April 2026

595 security articles published this month.

230
critical
148
high
35
medium
36
low
146
Advisory
266
Breaches
11
News
22
Intel
150
Learn
2
Research
0
Malware
144

Advisory

(266)
critical Apr 30

Fanwei E-office unauth file upload RCE (CVE-2022-50993)

critical Apr 30

Synway SMG Gateway unauth RCE patch (CVE-2025-71284)

high Apr 30

Dbit N300 T1 Pro DoS crashes router (CVE-2026-36957)

high Apr 30

Langflow Desktop unauthenticated data leak (CVE-2026-4503)

high Apr 30

Langflow Desktop command execution (CVE-2026-6543)

high Apr 29

XATABoost CMS SQLi leaks data (CVE-2018-25300)

critical Apr 29

Wazuh cluster path traversal RCE (CVE-2026-30893)

high Apr 29

Cockpit CMS authenticated RCE (CVE-2026-34965)

critical Apr 29

cPanel WHM auth bypass actively exploited (CVE-2026-41940) [PoC]

high Apr 29

pgjdbc client-side CPU exhaustion (CVE-2026-42198)

critical Apr 29

Jenkins GitHub Plugin stored XSS (CVE-2026-42523)

high Apr 28

Apache Thrift c_glib server crash (CVE-2025-48431)

critical Apr 28

Spring Boot bypasses default security (CVE-2026-40976)

high Apr 28

Spring AI SQLi via document IDs (CVE-2026-40978)

high Apr 28

Apache Thrift integer overflow crash (CVE-2026-41602)

high Apr 28

Apache Thrift OOB read leaks data (CVE-2026-41604)

high Apr 28

Apache Thrift Node.js stack overflow (CVE-2026-41636)

critical Apr 28

Pony Mail admin takeover (CVE-2026-41873)

high Apr 28

ProFTPD mod_sql unauth RCE (CVE-2026-42167) [PoC]

high Apr 28

Cisco Intersight unauthenticated access to clusters (CVE-2026-5944)

critical Apr 28

Totolink A8000RU unauthenticated RCE (CVE-2026-7242)

critical Apr 28

Firefox sandbox escape leaks all user data (CVE-2026-7321)

critical Apr 27

Camel CoAP unauthenticated RCE (CVE-2026-33453) [PoC]

critical Apr 27

Apache Camel header injection via email (CVE-2026-33454)

critical Apr 27

Apache Camel JMS header bypass RCE (CVE-2026-40453)

high Apr 27

Camel MINA unauthenticated RCE (CVE-2026-40473)

high Apr 27

Camel RCE via deserialization (CVE-2026-40858)

critical Apr 27

Camel deserialization RCE via JMS (CVE-2026-40860)

critical Apr 27

Apache MINA unauth RCE via deserialization (CVE-2026-41409)

critical Apr 27

Apache MINA unauth RCE via deserialization (CVE-2026-41635)

critical Apr 27

Totolink A8000RU unauth command injection (CVE-2026-7137)

high Apr 26

Firefox memory corruption can run code (CVE-2026-6785)

high Apr 26

Firefox memory corruption could run code (CVE-2026-6786)

critical Apr 24

Azure IoT Central elevates privileges (CVE-2026-21515)

high Apr 24

Apache DolphinScheduler tenant bypass (CVE-2026-23902)

critical Apr 24

BridgeHead FileStore unauth RCE (CVE-2026-39920)

high Apr 24

ActiveMQ code injection after auth bypass (CVE-2026-40466)

high Apr 24

Math.js parser RCE in expression eval (CVE-2026-40897) [PoC]

high Apr 24

ActiveMQ RCE via Spring XML (CVE-2026-41044)

critical Apr 24

Clerk middleware bypass grants unauth access (CVE-2026-41248)

high Apr 24

Arduino-ESP32 memory corruption (CVE-2026-41429)

critical Apr 24

Ops Wheel unauthenticated admin access (CVE-2026-6911)

high Apr 24

AWS Ops Wheel admin escalation (CVE-2026-6912)

critical Apr 23

Pipecat unauthenticated RCE via pickle (CVE-2025-62373)

critical Apr 23

Partner Center privilege escalation (CVE-2026-24303)

high Apr 23

Microsoft Purview SSRF elevates privileges (CVE-2026-26150)

critical Apr 23

Dynamics 365 SSRF lets attackers spoof (CVE-2026-32210)

critical Apr 23

Microsoft Bing unauthenticated RCE (CVE-2026-33819)

critical Apr 23

Entra ID SSRF allows spoofing (CVE-2026-35431)

critical Apr 23

Hackage XSS hijacks user sessions (CVE-2026-40470)

high Apr 23

Paperclip server host command injection (CVE-2026-41208)

critical Apr 23

Froxlor RCE via path traversal (CVE-2026-41228)

critical Apr 23

Froxlor unauthenticated PHP code injection (CVE-2026-41229)

high Apr 23

Pretalx stored XSS in admin panel (CVE-2026-41241)

critical Apr 23

Paperclip unauthenticated remote code execution (CVE-2026-41679)

critical Apr 23

Chrome Android GPU sandbox escape (CVE-2026-6920)

high Apr 23

Chrome sandbox escape via video file (CVE-2026-6921)

critical Apr 22

ThinkPHP 5.0.23 unauthenticated remote code execution (CVE-2018-25270)

high Apr 22

Copy Fail: Linux kernel crypto RCE (CVE-2026-31431) [PoC]

high Apr 22

Xerte Online Toolkits unauth file ops (CVE-2026-34413)

critical Apr 22

Xerte Online Toolkit unauth RCE via file upload (CVE-2026-34415)

critical Apr 22

AVideo SSRF via incomplete fix (CVE-2026-41064)

critical Apr 22

Jellystat SQL injection exposes admin credentials (CVE-2026-41167)

high Apr 22

GitLab CSRF lets unauth users act as anyone (CVE-2026-4922)

high Apr 22

InstructLab RCE via malicious HuggingFace model (CVE-2026-6859)

critical Apr 21

Portal for ArcGIS privilege escalation (CVE-2026-33518)

critical Apr 21

Portal for ArcGIS unauth access (CVE-2026-33519)

critical Apr 21

Oracle E-Biz unauth takeover (CVE-2026-34275)

high Apr 21

Neko grants admin to any user (CVE-2026-39386)

critical Apr 21

Excel MCP server path traversal (CVE-2026-40576)

