UINAT
NewsRankingsCompaniesGuidesBreachesCompliance
TagsAbout
Home/Tags/zero-day

zero-day

10 articles tagged with "zero-day".

Clop Exploits Oracle E-Business Suite Zero-Days in Massive Extortion Campaign

The Clop ransomware group weaponized CVE-2025-61882 and CVE-2025-61884 to breach nearly 100 organizations including Allianz UK, GlobalLogic, Envoy Air, Harvard, and Washington Post, with ransom demands reaching $50 million.

February 5, 2026 ClopransomwareOracle

APT28 Exploits Microsoft Office Zero-Day in Operation Neusploit Targeting Ukraine

Russia's APT28 weaponized CVE-2026-21509 within three days of Microsoft's disclosure, deploying MiniDoor email stealers and PixyNetLoader against Ukraine, Slovakia, and Romania.

February 3, 2026 APT28Russiazero-day

Ivanti EPMM Zero-Days Chained for Unauthenticated RCE, Already Exploited in the Wild

Two chained Ivanti EPMM vulnerabilities (CVE-2026-1281 and CVE-2026-1340, both CVSS 9.8) allow unauthenticated RCE via Bash command injection. CISA gave federal agencies only 3 days to patch.

January 30, 2026 Ivantizero-dayvulnerability

Fortinet Patches FortiCloud SSO Authentication Bypass Under Active Exploitation

CVE-2026-24858 allows attackers with any FortiCloud account to authenticate to other customers' devices. Arctic Wolf observed automated exploitation creating backdoor admin accounts within seconds.

January 27, 2026 Fortinetzero-dayvulnerability

Microsoft Patches Actively Exploited Office Zero-Day Used by APT28

CVE-2026-21509 bypasses OLE security mitigations in Microsoft Office. Russia-linked APT28 is exploiting it against targets in Ukraine and the EU. Emergency patches available.

January 26, 2026 Microsoftzero-dayvulnerability

Cisco Patches Actively Exploited Zero-Day in Unified Communications and Webex

CVE-2026-20045, a CVSS 9.8 RCE flaw in Cisco Unified CM, is being actively exploited. No workaround exists—organizations must upgrade to 14SU5 or 15SU4 immediately.

January 22, 2026 Ciscozero-dayCVE-2026-20045

Automated Attacks Exploit FortiCloud SSO to Hijack FortiGate Firewalls

Arctic Wolf detected automated attacks on FortiGate devices starting January 15, exploiting CVE-2026-24858 (CVSS 9.8) to create backdoor admin accounts. Fortinet temporarily suspended FortiCloud SSO globally to contain the threat.

January 22, 2026 FortinetFortiGatezero-day

Microsoft January 2026 Patch Tuesday: 114 Vulnerabilities Fixed, Three Zero-Days

Monthly security update addresses 114 CVEs including CVE-2026-20805, a Windows Desktop Window Manager flaw under active exploitation enabling ASLR bypass. Eight critical RCE and privilege escalation flaws patched.

January 13, 2026 MicrosoftPatch Tuesdayvulnerabilities

Chinese Hackers Exploited VMware ESXi Zero-Days a Year Before Disclosure

Huntress discovered a Chinese-linked exploit toolkit (MAESTRO) targeting VMware ESXi that was built in February 2024—a year before VMware disclosed CVE-2025-22224. Over 30,000 instances remain exposed.

January 9, 2026 VMwareESXizero-day

MOVEit Transfer — Cl0p Mass Exploitation Affects 2,700+ Organizations

The Cl0p ransomware group exploited a zero-day vulnerability in Progress Software's MOVEit Transfer, compromising over 2,700 organizations and exposing data of 95+ million individuals in one of the largest mass exploitation events ever.

August 20, 2025 MOVEitCl0pzero-day
SYS ONLINE
PAGES 963
UPDATED 2026-02-06
UINAT

Security news, vulnerability alerts, and expert resources for professionals who defend the perimeter.

// Sections

  • › News
  • › Rankings
  • › Companies
  • › Breaches

// Resources

  • › Guides
  • › Compliance
  • › Tags
  • › About

// Feeds

  • › All Content
  • › News Only
  • › Breaches Only

> © 2026 UINAT. All rights reserved.

[ DEFEND THE PERIMETER ]

Search