en
Feedback
Netlas.io

Netlas.io

Open in Telegram

Explore the latest in cybersecurity with Netlas.io. Stay ahead with updates on high-profile vulnerabilities, expert tutorials, essential safety tips, and the latest Netlas developments.

Show more
2 278
Subscribers
+224 hours
+67 days
+3130 days
Attracting Subscribers
August '26
August '26
+79
in 0 channels
July '26
+103
in 1 channels
Get PRO
June '26
+89
in 2 channels
Get PRO
May '26
+90
in 0 channels
Get PRO
April '26
+64
in 0 channels
Get PRO
March '26
+53
in 0 channels
Get PRO
February '26
+63
in 1 channels
Get PRO
January '26
+55
in 0 channels
Get PRO
December '25
+88
in 0 channels
Get PRO
November '25
+96
in 2 channels
Get PRO
October '25
+62
in 1 channels
Get PRO
September '25
+74
in 1 channels
Get PRO
August '25
+73
in 3 channels
Get PRO
July '25
+90
in 2 channels
Get PRO
June '25
+106
in 2 channels
Get PRO
May '25
+59
in 1 channels
Get PRO
April '25
+59
in 0 channels
Get PRO
March '25
+60
in 0 channels
Get PRO
February '25
+43
in 2 channels
Get PRO
January '25
+54
in 0 channels
Get PRO
December '24
+62
in 1 channels
Get PRO
November '24
+155
in 4 channels
Get PRO
October '24
+73
in 1 channels
Get PRO
September '24
+76
in 1 channels
Get PRO
August '24
+62
in 1 channels
Get PRO
July '24
+77
in 3 channels
Get PRO
June '24
+53
in 1 channels
Get PRO
May '24
+77
in 2 channels
Get PRO
April '24
+133
in 3 channels
Get PRO
March '24
+92
in 2 channels
Get PRO
February '24
+78
in 0 channels
Get PRO
January '24
+110
in 2 channels
Get PRO
December '23
+165
in 3 channels
Get PRO
November '23
+84
in 3 channels
Get PRO
October '23
+451
in 5 channels
Date
Subscriber Growth
Mentions
Channels
29 August+3
28 August+2
27 August0
26 August+4
25 August+2
24 August+3
23 August+4
22 August+1
21 August+1
20 August+4
19 August+3
18 August0
17 August+4
16 August+5
15 August+1
14 August+2
13 August+3
12 August+7
11 August+3
10 August+3
09 August+5
08 August+4
07 August+2
06 August0
05 August0
04 August+5
03 August+3
02 August+2
01 August+3
Channel Posts
Zero-day vulnerability in PaperCut Software with active exploitation, no CVE assigned yet ā€šŸ”„ PaperCut disclosed an emergency
Zero-day vulnerability in PaperCut Software with active exploitation, no CVE assigned yet ā€šŸ”„ PaperCut disclosed an emergency alert about a vulnerability in PaperCut NG/MF. No details have been disclosed, but it is known that it is being actively exploited in the wild. Search at Netlas.io: šŸ‘‰ Link: https://nt.ls/n7oWU šŸ‘‰ Dork (*PaperCut MF*): http.favicon.hash_sha256:fab4df1b834bf0ff6389d2315cc0d639d55cf6daef8e0880302150d1d48b3576 OR http.favicon.hash_sha256:ce5cefdb0b9c7fbf8d204660447db9878316dbfe5d56f47455419f435ebd6464 OR http.meta:"PaperCut MF is a print management system"OR http.body:"<title>PaperCut Login" Vendor's advisory: https://www.papercut.com/kb/Main/security-bulletin-27-aug-2026-urgent-security-advisory/