critical Apr 21

Electric SQL injection destroys database (CVE-2026-40906)

critical Apr 21

AVideo unauthenticated XSS takeover (CVE-2026-40911)

critical Apr 21

Firefox/Thunderbird unauth RCE via Web Codecs (CVE-2026-6748)

critical Apr 21

Firefox/Thunderbird cookie bypass (CVE-2026-6768)

critical Apr 21

Firefox mitigation bypass, unauthenticated (CVE-2026-6771)

critical Apr 20

OpenAEV account takeover via password reset (CVE-2026-24467)

high Apr 20

Dell PowerProtect Data Domain unauth root command execution (CVE-2026-26944)

critical Apr 20

Spinnaker RCE via unrestricted Java classes (CVE-2026-32613)

critical Apr 20

SD-330AC and AMC Manager unauthenticated RCE (CVE-2026-32956)

critical Apr 20

Kafka OAuth JWT bypass grants unauth access (CVE-2026-33557)

critical Apr 20

Apartment Visitors Management System SQL injection leaks database (CVE-2026-39109)

high Apr 20

Apartment Visitors Management System SQL injection leaks database (CVE-2026-39110)

critical Apr 20

Vvveb unauthenticated RCE in installer (CVE-2026-39918)

high Apr 20

Vvveb CMS authenticated RCE via upload bypass (CVE-2026-6249)

critical Apr 20

Vvveb CMS authenticated RCE via file rename (CVE-2026-6257)

high Apr 20

School Management System SQL injection, unauthenticated (CVE-2026-6595)

high Apr 20

Hospital Management System arbitrary file upload (CVE-2026-6602)

high Apr 20

AgentScope code injection, unauthenticated RCE (CVE-2026-6603)

high Apr 19

KodExplorer path traversal reads arbitrary files (CVE-2026-6568)

high Apr 19

KodExplorer unauthenticated file access (CVE-2026-6569)

high Apr 19

DjangoBlog unauthenticated data access (CVE-2026-6577)

high Apr 19

DjangoBlog uses hard-coded crypto key in API (CVE-2026-6580)

critical Apr 18

NovumOS local privilege escalation to kernel (CVE-2026-40317)

critical Apr 18

Hot Chocolate GraphQL server crash via stack overflow (CVE-2026-40324)

critical Apr 18

ChurchCRM admin can upload webshell for RCE (CVE-2026-40484)

high Apr 18

Postiz stored XSS via file upload (CVE-2026-40487) [PoC]

critical Apr 18

NovumOS local privilege escalation (CVE-2026-40572)

critical Apr 17

Simple Attendance System unauth SQLi bypass (CVE-2026-37749) [PoC]

high Apr 17

Note Mark stored XSS via file upload (CVE-2026-40262)

critical Apr 17

FastGPT NoSQL injection grants admin login (CVE-2026-40351)

high Apr 17

FastGPT NoSQL injection enables account takeover (CVE-2026-40352)

critical Apr 17

Thymeleaf SSTI allows server-side code execution (CVE-2026-40477)

critical Apr 17

Thymeleaf server-side template injection, unauth (CVE-2026-40478)

high Apr 17

Unlimited Elements for Elementor reads arbitrary files (CVE-2026-4659)

high Apr 17

Vault unauth denial-of-service blocks admin (CVE-2026-5807)

critical Apr 16

Pay-Uz Laravel package unauthenticated RCE (CVE-2026-31843)

high Apr 16

Simple Music Cloud SQLi leaks database (CVE-2026-37336)

high Apr 16

Simple Music Cloud SQL injection, unauth (CVE-2026-37337)

critical Apr 16

Simple Music Cloud SQL injection, unauthenticated (CVE-2026-37338)

critical Apr 16

Vehicle Parking System SQL injection, unauthenticated (CVE-2026-37345)

critical Apr 16

Payroll Management System SQL injection, unauth (CVE-2026-37347)

critical Apr 16

SiYuan stored XSS leads to code execution (CVE-2026-40322)

high Apr 15

Assets and Nodes stored XSS in admin panel (CVE-2025-40899)

critical Apr 15

Cisco ISE authenticated command execution (CVE-2026-20147)

critical Apr 15

Cisco ISE authenticated command injection to root (CVE-2026-20180) [PoC]

critical Apr 15

Webex SSO impersonates any user, unauth (CVE-2026-20184)

critical Apr 15

Cisco ISE authenticated command injection (CVE-2026-20186)

critical Apr 15

Chrome sandbox escape via heap overflow (CVE-2026-6296)

high Apr 15

Chrome use-after-free RCE via Prerender (CVE-2026-6299)

high Apr 15

Chrome sandbox escape via CSS use-after-free (CVE-2026-6300)

high Apr 15

Chrome sandbox escape via type confusion (CVE-2026-6301)

high Apr 15

Chrome sandbox escape via video code execution (CVE-2026-6302)

critical Apr 14

Grocery Store Management System 1.0 SQL injection (CVE-2025-63939)

critical Apr 14

School-management-system 1.0 unauthenticated SQL injection (CVE-2025-65135)

critical Apr 14

Adobe Connect reflected XSS, unauthenticated (CVE-2026-27243)

critical Apr 14

Adobe Connect reflected XSS, unauthenticated (CVE-2026-27245)

critical Apr 14

Adobe Connect DOM XSS, patch now (CVE-2026-27246)

critical Apr 14

SAP BPC/BW SQL injection, unauth data access (CVE-2026-27681)

medium Apr 14

SharePoint spoofing exploited in the wild (CVE-2026-32201) [PoC]

medium Apr 14

Windows Shell spoofing exploited in wild (CVE-2026-32202) [PoC]

critical Apr 14

Windows IKE Extension unauthenticated RCE (CVE-2026-33824)

high Apr 14

Microsoft Defender local privilege escalation exploited in the wild (CVE-2026-33825) [PoC]

critical Apr 14

OAuth2 Proxy authentication bypass, unauth (CVE-2026-34457)

critical Apr 14

NuGet Gallery RCE via crafted nuspec file (CVE-2026-39399)

critical Apr 14

FortiSandbox unauthenticated command injection (CVE-2026-39808) [PoC]

critical Apr 14

FortiSandbox path traversal grants admin (CVE-2026-39813)

critical Apr 14

PraisonAI workflow engine unauthenticated RCE (CVE-2026-40288)

