary 9, 2026
Ransomware SmarterTools Hit by Ransomware via Vulnerability in Its Own Product SmarterTools says customers were impacted after hackers compromised a data center used for quality control testing. Ionut ArghireFebruary 9, 2026
Vulnerabilities Critical SmarterMail Vulnerability Exploited in Ransomware Attacks The security defect allows unauthenticated attackers to execute arbitrary code remotely via malicious HTTP requests. Ionut ArghireFebruary 6, 2026
Vulnerabilities Cryptominers, Reverse Shells Dropped in Recent React2Shell Attacks Two IP addresses accounted for the majority of the 1.4 million exploitation attempts observed over the past week. Ionut ArghireFebruary 4, 2026
Vulnerabilities Fresh SolarWinds Vulnerability Exploited in Attacks The critical-severity SolarWinds Web Help Desk flaw could lead to unauthenticated remote code execution. Ionut ArghireFebruary 4, 2026
Malware & Threats Critical React Native Vulnerability Exploited in the Wild Albeit mainly considered a theoretical risk, the flaw has been exploited to disable protections and deliver malware. Ionut ArghireFebruary 3, 2026
Malware & Threats Russia’s APT28 Rapidly Weaponizes Newly Patched Office Vulnerability The attacks targeting Europe were analyzed by Ukraine’s CERT-UA and the cybersecurity company Zscaler. Eduard KovacsFebruary 3, 2026
Vulnerabilities Ivanti Patches Exploited EPMM Zero-Days The critical-severity vulnerabilities could allow unauthenticated attackers to execute arbitrary code remotely. Ionut ArghireJanuary 30, 2026