Zero-Days

Exploited before the patch exists.

  • 16 Tracked terms
  • Last 30 days Feed window

Where the coverage comes from

The 50 sources publishing most on Zero-Days over the last 30 days, out of 402 articles in the feed. Click a source for its articles on this topic and its profile.

  1. 1 Cybersecuritynews cybersecuritynews.com 32 articles 3+ day ago 0%
  2. 2 @Securityweek securityweek.com 21 articles 1+ day ago 90%
  3. 3 4Sysops 4sysops.com 18 articles 7+ hour ago 33%
  4. 4 Bleepingcomputer bleepingcomputer.com 16 articles 2+ day ago 88%
  5. 5 gbhackers.com 16 articles 3+ day ago 6%
  6. 6 The Hacker News thehackernews.com 16 articles 2+ day ago 0%
  7. 7 @Thepracticaldev dev.to 11 articles 21+ hour ago 100%
  8. 8 kobaran.com 9 articles 3+ day ago 78%
  9. 9 @Securityaffairs securityaffairs.com 9 articles 2+ day ago 100%
  10. 10 Tech Insider tech-insider.org 9 articles 3+ day ago 0%
  11. 11 Cyber Security News cyberpress.org 8 articles 3+ day ago 0%
  12. 12 Forkast forkast.news 7 articles 15+ hour ago 100%

What this topic collects on

An article joins this feed when it matches these terms. Each one is also a search of its own.

Latest in Zero-Days

Yahoo Finance
finance.yahoo.com > technology > ai > articles > automox-launches-ai-speed-cybersecurity-130000595.html

Automox Launches AI-Speed Cybersecurity Vulnerability Mitigation Pipeline to Reduce Exposure for Unpatchable Vulnerabilities

2+ day, 20+ hour ago   (295+ words) AI-powered Automox Worklet™ generation closes the time window between AI-speed cybersecurity vulnerability disclosure and exposure mitigation: built to mitigate at AI speed, vetted by humans, turning vulnerabilities into verified endpoint action even when a patch isn't the immediate fix. These…...

4sysops
4sysops.com > archives > dutch-ncsc-says-check-point-vpn-flaw-exploitation-is-imminent

Dutch NCSC says Check Point VPN flaw exploitation is imminent – 4sysops

7+ hour, 38+ min ago   (25+ words) The Dutch NCSC now expects attackers to target two critical Check Point VPN flaws soon, despite no public proof-of-concept exploit. The warning raises the urgen...

SecurityWeek
securityweek.com > bluemoon-exploit-kit-chains-recent-chrome-windows-zero-days

BlueMoon Exploit Kit Chains Recent Chrome, Windows Zero-Days

1+ day, 14+ hour ago   (602+ words) Multiple espionage groups have been using a new exploit kit dubbed BlueMoon in seemingly opportunistic and rushed deployments, cybersecurity firm Proofpoint reports. The China-linked APT Violet Typhoon (also tracked as APT31, JungleBamboo, TA412, and Tide Castle) was the first to use it…...

Forkast
forkast.news > the-papercut-pipeline-how-two-vulnerabilities-became-an-automated-rce-factory

The PaperCut Pipeline: How Two Vulnerabilities Became an Automated RCE Factory

15+ hour, 46+ min ago   (148+ words) Two PaperCut vulnerabilities are now chained into a fully automated attack pipeline with in-memory persistence—and 47% of installations can't patch. On August 26, security researchers at Huntress identified anomalous activity in customer logs involving base64-encoded commands like whoami and tasklist. This…...

DEV Community
dev.to > sarthakagrawal927 > memory64-moved-the-browser-ceiling-and-exposed-an-abi-gap-14o5

Memory64 moved the browser ceiling and exposed an ABI gap

21+ hour, 34+ min ago   (364+ words) A 32-bit WebAssembly heap put the browser playground near a 4 GB ceiling. With weights and AdamW state, that limited the fp32 model size to roughly 250 million parameters. Compiling the same C++ source with Memory64 and BigInt support changed the pointer width. One…...

Forkast
forkast.news > once-in-a-bluemoon-how-a-chrome-patch-gap-turned-three-v8-zero-days-into-an-espionage-kit

Once in a BlueMoon: How a Chrome Patch-Gap Turned Three V8 Zero-Days Into an Espionage Kit

23+ hour, 45+ min ago   (65+ words) Three V8 bugs, individually medium-severity, chain into SYSTEM-level access through the patch-gap window. Four espionage clusters adopted the kit within days. The structural shift: browser-based AI agents inherit the same attack surface. Heath Callahan Trust, Identity & Security All stories by Heath…...

Windows Report
windowsreport.com > bluemoon-exploit-kit-can-escape-chrome-and-elevate-windows-privileges

BlueMoon Exploit Kit Can Escape Chrome and Elevate Windows Privileges

1+ day, 17+ hour ago   (355+ words) Published on September 11, 2026 BlueMoon exploit kit chains Windows and Chrome zero-days in targeted attacks, giving cyber-espionage groups a way to execute code, escape Chrome’s sandbox, and gain elevated Windows privileges. Proofpoint observed attacks involving BlueMoon starting on August 28, 2026, while Volexity…...

CSO Online
csoonline.com > article > 4220939 > attackers-are-weaponizing-the-gap-between-chromium-fixes-and-chrome-patches.html

Attackers are weaponizing the gap between Chromium fixes and Chrome patches

2+ day, 54+ min ago   (642+ words) A new exploit kit is revealing the perils of the “patch later” mentality. According to the Proofpoint Threat Research team, espionage-motivated threat actors are using a new malicious toolkit to chain together four separate Chrome browser and Microsoft Windows vulnerabilities…...

TechRepublic
techrepublic.com > article > news-google-android-update-180-security-flaws

180 Android Security Flaws Patched: What to Do

2+ day, 5+ hour ago   (453+ words) Android September update fixes 180 vulnerabilities Image: Generated via Google’s Nano Banana Google’s September Android update fixes 180 security flaws, including critical bugs. Learn how to check your phone’s security patch level. Google’s September 2026 Android security update addresses 180 vulnerabilities across the operating…...

4sysops
4sysops.com > archives > microsoft-tells-it-admins-to-replace-slmgr-vbs-with-powershell-now

Microsoft tells IT admins to replace slmgr.vbs with PowerShell now – 4sysops

2+ day, 6+ hour ago   (23+ words) Microsoft is warning IT administrators not to wait for VBScript removal to disrupt Windows activation automation. Organizations that still rely on `slmgr.vbs` s...