critical Apr 14

PraisonAI unauthenticated remote session hijacking (CVE-2026-40289)

critical Apr 14

PraisonAI leaks GitHub tokens in public artifacts (CVE-2026-40313)

critical Apr 13

UniFi Play path traversal to RCE, patch now (CVE-2026-22562)

high Apr 13

CVE-2026-25208: Samsung Escargot Buffer Overflow

high Apr 13

simple-git arbitrary command execution (CVE-2026-28291)

high Apr 13

Airflow webserver code execution by Dag Authors (CVE-2026-33858)

high Apr 13

Storm RCE via Kerberos credential deserialization (CVE-2026-35337)

high Apr 13

Pachno 1.0.6 RCE via file upload (CVE-2026-40040)

critical Apr 13

Pachmo unauthenticated RCE via cache deserialization (CVE-2026-40044)

critical Apr 13

CVE-2026-6139: Totolink A7100RU Command Injection - PoC Available

high Apr 13

CVE-2026-6142: Tushar-2223 Hotel Management System SQLi - PoC Available

high Apr 13

CVE-2026-6148: Vehicle Showroom Management System SQLi - PoC Available

high Apr 13

CVE-2026-6149: Vehicle Showroom Management System SQLi - PoC Available

high Apr 13

CVE-2026-6151: Vehicle Showroom Management System SQLi - PoC Available

high Apr 13

CVE-2026-6152: Vehicle Showroom Management System SQLi - PoC Available

high Apr 13

CVE-2026-6153: Vehicle Showroom Management System SQLi - PoC Available

high Apr 12

CVE-2019-25697: CMSsite SQLi

high Apr 12

CVE-2019-25710: Dolibarr ERP-CRM SQLi - Patch Guide

high Apr 12

CVE-2026-1116: Lollms XSS

critical Apr 12

CVE-2026-6112: Totolink A7100RU Command Injection - PoC Available

critical Apr 12

CVE-2026-6113: Totolink A7100RU Command Injection - PoC Available

critical Apr 12

CVE-2026-6114: Totolink A7100RU Command Injection - PoC Available

critical Apr 12

CVE-2026-6115: Totolink A7100RU Command Injection - PoC Available

critical Apr 12

CVE-2026-6116: Totolink A7100RU Command Injection - PoC Available

critical Apr 11

CVE-2026-31845: Rukovoditel CRM XSS

critical Apr 11

Sonos Era 300 unauthenticated SMB RCE (CVE-2026-4149)

critical Apr 11

aws-mcp-server unauthenticated RCE (CVE-2026-5058)

critical Apr 11

CVE-2026-5059: aws-mcp-server Command Injection RCE [PoC]

high Apr 11

CVE-2026-6105: perfree go-fastdfs-web Improper Authorization - PoC Available

high Apr 10

CVE-2021-47961: Synology SSL VPN Client Plaintext Stora

critical Apr 10

CVE-2026-1115: parisneo/lollms Stored XSS

high Apr 10

Spring Gateway exposes TLS traffic (CVE-2026-22750)

critical Apr 10

CVE-2026-32892: Chamilo LMS RCE

high Apr 10

CVE-2026-35643: OpenClaw Android RCE

high Apr 10

ActiveMQ TLSv1.3 memory DoS (CVE-2026-39304)

critical Apr 10

Axios Prototype Pollution leads to RCE (CVE-2026-40175) [PoC]

high Apr 10

CVE-2026-5483: Red Hat OpenShift AI Token Disclosure

critical Apr 9

Juniper Networks default password exposes admin

critical Apr 9

CVE-2026-34424: Smart Slider 3 Pro RCE

high Apr 9

CVE-2026-39911: Hashgraph Guardian RCE

critical Apr 9

CVE-2026-39980: OpenCTI Remote Code Execution

high Apr 9

basic-ftp CRLF command injection (CVE-2026-39983)

critical Apr 9

Marimo unauth RCE exploited in wild (CVE-2026-39987) [PoC]

critical Apr 9

CVE-2026-40088: PraisonAI Command Injection

critical Apr 9

CVE-2026-40089: Sonicverse SSRF

critical Apr 9

CVE-2026-40154: PraisonAI Remote Code Execution

high Apr 9

Vertex Addons Auth Bypass (CVE-2026-4326)

critical Apr 9

CVE-2026-5976: Totolink A7100RU Command Injection - PoC Available

high Apr 8

kcp Cache Server (CVE-2026-39429)

critical Apr 8

Nix Privilege Escalation (CVE-2026-39860)

critical Apr 8

PraisonAI RCE (CVE-2026-39888)

critical Apr 8

PraisonAI RCE Vulnerability (CVE-2026-39890)

high Apr 8

PraisonAI Template Injection RCE (CVE-2026-39891)

critical Apr 8

Unfurl Flask Debug RCE (CVE-2026-40035)

high Apr 8

Kibana Privilege Escalation (CVE-2026-4498)

high Apr 8

GitLab CE/EE websocket access bypass (CVE-2026-5173)

high Apr 8

CoolerControl UI XSS (CVE-2026-5301)

critical Apr 7

Tianxin Behavior Management RCE (CVE-2021-4473)

high Apr 7

ActiveMQ RCE exploited in the wild (CVE-2026-34197) [PoC]

critical Apr 7

changedetection.io Auth Bypass (CVE-2026-35490)

critical Apr 7

ChurchCRM Path Traversal RCE (CVE-2026-35573)

critical Apr 7

Emissary shell injection enables RCE (CVE-2026-35580)

critical Apr 7

ChurchCRM unauthenticated RCE (CVE-2026-39337)

critical Apr 7

ChurchCRM Auth Bypass (CVE-2026-39339)

critical Apr 7

Genealogy App Privilege Escalation (CVE-2026-39355)

critical Apr 7

Firefox & Thunderbird Critical RCE (CVE-2026-5731)

critical Apr 7

Firefox, Thunderbird memory corruption (CVE-2026-5734)

critical Apr 7

Firefox & Thunderbird RCE (CVE-2026-5735)

critical Apr 6

Samsung Exynos SMS Buffer Overflow (CVE-2025-54328) [PoC]

high Apr 6

Homarr Dashboard XSS (CVE-2026-33510)

critical Apr 6

SandboxJS Sandbox Escape (CVE-2026-34208)

critical Apr 6

Bruno CLI Compromised via Axios RAT (CVE-2026-34841)