2
CVE-2026-19632: Account takeover vulnerability in TranslatePress WordPress plugin, 9.8 rating ā€šŸ”„ A recently disclosed vulner
CVE-2026-19632: Account takeover vulnerability in TranslatePress WordPress plugin, 9.8 rating ā€šŸ”„ A recently disclosed vulnerability in the TranslatePress WordPress plugin allows unauthenticated attackers to extract an administrator’s password reset link, reset the account’s password, and log in as that administrator, leading to complete site takeover. Search at Netlas.io: šŸ‘‰ Link: https://nt.ls/oe1hr šŸ‘‰ Dork: http.body:"plugins/translatepress-multilingual" Vendor's advisory: https://www.wordfence.com/blog/2026/08/400000-wordpress-sites-affected-by-account-takeover-vulnerability-in-translatepress-wordpress-plugin/
213
3
šŸ—ŗ Netlas v1.9 — Rebuild Your Attack Surface Attack surfaces change over time — infrastructure appears, disappears, and moves
šŸ—ŗ Netlas v1.9 — Rebuild Your Attack Surface Attack surfaces change over time — infrastructure appears, disappears, and moves. With the new interactive rebuild in Netlas Discovery, you can update an existing attack surface using the latest Netlas data. āœ” Replay the complete discovery history step by step āœ” Decide whether to add newly discovered nodes āœ” Keep or remove data no longer found in current indices āœ” Preserve graph layout and comments āœ” New scanner protocols: BACnet and MSRPC āœ” New API endpoints for single and bulk rescans āœ” 20+ security fixes Full changelog: https://docs.netlas.io/changelog/
314
4
CVE-2026-77806: Unauthenticated RCE in SPIP with public exploit and active exploitation, 9.8 rating ā€šŸ”„ A recently disclosed
CVE-2026-77806: Unauthenticated RCE in SPIP with public exploit and active exploitation, 9.8 rating ā€šŸ”„ A recently disclosed vulnerability in SPIP allows unauthenticated remote attackers to execute arbitrary code. Public exploit code has been added to the Metasploit framework. This vulnerability is being actively exploited in the wild! Search at Netlas.io: šŸ‘‰ Link: https://nt.ls/SeHVc šŸ‘‰ Dork: tag.name:"spip" Vendor's advisory: https://blog.spip.net/Mise-a-jour-critique-de-securite-sortie-de-SPIP-4-4-21.html?lang=fr
286
5
CVE-2026-19490: Authentication bypass in Citrix NetScaler ADC and NetScaler Gateway, 9.3 rating ā€šŸ”„ A recently disclosed auth
CVE-2026-19490: Authentication bypass in Citrix NetScaler ADC and NetScaler Gateway, 9.3 rating ā€šŸ”„ A recently disclosed authentication bypass vulnerability affects customer-managed NetScaler ADC and NetScaler Gateway. The appliance must be configured as a Gateway (SSL VPN, ICA Proxy, CVPN, RDP Proxy) or an AAA virtual server. Search at Netlas.io: šŸ‘‰ Link: https://nt.ls/Ebg2V šŸ‘‰ Dork (NetScaler ADC): http.headers.set_cookie:"citrix_ns_id" OR http.headers.set_cookie:"ns_af" OR http.headers.set_cookie:"NSC_" OR http.headers.set_cookie:"NSC_ESNS" šŸ‘‰ Dork (NetScaler Gateway): http.title:"citrix gateway" OR http.headers.set_cookie:"pwcount" OR http.favicon.hash_sha256:7b2fe2b7235b6645998edcae988ce1edaac40764c202abc3a4766db1b8ae6360 OR http.favicon.hash_sha256:3e8f8b98d8fe34a5e627c3033f0940777144effe4b5f588c67bfc6ba3bf106fa Vendor's advisory: https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX696939
355
6
CVE-2026-73570: Unauthenticated RCE in Zimbra, 8.9 rating ā€šŸ”„ A Zimbra vulnerability disclosed last week is now being activel
CVE-2026-73570: Unauthenticated RCE in Zimbra, 8.9 rating ā€šŸ”„ A Zimbra vulnerability disclosed last week is now being actively exploited in the wild. It allows an unauthenticated attacker to execute arbitrary OS commands as the Zimbra user via specially crafted requests. Successful exploitation requires the optional zimbra-snmp package and enabled SNMP notifications. Search at Netlas.io: šŸ‘‰ Link: https://nt.ls/RfXS9 šŸ‘‰ Dork: tag.name:"zimbra" Vendor's advisory: https://wiki.zimbra.com/wiki/Zimbra_Security_Advisories
