Zero-Day Security News

Zero-day vulnerabilities being actively exploited before a patch exists, and the fixes that follow.

A zero-day is a vulnerability being exploited in the wild before the vendor has shipped — or sometimes even known about — a fix, leaving defenders with no patch to apply. This feed tracks zero-day disclosures and in-the-wild exploitation as they are reported, along with the emergency patches that typically follow. These are the highest-urgency items in the feed: attackers already have working exploits by the time most zero-days go public.

Recent Zero-Day items

Unpatched Magento and Adobe Commerce Zero-Day Exploited to Backdoor Online Stores https://ift.tt/hT7Sk8m
@ctinow · Sep 5, 2026
BREAKING - Attackers are exploiting an unpatched Magento and Adobe Commerce ZERO-DAY to backdoor online stores.No login required. No published CVE. No Adobe patch yet.Here's what to do and how the att…
@thehackernews · Sep 5, 2026
ShipMonk said it deleted Trezor customer data. A breach exposed it anyway.Trezor says 67,000 more U.S. customers had names, contact details, shipping addresses, and order numbers exposed. The breach i…
@thehackernews · Sep 5, 2026
New CrowdStrike 'FalconFlank' zero-day grants SYSTEM privileges https://ift.tt/BJPb8l5
@ctinow · Sep 4, 2026
Sangoma Switchvox Vulnerabilities Exploited in the Wild https://ift.tt/RKmzvAf
@ctinow · Sep 4, 2026
Google warns of new Chrome zero-day flaw exploited in attacks https://ift.tt/2AasQcX
@ctinow · Sep 4, 2026
Google Patches 6th Chrome Zero-Day of 2026 https://ift.tt/JDBsMHe
@ctinow · Sep 4, 2026
Google fixes the sixth actively exploited Chrome zero-day of 2026 https://securityaffairs.com/198405/security/google-fixes-the-sixth-actively-exploited-chrome-zero-day-of-2026.html
@PentestingNews · Sep 4, 2026
Google Chrome V8 Flaw Actively Exploited in the Wild, Update Released https://gbhackers.com/google-chrome-v8-flaw/
@PentestingNews · Sep 4, 2026
CrowdStrike Falcon Zero-Day Lets Attackers Escalate Privileges on Windows Systems https://gbhackers.com/crowdstrike-falcon-zero-day/
@PentestingNews · Sep 4, 2026
Google fixes the sixth actively exploited Chrome zero-day of 2026 https://ift.tt/GyPxXzq
@ctinow · Sep 4, 2026
Google Releases Chrome Update to Patch Actively Exploited V8 Zero-Day https://ift.tt/G9EflRB
@ctinow · Sep 4, 2026
WARNING - Attackers are exploiting a Chrome V8 zero-day. CVE-2026-85046 allows arbitrary code execution inside the browser sandbox via a crafted HTML page. Google fixed it in Chrome 152.0.7977.82/.83.…
@thehackernews · Sep 4, 2026
GPT-6 Astra scored 100% on ExploitBench.OpenAI says separate exploit-development tests included two zero-day vulnerabilities. The released version is limited to secure code review and patching and ref…
@thehackernews · Sep 4, 2026
Avast Antivirus Zero-Day PoC Lets Attackers Dump SAM Database and Gain SYSTEM Shell https://gbhackers.com/avast-antivirus-zero-day-poc/
@PentestingNews · Sep 3, 2026
SonicWall Warns of Two Actively Exploited SMA1000 Zero-Days, One Rated Maximum Severity https://thecyberexpress.com/sonicwall-warns-of-two-zero-days-in-sma1000/
@PentestingNews · Sep 3, 2026
MSNightmare/FalconFlank: Crowdstrike Falcon 0day Privilege Escalation Vulnerability https://github.com/MSNightmare/FalconFlank 🎖
@malwr · Sep 3, 2026
CVE-2023-7305 SmartBI V8, V9, and V10 contain an unrestricted file upload vulnerability via the RMIServlet request handling logic. Under certain configurations or usage patterns, attackers can send sp…
@cveNotify · Sep 3, 2026
OpenAI Astra Brings Autonomous Zero-Day Exploitation to AI https://ift.tt/7ZhjcJm
@ctinow · Sep 2, 2026
SonicWall Patches Two New Actively Exploited Zero-Days in SMA 1000 VPNs https://securityaffairs.com/198303/security/sonicwall-patches-two-new-actively-exploited-zero-days-in-sma-1000-vpns.html
@PentestingNews · Sep 2, 2026
SonicWall Patches Two New Actively Exploited Zero-Days in SMA 1000 VPNs https://ift.tt/nUP2JxL
@ctinow · Sep 2, 2026
SonicWall warns of actively exploited SMA1000 zero-day flaws https://ift.tt/JmAeSsB
@ctinow · Sep 2, 2026
Attackers exploit a JFrog Artifactory flaw to mint admin tokens.The critical auth bypass affects default configurations, requires network access but no login, and was weaponized days after disclosure.…
@thehackernews · Sep 1, 2026
Chaotic Eclipse Releases Kaspersky Zero-Day HardBreacher https://securityaffairs.com/198214/hacking/chaotic-eclipse-releases-kaspersky-zero-day-hardbreacher.html
@PentestingNews · Sep 1, 2026
Critical JFrog Artifactory Vulnerability Reportedly Exploited in the Wild https://ift.tt/BqO6giU
@ctinow · Sep 1, 2026
Chaotic Eclipse Releases Kaspersky Zero-Day HardBreacher https://ift.tt/LkV7rQ9
@ctinow · Sep 1, 2026
CISA Flags Multiple PaperCut NG/MF Flaws Exploited in the Wild https://gbhackers.com/cisa-flags-multiple-papercut-ng-mf-flaws/
@PentestingNews · Sep 1, 2026
HardBreacher Exploit Targets Kaspersky Endpoint Security Zero-Day for Windows 11 Privilege Escalation https://gbhackers.com/hardbreacher-exploit-targets-kaspersky-endpoint-security/
@PentestingNews · Aug 31, 2026
Metasploit Adds Exploit for PaperCut MF/NG Zero-Day RCE Vulnerabilities https://gbhackers.com/metasploit-adds-exploit-for-papercut-mf-ng-zero-day/
@PentestingNews · Aug 31, 2026
OpenAI Warns Astra AI Model May Develop Zero-Day Exploits and Launch Autonomous Cyberattacks https://gbhackers.com/openai-warns-astra-ai-model/
@PentestingNews · Aug 31, 2026

Other topics

CVE
Recent CVE identifiers and vulnerability disclosures aggregated from security feeds — new CVE IDs, published advisories, and the vendors and products they affect.
Ransomware
Ransomware attacks, extortion group activity, victim disclosures and decryptor releases tracked as they are reported.
Phishing
Phishing campaigns, credential-harvesting kits, and social-engineering techniques used to compromise users and organizations.
Data Breach
Confirmed and reported data breaches — what was exposed, which organizations were affected, and how the incident came to light.
Exploit
Public exploit code, proof-of-concept releases, and technical exploitation write-ups for known vulnerabilities.
Patch
Vendor patches, security updates and fix releases for previously disclosed vulnerabilities.