critical Apr 6

Dgraph Unauthenticated Database Overwrite (CVE-2026-349

critical Apr 6

Claude Code CLI OS command injection (CVE-2026-35022)

high Apr 6

BentoML RCE in Containerize (CVE-2026-35044)

high Apr 6

Brave CMS RCE via File Upload (CVE-2026-35164)

high Apr 6

OpenSTAManager SQLi (CVE-2026-35470)

high Apr 6

AWS RES Remote Code Execution (CVE-2026-5707)

high Apr 5

ResourceSpace SQLi (CVE-2019-25662)

high Apr 5

News Website Script SQLi (CVE-2019-25668)

high Apr 5

VA MAX RCE Vulnerability (CVE-2019-25671)

high Apr 5

CMSsite SQLi Vulnerability (CVE-2019-25674)

high Apr 5

eDirectory SQL Injection (CVE-2019-25675)

high Apr 5

Ask Expert Script XSS and SQLi (CVE-2019-25676)

high Apr 5

C4G Basic Laboratory SQLi (CVE-2019-25678)

high Apr 5

OpenDocMan SQLi Vulnerability (CVE-2019-25684)

critical Apr 5

Pegasus CMS RCE (CVE-2019-25687)

high Apr 5

itsourcecode SQLi Vulnerability (CVE-2026-5534)

high Apr 5

FedML-AI FedML RCE (CVE-2026-5536)

high Apr 5

Simple Laundry System SQLi (CVE-2026-5540)

high Apr 5

UTT HiPER 1250GW RCE (CVE-2026-5544) - Exploit Released

high Apr 5

itsourcecode Hotel SQLi (CVE-2026-5551) - Exploit Released

critical Apr 4

Snews CMS RCE (CVE-2016-20052)

high Apr 4

VPN Browser+ DoS Vulnerability (CVE-2018-25241)

high Apr 4

7 Tik DoS Vulnerability (CVE-2018-25245)

high Apr 4

MyBB Downloads Plugin XSS (CVE-2018-25248)

critical Apr 4

NICO-FTP RCE (CVE-2018-25254)

critical Apr 4

FortiClientEMS unauthenticated RCE (CVE-2026-35616) [PoC]

high Apr 4

WCFM Plugin IDOR (CVE-2026-4896)

critical Apr 3

Hirschmann HiOS/HiSecOS Auth Bypass (CVE-2018-25236)

critical Apr 3

Azure Custom Locations SSRF (CVE-2026-26135)

critical Apr 3

Stackfield Desktop App Path Traversal (CVE-2026-28373)

critical Apr 3

Azure MCP Server Auth Bypass (CVE-2026-32211)

critical Apr 3

Azure AI Foundry Privilege Escalation (CVE-2026-32213)

critical Apr 3

Azure Kubernetes Privilege Escalation (CVE-2026-33105)

critical Apr 3

Azure Databricks SSRF (CVE-2026-33107)

critical Apr 3

Kestra SQLi to RCE (CVE-2026-34612)

critical Apr 3

PraisonAI SQL Injection (CVE-2026-34934)

critical Apr 3

PraisonAI CLI Argument RCE (CVE-2026-34935)

critical Apr 3

PraisonAI Critical RCE (CVE-2026-34938)

critical Apr 3

PraisonAI Agent Access (CVE-2026-34952)

critical Apr 3

PraisonAI Auth Bypass (CVE-2026-34953)

high Apr 3

PraisonAI SSRF Vulnerability (CVE-2026-34954)

high Apr 2

macOS Image Processing (CVE-2025-43219)

high Apr 2

macOS Image Processing Memory Corruption (CVE-2025-4326

high Apr 2

OpenSTAManager SQL Injection (CVE-2026-28805)

critical Apr 2

OneUptime Auth Bypass (CVE-2026-34758)

high Apr 2

OpenSTAManager SQL Injection (CVE-2026-35168)

high Apr 1

IBM Storage Protect SQLi (CVE-2025-13855)

critical Apr 1

Cisco IMC Authentication Bypass (CVE-2026-20093)

critical Apr 1

Cisco SSM On-Prem RCE (CVE-2026-20160)

critical Apr 1

MetInfo CMS RCE (CVE-2026-29014)

critical Apr 1

Reviactyl OAuth Account Takeover (CVE-2026-34456)

critical Apr 1

CI4MS Critical XSS Vulnerability (CVE-2026-34559)

critical Apr 1

CI4MS XSS Vulnerability (CVE-2026-34563)

critical Apr 1

CI4MS CMS XSS Vulnerability (CVE-2026-34566)

critical Apr 1

CI4MS CMS Stored XSS (CVE-2026-34567)

critical Apr 1

CI4MS CMS Stored XSS (CVE-2026-34569)

critical Apr 1

CI4MS CMS Stored XSS (CVE-2026-34571)

Breaches

(11)

News

(22)

Intel

(150)
low Apr 30

Altran Technologies Ransomware Attack by LockerGoga (Jan 2019)

low Apr 30

Committee for Public Counsel Ryuk Attack (Feb 2019)

low Apr 30

Jackson County, GA Ransomware Claim by Ryuk (Mar 2019)

low Apr 30

KraussMaffei Ransomware Attack by BitPaymer (Nov 2018)

low Apr 30

Momentive Ransomware Attack by Lockergoga (March 2019)

low Apr 30

Monroe County School District Ransomware by GandCrab (Sep 2018)

low Apr 30

North Bend PD Ransomware Claim by Pewcrypt (Nov 2018)

low Apr 30

Onslow County Water and Sewer Ryuk Attack (Oct 2018)

low Apr 30

Port of San Diego Ransomware Claim by SamSam (Sep 2018)

low Apr 30

Town of Jupiter Ransomware Claim by Nozelesn (Dec 2018)

low Apr 29

Arizona Beverages Ransomware Claim by BitPaymer (Mar 2019)

low Apr 29

City of Cartersville Ransomware Attack by Ryuk (May 2019)

low Apr 29

City of Greenville, NC Ransomware Claim by RobbinHood (Apr 2019)

low Apr 29

Daviess County Library Attack by Cryptolocker (Apr 2019)

low Apr 29

Hexion and MPM Hit by Lockergoga Ransomware (Mar 2019)

low Apr 29

Imperial County Ransomware Attack by Ryuk (April 2019)

