zero-day
44 stories on zero-day, newest first, from 45 briefings. Each is a plain-language summary written here for Australian business, with a link to the original reporting. Where several outlets covered the same event, the rest sit under it as extra coverage.
- Two Unpatched Citrix NetScaler Flaws Being Exploited Right Now, No Fix Yet
- Kiteworks Tells Customers to Shut Down Systems Amid Zero-Day Threat Warning
- F5 BIG-IP Zero-Day Under Active Attack: Patch Now, CISA Warns
- ShinyHunters Claims FBI Breach Via PeopleSoft Zero-Day, Highlighting ERP Risk for All Businesses
- F5 Patches Critical BIG-IP Flaw Already Being Exploited to Hijack Systems Without a Password
- Chinese Hackers Exploit Chrome and Windows Zero-Days to Deploy New CLEANGULP Malware
- Another China-Linked Hacking Group Caught Exploiting Chrome and Windows Zero-Days
- Check Point Warns of Actively Exploited Zero-Day in Security Management Server
- New Unpatched Tool Can Silently Stop Microsoft Defender Updates
- Critical Cisco Zero-Day Puts Identity Systems at Risk
- Cisco Warns of Second Actively Exploited Zero-Day in Two Days
- Google Pixel Phones Hit by Zero-Click Attack: Update Now
- Google Patches Pixel Zero-Day Exploited in Targeted Attacks
- Upcoming Black Hat Talk to Detail How an AI Model Broke Out of Its Test Sandbox
- Cisco Email Gateways Under Active Attack: Patch Now
- China-Linked Hackers Chain Chrome and Windows Zero-Days to Deploy New Backdoor
- Researcher Publishes New Zero-Day Exploit Targeting Windows Defender
- Google Patches Actively Exploited Chrome Zero-Day: Update Now
- Microsoft's Biggest Patch Tuesday Ever: 974 Flaws Fixed, Two Already Under Attack
- Critical Magento Flaw Under Active Attack: Patch Now to Block Backdoor Installs
-
Zero-Day Flaw Found in CrowdStrike Falcon Sensor Allows Privilege Escalation
Also covered by The Hacker News
- Active Zero-Day Attacks Hit Magento and Adobe Commerce Stores, No Patch Yet
- Google Fixes Sixth Chrome Zero-Day Flaw of 2026 – Update Now
- Google Patches Actively Exploited Chrome Zero-Day: Update Now
- SonicWall Edge Devices Hit by New Zero-Day Attacks Enabling Remote Takeover
- SonicWall Warns of Two Zero-Day Flaws Under Active Attack in SMA1000 Devices
- PaperCut Rushes Out Emergency Fix for Actively Exploited Security Flaw
- Urgent: PaperCut Print Software Under Active Attack — Patch Now
- Hackers Actively Exploiting Unpatched Flaw in GeoServer Software
- New Windows Zero-Day 'ShieldBreak' Lets Attackers Gain Full System Control
- North Korean Hackers Exploited Windows Zero-Day to Plant New Backdoor
- North Korean Hackers Exploit New Windows Zero-Day to Seize Control of Victim Systems
- New 'ShieldBreak' Exploit Bypasses Windows Defender Patch, Grants Full System Access
- Cisco Fixes Actively Exploited Firewall Flaw That Can Knock Devices Offline
- Microsoft's August Update Fixes Nearly 400 Flaws, One Already Under Attack
- Microsoft's Latest Patch Tuesday Fixes 398 Bugs — One Already Under Attack
- Microsoft's August Patch Tuesday Fixes 421 Flaws — Including One Under Active Attack
- Patch Now: August Update Fixes Actively Exploited Windows Flaw Among 415 Security Bugs
- Critical Zero-Day in Metabase Analytics Tool Could Expose Countless Business Systems
- Weekly Threat Recap: AI Risks, a Metabase Zero-Day, and Router Backdoors Highlight Basic Security Gaps
- Metabase Rushes Out Patch After Hackers Exploit Flaw as Zero-Day
- Critical Metabase Flaw Being Actively Exploited — Patch Immediately
- AI Model Went Off-Script: OpenAI System Reportedly Hacked Hugging Face to 'Win' a Test
- Exposed: Shady Startup Buying Software Vulnerabilities Run by Convicted Felons