Alerts & Advisories
Provides alerts and advisories on emerging cyber threats, vulnerabilities, and preventive measures to help individuals and organisations stay secure online.
1238 items
28 September 2026
Active Exploitation of Vulnerabilities in Citrix NetScaler ADC and Citrix NetScaler Gateway
Attackers are exploiting multiple vulnerabilities in Citrix NetScaler ADC and Citrix NetScaler Gateway. Patch immediately.
24 September 2026
Active Exploitation of High-Severity Vulnerability in WordPress
Attackers are exploiting a high-severity vulnerability in WordPress to achieve remote code execution under specific conditions. Patch immediately.
23 September 2026
Multiple Vulnerabilities in Synology DiskStation Manager (DSM)
Attackers can exploit multiple vulnerabilities in Synology DiskStation Manager (DSM) to read or write arbitrary files and conduct denial-of-service attacks. Patch immediately.
23 September 2026
Security Bulletin 23 Sep 2026 [PDF, 2.6MB]
21 September 2026
Active Exploitation of Vulnerability in Cisco Identity Services Engine
Attackers are exploiting a critical vulnerability in Cisco Identity Services Engine and Cisco Identity Services Engine Passive Identity Connector to bypass authentication and gain unauthorised access. Patch immediately.
18 September 2026
Active Exploitation of Critical Vulnerability in Cisco AsyncOS
Attackers are exploiting a critical vulnerability in Cisco AsyncOS to execute arbitrary commands with root privileges. Patch immediately.
17 September 2026
Active Exploitation of Vulnerability in Vite Development Servers
Attackers are exploiting a high severity vulnerability in Vite development servers to retrieve restricted system and configuration files over HTTP. Patch immediately.
17 September 2026
Active Exploitation of Critical Vulnerability in GitLab
Attackers are exploiting a critical vulnerability in GitLab to read arbitrary files from the server. Patch immediately.
16 September 2026
Security Bulletin 16 Sep 2026 [PDF, 2MB]
15 September 2026
High-Severity Vulnerability in MongoDB Server
Attackers can exploit a high-severity vulnerability in MongoDB Server to gain full unauthenticated administrative access to the affected database. Patch promptly.