low Apr 29

Mitsubishi Canada Aerospace Ryuk Attack (March 2019)

low Apr 29

Norsk Hydro Ransomware Attack by Lockergoga (Mar 2019)

low Apr 29

Stuart City Ransomware Attack by Ryuk (April 2019)

low Apr 29

Townsquare Media Ransomware Claim by Cryptolocker (Apr 2019)

high Apr 28

Birtcher Anderson & Davis Hit by Worldleaks (Apr 2026)

medium Apr 28

compensatii.gov.md Ransomware Attack by apt73 (April 2026)

medium Apr 28

Floyd Skeren Manukian Langevin Ransomware by SilentRansomGroup (Apr 2026)

medium Apr 28

Hargreaves Lansdown Ransomware Claim by apt73 (Apr 2026)

critical Apr 28

Leone Film Group Ransomware Attack by Qilin (April 2026)

critical Apr 28

Lifeline PCS Ransomware Attack by Qilin (April 2026)

medium Apr 28

Mahidol University Ransomware Claim by apt73 (Apr 2026)

critical Apr 28

Sumac Inc. Ransomware Attack by INC Ransom (April 2026)

high Apr 28

Super AI Ransomware Attack by Everest (April 2026)

medium Apr 28

Vimeo Ransomware Claim by ShinyHunters (Apr 2026)

critical Apr 27

A & A Building Material Hit by Qilin Ransomware (Apr 2026)

high Apr 27

EEC Group Ransomware Attack by thegentlemen (April 2026)

critical Apr 27

Exclusive Networks Ransomware Attack by Qilin (April 2026)

low Apr 27

Gimli Ransomware Attack by Payload Group (April 2026)

critical Apr 27

Inspira Ransomware Attack by Qilin (April 2026)

critical Apr 27

Longwood Engineering Ransomware Claim by Qilin (Apr 2026)

critical Apr 27

MTCI Ransomware Attack by INC Ransom (April 2026)

critical Apr 27

Muller Technology Ransomware Attack by Qilin (April 2026)

low Apr 27

Narteks Tekstil Ransomware Attack by Krybit (April 2026)

critical Apr 27

Synmosa Biopharma Ransomware Attack by DragonForce (Apr 2026)

low Apr 26

Apple Film Group Ransomware Attack by Lamashtu (Apr 2026)

critical Apr 26

Buckley Powder Ransomware Claim by Qilin (April 2026)

critical Apr 26

Cahbo Produkter Ransomware Attack by Qilin (Apr 2026)

critical Apr 26

Chelten House Ransomware Attack by Qilin (April 2026)

critical Apr 26

First County FCU Ransomware Attack by Qilin (April 2026)

critical Apr 26

KEMBA Credit Union Ransomware Claim by Qilin (April 2026)

critical Apr 26

Leistritz Turbine Tech Ransomware by Qilin (Apr 2026)

critical Apr 26

SanCor Ransomware Attack by Qilin (April 2026)

critical Apr 26

Travel Expert Ransomware Attack by Qilin (April 2026)

critical Apr 26

Woodfields Consultants Ransomware Attack by Qilin (Apr 2026)

critical Apr 25

Denso Ransomware Attack by Qilin (April 2026)

critical Apr 25

Dorotea Sweden Ransomware Attack by INC Ransom (Apr 2026)

critical Apr 25

Flipo Group Ransomware Attack by Qilin (April 2026)

critical Apr 25

Grupo ABC Ransomware Attack by Qilin (April 2026)

critical Apr 25

Krauseundco Ransomware Attack by INC Ransom (Apr 2026)

critical Apr 25

Marc Cain Ransomware Attack by Qilin (April 2026)

critical Apr 25

Point Four EPoS Solutions Ransomware Attack by Qilin (Apr 2026)

critical Apr 25

Priests for Life Ransomware Attack by Qilin (April 2026)

critical Apr 25

Progressive Propane Ransomware Attack by Qilin (April 2026)

critical Apr 25

TLC Trial Team Ransomware Attack by INC (April 2026)

medium Apr 24

ADT Ransomware Attack by ShinyHunters (April 2026)

critical Apr 24

B to B Visions Ransomware Claim by Qilin (Apr 2026)

medium Apr 24

Chartwell Law Ransomware Claim by SilentRansomGroup (Apr 2026)

critical Apr 24

City of Napoleon Ransomware Claim by Qilin (Apr 2026)

critical Apr 24

Clearview Intelligence Hit by Qilin Ransomware (Apr 2026)

critical Apr 24

Manulife Wealth Ransomware Claim by Qilin (Apr 2026)

medium Apr 24

Mother's Market Ransomware Claim by AiLock (Apr 2026)

low Apr 24

Peroni Sosa Law Firm Ransomware by Payload (Apr 2026)

critical Apr 24

The FAFS Ransomware Attack by Qilin (April 2026)

medium Apr 24

Udemy Ransomware Claim by ShinyHunters (Apr 2026)

high Apr 23

Equatorial Coca-Cola Bottling Hit by Worldleaks (Apr 2026)

high Apr 23

Galliher Law Firm Ransomware Claim by DragonForce (Apr 2026)

medium Apr 23

Jackson Lewis Ransomware Attack by SilentRansomGroup (Apr 2026)

critical Apr 23

KRW Lawyers Ransomware Claim by INC Ransom (Apr 2026)

critical Apr 23

Kubiak Melton Ransomware Attack by Akira (April 2026)

critical Apr 23

Marnell Financial Services Hit by Anubis (Apr 2026)

medium Apr 23

PremCom Ransomware Attack by AiLock (April 2026)

high Apr 23

Primius Law Firm Ransomware Claim by DragonForce (Apr 2026)

critical Apr 23

Teamsters Local 773 Hit by INC Ransom (Apr 2026)

medium Apr 23

Tractial Ransomware Claim by Anubis (April 2026)

critical Apr 22

Avitrans Ransomware Attack by Qilin (April 2026)

critical Apr 22

Ferguson Timar Ransomware Attack by Qilin (April 2026)

critical Apr 22

Heartland Steel Products Ransomware Claim by Qilin (Apr 2026)

critical Apr 22

Indcar Ransomware Attack by Qilin (April 2026)

critical Apr 22

Kolin Turkey Ransomware Attack by Qilin (April 2026)

critical Apr 22

PTS Office Systems Ransomware Claim by Qilin (Apr 2026)

medium Apr 22

Rutan & Tucker Ransomware by SilentRansomGroup (Apr 2026)

critical Apr 22

Safety Engineering Labs Hit by Qilin Ransomware (Apr 2026)

critical Apr 22

Sea Air International Hit by Qilin Ransomware (Apr 2026)

critical Apr 22

STERIMED Ransomware Attack by Qilin (April 2026)

high Apr 21

CommScope Ransomware Claim by Coinbasecartel (April 2026)

high Apr 21

Playmates Toys Ransomware Claim by Coinbasecartel (April 2026)

medium Apr 21

Samuel I. White, PC Ransomware Claim by Anubis (April 2026)

high Apr 21

SIG.biz Ransomware Claim by coinbasecartel (April 2026)

medium Apr 21

ViaQuest Ransomware Claim by Anubis (April 2026)

critical Apr 20

Citizens Bank Ransomware Claim by Everest (April 2026)

high Apr 20

Complete Aircraft Group Ransomware Claim by Everest (Apr 2026)

high Apr 20

NutraBio Ransomware Claim by Everest (Apr 2026)

high Apr 20

Tokoparts Ransomware Claim by Everest (April 2026)

high Apr 20

Umiles Group Ransomware Claim by Everest (April 2026)

high Apr 19

Altpro Ransomware Claim by Coinbasecartel (April 2026)

high Apr 19

ASTM Group Ransomware Claim by coinbasecartel (April 2026)

critical Apr 19

HS Technology Group Ransomware Claim by Qilin (Apr 2026)

high Apr 19

McCuaig and Associates Hit by CoinbaseCartel Ransomware (Apr 2026)

high Apr 19

Securitevolfeu Ransomware Claim by Coinbasecartel (April 2026)

high Apr 18

BBA Law Group Ransomware Claim by Safepay (April 2026)

high Apr 18

Cheeky.com.ar Ransomware Claim by Safepay (April 2026)

high Apr 18

First Cambodia Ransomware Claim by Safepay (April 2026)

critical Apr 18

Mag. Fünder Hausverwaltungs GmbH Ransomware Claim by INC Ransom (April 2026)

low Apr 18

Rhode-HV Ransomware Attack by Krybit (April 2026)

low Apr 17

Franziskusschule Wilhelmshaven Ransomware Claim by payload (Apr 2026)

low Apr 17

Marino Food Products Hit by Payload Ransomware - April 2026

low Apr 17

Oriental Weavers Ransomware Claim by Payload (Apr 2026)

low Apr 17

Sunlight Express Airways Ransomware Claim by payload (Apr 2026)

low Apr 17

TFE Group Ransomware Claim by payload (April 2026)

critical Apr 16

Clearwater Marine Aquarium Ransomware Claim by Qilin (Apr 2026)

critical Apr 16

Gruppo ICM SPA Ransomware Claim by Qilin (April 2026)

medium Apr 16

Harris Beach Murtha Ransomware Claim by SilentRansomGroup (April 2026)

critical Apr 16

Limkon Ransomware Claim by Qilin (April 2026)

high Apr 16

The Epoch Times Ransomware Claim by coinbasecartel (April 2026)

medium Apr 15

Coast Appliances Ransomware Claim by Chaos (Apr 2026)

high Apr 15

Flash Charm INC (Idera) Ransomware Claim by coinbasecartel (April 2026)

critical Apr 15

Gastroenterology & Hepatology of CNY Hit by Exitium (Apr 2026)

low Apr 15

Hacked 0APT Ransomware Claim by krybit (April 2026)

low Apr 15

LACROIX Ransomware Claim by Lamashtu (April 2026)

low Apr 14

GRUPO RONDA Ransomware Claim by Lamashtu (April 2026)

low Apr 14

Indigo Group Ransomware Claim by SecPo (April 2026)

low Apr 14

JM Bozeman Enterprises Ransomware Claim by secpo (April 2026)

high Apr 14

Mike Brandner Law Ransomware Claim by secpo (April 2026)

high Apr 14

Richmond Plywood Ransomware Claim by secpo (April 2026)

critical Apr 13

Affordable Oil Ransomware Claim by DragonForce (April 2026)

high Apr 13

Carters Ransomware Claim by coinbasecartel (April 2026)

high Apr 13

Helzberg Ransomware Claim by Coinbasecartel (April 2026)

critical Apr 13

K Subsea Group Ransomware Claim by Everest (Apr 2026)

high Apr 13

Ralph Lauren Ransomware Claim by coinbasecartel (April 2026)

medium Apr 12

Amtrak Ransomware Claim by ShinyHunters (April 2026)

low Apr 12

CONREP SA Ransomware Claim by Krybit (April 2026)

critical Apr 12

Mastercom Ransomware Claim by INC Ransom (Apr 2026)

critical Apr 12

Morgan County GA Ransomware Claim by INC Ransom (April 2026)

medium Apr 12

Mytheresa Ransomware Claim by ShinyHunters (April 2026)

critical Apr 11

A Roettgers Ransomware Claim by Qilin (April 2026)

critical Apr 11

Campbell University Ransomware Claim by INC Ransom (April 2026)

critical Apr 11

Chalmers & Kubeck Ransomware Claim by Qilin (April 2026)

critical Apr 11

Hofland Ransomware Claim by Qilin (April 2026)

critical Apr 11

SAAM Towage Ransomware Claim by Qilin (Apr 2026)

medium Apr 10

Alvi Associates Ransomware Claim by AiLock (April 2026)

medium Apr 10

Goulston & Storrs Ransomware Claim by SilentRansomGroup (April 2026)

critical Apr 10

Kannarr Eye Care Ransomware Claim by INC Ransom (Apr 2026)

medium Apr 10

T..t Ste..ius & Ho..ter LLP Ransomware Claim by SilentRansomGroup (April 2026)

critical Apr 10

Wright-Ryan Hit by INC Ransom - April 2026

Learn

(2)

Malware

(144)
Apr 30

Agent Tesla Malware: 74 Samples, Rising Trend (Apr 2026)

Apr 30

AsyncRAT Malware: 48 Samples, Rising Trend (Apr 2026)

Apr 30

Cobalt Strike Malware: 5 Samples, Rising Trend (Apr 2026)

Apr 30

Formbook Malware: 39 Samples, Rising Trend (Apr 2026)

Apr 30

Mirai Malware: 100 Samples, Rising Trend (Apr 2026)

Apr 30

QuasarRAT Malware: 15 Samples, Rising Trend (Apr 2026)

Apr 30

Snake Keylogger Malware: 9 Samples, Stable Trend (Apr 2026)

Apr 30

Vidar Malware: 29 Samples, Declining Trend (Apr 2026)

Apr 29

Agent Tesla Malware: 74 Samples, Rising Trend (Apr 2026)

Apr 29

AsyncRAT Malware: 49 Samples, Rising Trend (Apr 2026)

Apr 29

Cobalt Strike Malware: 5 Samples, Rising Trend (Apr 2026)

Apr 29

Formbook Malware: 39 Samples, Rising Trend (Apr 2026)

Apr 29

Mirai Malware: 100 Samples, Rising Trend (Apr 2026)

Apr 29

QuasarRAT Malware: 17 Samples, Rising Trend (Apr 2026)

Apr 29

Snake Keylogger Malware: 11 Samples, Rising Trend (Apr 2026)

Apr 29

Vidar Malware: 21 Samples, Declining Trend (Apr 2026)

Apr 28

AsyncRAT Malware: 21 Samples, Rising Trend (Apr 2026)

Apr 28

QuasarRAT Malware: 15 Samples, Rising Trend (Apr 2026)

Apr 28

Snake Keylogger Malware: 11 Samples, Rising Trend (Apr 2026)

Apr 28

Vidar Malware: 23 Samples, Declining Trend (Apr 2026)

Apr 27

Agent Tesla Malware: 71 Samples, Stable Trend (Apr 2026)

Apr 27

AsyncRAT Malware: 16 Samples, Stable Trend (Apr 2026)

Apr 27

Cobalt Strike Malware: 5 Samples, Rising Trend (Apr 2026)

Apr 27

Formbook Malware: 53 Samples, Rising Trend (Apr 2026)

Apr 27

QuasarRAT Malware: 15 Samples, Rising Trend (Apr 2026)

Apr 27

Snake Keylogger Malware: 9 Samples, Rising Trend (Apr 2026)

Apr 27

Vidar Malware: 30 Samples, Declining Trend (Apr 2026)

Apr 26

Agent Tesla Malware: 76 Samples, Rising Trend (Apr 2026)

Apr 26

AsyncRAT Malware: 13 Samples, Declining Trend (Apr 2026)

Apr 26

Formbook Malware: 37 Samples, Stable Trend (Apr 2026)

Apr 26

Mirai Malware: 100 Samples, Rising Trend (Apr 2026)

Apr 26

QuasarRAT Malware: 11 Samples, Rising Trend (Apr 2026)

Apr 26

Snake Keylogger Malware: 9 Samples, Rising Trend (Apr 2026)

Apr 26

Vidar Malware: 40 Samples, Declining Trend (Apr 2026)

Apr 25

Agent Tesla Malware: 66 Samples, Rising Trend (Apr 2026)

Apr 25

AsyncRAT Malware: 11 Samples, Declining Trend (Apr 2026)

Apr 25

Formbook Malware: 24 Samples, Declining Trend (Apr 2026)

Apr 25

Mirai Malware: 100 Samples, Rising Trend (Apr 2026)

Apr 25

QuasarRAT Malware: 5 Samples, Stable Trend (Apr 2026)

Apr 25

Snake Keylogger Malware: 7 Samples, Rising Trend (Apr 2026)

Apr 25

Vidar Malware: 44 Samples, Stable Trend (Apr 2026)

Apr 24

Agent Tesla Malware: 65 Samples, Rising Trend (Apr 2026)

Apr 24

AsyncRAT Malware: 15 Samples, Rising Trend (Apr 2026)

Apr 24

Formbook Malware: 31 Samples, Stable Trend (Apr 2026)

Apr 24

Mirai Malware: 100 Samples, Rising Trend (Apr 2026)

Apr 24

QuasarRAT Malware: 7 Samples, Rising Trend (Apr 2026)

Apr 24

Snake Keylogger Malware: 6 Samples, Rising Trend (Apr 2026)

Apr 24

Vidar Malware: 49 Samples, Rising Trend (Apr 2026)

Apr 23

Agent Tesla Malware: 60 Samples, Rising Trend (Apr 2026)

Apr 23

AsyncRAT Malware: 12 Samples, Stable Trend (Apr 2026)

Apr 23

Formbook Malware: 29 Samples, Rising Trend (Apr 2026)

Apr 23

QuasarRAT Malware: 3 Samples, Declining Trend (Apr 2026)

Apr 23

Snake Keylogger Malware: 6 Samples, Rising Trend (Apr 2026)

Apr 23

Vidar Malware: 53 Samples, Rising Trend (Apr 2026)

Apr 22

Agent Tesla Malware: 65 Samples, Rising Trend (Apr 2026)

Apr 22

AsyncRAT Malware: 15 Samples, Rising Trend (Apr 2026)

Apr 22

Formbook Malware: 43 Samples, Rising Trend (Apr 2026)

Apr 22

Mirai Malware: 100 Samples, Stable Trend (Apr 2026)

Apr 22

QuasarRAT Malware: 6 Samples, Rising Trend (Apr 2026)

Apr 22

Snake Keylogger Malware: 4 Samples, Rising Trend (Apr 2026)

Apr 22

Vidar Malware: 58 Samples, Rising Trend (Apr 2026)

Apr 21

Agent Tesla Malware: 17 Samples, Declining Trend (Apr 2026)

Apr 21

AsyncRAT Malware: 5 Samples, Declining Trend (Apr 2026)

Apr 21

Formbook Malware: 11 Samples, Declining Trend (Apr 2026)

Apr 21

Mirai Malware: 100 Samples, Stable Trend (Apr 2026)

Apr 21

QuasarRAT Malware: 11 Samples, Rising Trend (Apr 2026)

Apr 21

Snake Keylogger Malware: 3 Samples, Rising Trend (Apr 2026)

Apr 21

Vidar Malware: 22 Samples, Rising Trend (Apr 2026)

Apr 20

Agent Tesla Malware: 7 Samples, Declining Trend (Apr 2026)

Apr 20

Vidar Malware: 22 Samples, Rising Trend (Apr 2026)

Apr 19

Agent Tesla Malware: 10 Samples, Declining Trend (Apr 2026)

Apr 19

AsyncRAT Malware: 5 Samples, Declining Trend (Apr 2026)

Apr 19

Formbook Malware: 8 Samples, Declining Trend (Apr 2026)

Apr 19

QuasarRAT Malware: 3 Samples, Declining Trend (Apr 2026)

Apr 19

Vidar Malware: 9 Samples, Declining Trend (Apr 2026)

Apr 18

Agent Tesla Malware: 16 Samples, Declining Trend (Apr 2026)

Apr 18

AsyncRAT Malware: 7 Samples, Declining Trend (Apr 2026)

Apr 18

Formbook Malware: 9 Samples, Declining Trend (Apr 2026)

Apr 18

Vidar Malware: 16 Samples, Rising Trend (Apr 2026)

Apr 17

Agent Tesla Malware: 23 Samples, Stable Trend (Apr 2026)

Apr 17

AsyncRAT Malware: 5 Samples, Declining Trend (Apr 2026)

Apr 17

Formbook Malware: 15 Samples, Rising Trend (Apr 2026)

Apr 17

QuasarRAT Malware: 3 Samples, Declining Trend (Apr 2026)

Apr 17

Vidar Malware: 16 Samples, Rising Trend (Apr 2026)

Apr 16

Agent Tesla Malware: 45 Samples, Rising Trend (Apr 2026)

Apr 16

AsyncRAT Malware: 15 Samples, Rising Trend (Apr 2026)

Apr 16

Formbook Malware: 28 Samples, Rising Trend (Apr 2026)

Apr 16

QuasarRAT Malware: 8 Samples, Rising Trend (Apr 2026)

Apr 16

Vidar Malware: 11 Samples, Rising Trend (Apr 2026)

Apr 15

Agent Tesla Malware: 45 Samples, Rising Trend (Apr 2026)

Apr 15

AsyncRAT Malware: 17 Samples, Rising Trend (Apr 2026)

Apr 15

Formbook Malware: 24 Samples, Rising Trend (Apr 2026)

Apr 15

QuasarRAT Malware: 9 Samples, Rising Trend (Apr 2026)

Apr 15

Vidar Malware: 15 Samples, Rising Trend (Apr 2026)

Apr 14

Agent Tesla Malware: 20 Samples, Rising Trend (Apr 2026)

Apr 14

AsyncRAT Malware: 9 Samples, Rising Trend (Apr 2026)

Apr 14

Formbook Malware: 13 Samples, Rising Trend (Apr 2026)

Apr 14

QuasarRAT Malware: 7 Samples, Rising Trend (Apr 2026)

Apr 14

Vidar Malware: 11 Samples, Rising Trend (Apr 2026)

Apr 13

AsyncRAT Malware: 4 Samples, Declining Trend (Apr 2026)

Apr 13

QuasarRAT Malware: 4 Samples, Stable Trend (Apr 2026)

Apr 13

Vidar Malware: 10 Samples, Rising Trend (Apr 2026)

Apr 12

AsyncRAT Malware: 4 Samples, Declining Trend (Apr 2026)

Apr 12

QuasarRAT Malware: 3 Samples, Declining Trend (Apr 2026)

Apr 12

Vidar Malware: 9 Samples, Rising Trend (Apr 2026)

Apr 11

Agent Tesla Malware: 12 Samples, Rising Trend (Apr 2026)

Apr 11

AsyncRAT Malware: 6 Samples, Stable Trend (Apr 2026)

Apr 11

Formbook Malware: 6 Samples, Declining Trend (Apr 2026)

Apr 11

QuasarRAT Malware: 4 Samples, Rising Trend (Apr 2026)

Apr 10

Agent Tesla Malware: 21 Samples, Rising Trend (Apr 2026)

Apr 10

AsyncRAT Malware: 15 Samples, Rising Trend (Apr 2026)

Apr 10

Formbook Malware: 14 Samples, Rising Trend (Apr 2026)

Apr 10

QuasarRAT Malware: 7 Samples, Rising Trend (Apr 2026)

Apr 9

Vidar Report - 8 New Samples (Apr 2026)

Apr 8

Agent Tesla Report - 9 New Samples (Apr 2026)

Apr 8

AsyncRAT Report - 3 New Samples (Apr 2026)

Apr 8

Formbook Report - 16 New Samples (Apr 2026)

Apr 8

QuasarRAT Report - 3 New Samples (Apr 2026)

Apr 8

Vidar Report - 7 New Samples (Apr 2026)

Apr 7

Formbook Report - 8 New Samples (Apr 2026)

Apr 7

QuasarRAT Report - 3 New Samples (Apr 2026)

Apr 7

Vidar Report - 10 New Samples (Apr 2026)

Apr 6

AsyncRAT Report - 3 New Samples (Apr 2026)

Apr 6

Vidar Report - 8 New Samples (Apr 2026)

Apr 5

AsyncRAT Report - 3 New Samples (Apr 2026)

Apr 4

Agent Tesla Report - 10 New Samples (Apr 2026)

Apr 4

AsyncRAT Report - 7 New Samples (Apr 2026)

Apr 4

QuasarRAT Report - 5 New Samples (Apr 2026)

Apr 4

Vidar Report - 6 New Samples (Apr 2026)

Apr 3

Agent Tesla Report - 21 New Samples (Apr 2026)

Apr 3

AsyncRAT Report - 9 New Samples (Apr 2026)

Apr 3

Formbook Report - 14 New Samples (Apr 2026)

Apr 3

QuasarRAT Report - 5 New Samples (Apr 2026)

Apr 3

Vidar Report - 19 New Samples (Apr 2026)

Apr 2

Agent Tesla Report - 22 New Samples (Apr 2026)

Apr 2

AsyncRAT Report - 11 New Samples (Apr 2026)

Apr 2

Formbook Report - 20 New Samples (Apr 2026)

Apr 2

QuasarRAT Report - 12 New Samples (Apr 2026)

Apr 2

Vidar Report - 30 New Samples (Apr 2026)

Apr 1

Agent Tesla Report - 22 New Samples (Apr 2026)

Apr 1

AsyncRAT Report - 10 New Samples (Apr 2026)

Apr 1

Formbook Report - 17 New Samples (Apr 2026)

Apr 1

QuasarRAT Report - 11 New Samples (Apr 2026)

Apr 1

Vidar Report - 32 New Samples (Apr 2026)

March 2026 All Threats May 2026

Never Miss a Critical Alert

CVE advisories, breach reports, and threat intel — delivered daily to your inbox.