372
7
CVE-2026-60702 and other: Vulnerabilities in Oracle WebLogic Server, up to 9.9 rating ā€šŸ”„ A recently disclosed vulnerabilitie
CVE-2026-60702 and other: Vulnerabilities in Oracle WebLogic Server, up to 9.9 rating ā€šŸ”„ A recently disclosed vulnerabilities in Oracle WebLogic Server allow low-privileged or unauthenticated attacker to compromise the server. Search at Netlas.io: šŸ‘‰ Link: https://nt.ls/jX2A4 šŸ‘‰ Dork: tag.name:"weblogic" Vendor's advisory: https://www.oracle.com/security-alerts/cspuaug2026.html#AppendixFMW
353
8
CVE-2026-71479: Integer overflow in New API, 9.1 rating ā€šŸ”„ A recently disclosed integer overflow vulnerability in New API al
CVE-2026-71479: Integer overflow in New API, 9.1 rating ā€šŸ”„ A recently disclosed integer overflow vulnerability in New API allows low-privileged accounts with a positive balance or an active subscription to credit themselves an arbitrarily large amount. This vulnerability is already being actively exploited in the wild! Search at Netlas.io: šŸ‘‰ Link: https://nt.ls/XoA0U šŸ‘‰ Dork: http.favicon.hash_sha256:32132a307cad98d7f93b0384de87411f087bb34c148c932dcd5eea92101cbec3 OR http.unknown_headers.key:"x_new_api_version" OR http.title:"New API" Vendor's advisory: https://github.com/QuantumNous/new-api/security/advisories/GHSA-8r8v-xf7q-rcpr
343
9
CVE-2026-65640: Authenticated RCE in WordPress, 8.8 rating ā€šŸ”„ A recently disclosed vulnerability in WordPress allows an atta
CVE-2026-65640: Authenticated RCE in WordPress, 8.8 rating ā€šŸ”„ A recently disclosed vulnerability in WordPress allows an attacker with an Author-level privileges to upload malicious Postscript files, which could lead to RCE. This issue affects sites that use Imagick and Ghostscript. Search at Netlas.io: šŸ‘‰ Link: https://nt.ls/LrDYt šŸ‘‰ Dork: tag.name:"wordpress" Vendor's advisory: https://github.com/WordPress/wordpress-develop/security/advisories/GHSA-8vr3-7mxf-gx8w
452
10
Chaining two vulnerabilities could allow RCE in MariaDB, no CVE assigned yet ā€šŸ”„ Recently disclosed vulnerabilities in MariaD
Chaining two vulnerabilities could allow RCE in MariaDB, no CVE assigned yet ā€šŸ”„ Recently disclosed vulnerabilities in MariaDB allow a low-privileged attacker to run arbitrary commands as the mariadb process. PoC is already available! Search at Netlas.io: šŸ‘‰ Link: https://nt.ls/Dp2Ed šŸ‘‰ Dork: tag.name:"mariadb" Read more: https://github.com/v12-security/pocs/tree/main/mariadb
408
11
CVE-2026-44901 and other: Critical bugs in Wazuh Manager, up to 9.1 rating ā€šŸ”„ Recently disclosed vulnerabilities in Wazuh Ma
CVE-2026-44901 and other: Critical bugs in Wazuh Manager, up to 9.1 rating ā€šŸ”„ Recently disclosed vulnerabilities in Wazuh Manager allow an attacker to execute arbitrary code, read and write arbitrary files. PoCs exist for all of them! Search at Netlas.io: šŸ‘‰ Link: https://nt.ls/COx2Y šŸ‘‰ Dork: certificate.issuer_dn:"Wazuh" OR http.headers.server:"Wazuh" OR raw.banner:"Unable to add agent" Vendor's advisory: https://github.com/wazuh/wazuh/security/advisories/GHSA-8c6v-7g3w-prrq
423
12
CVE-2026-44945: A privilege escalation vulnerability in Rancher, 9.1 rating ā€šŸ”„ An authenticated Rancher low-privileged user
CVE-2026-44945: A privilege escalation vulnerability in Rancher, 9.1 rating ā€šŸ”„ An authenticated Rancher low-privileged user can gain full administrative access to the Rancher control plane and transitively to all downstream clusters it manages. Search at Netlas.io: šŸ‘‰ Link: https://nt.ls/FGN75 šŸ‘‰ Dork: http.favicon.hash_sha256:2d7adbc74e7c8941927d04e702acbff577d219fef8617c8c3014d34ae395525b OR http.body:"<title>Rancher</title>" OR http.unknown_headers.key:"x_api_cattle_auth" Vendor's advisory: https://github.com/rancher/rancher/security/advisories/GHSA-v584-7w32-jwpq
394
13
0-day SQL Injection in Metabase, no CVE assigned yet, 10.0 rating ā€šŸ”„šŸ”„šŸ”„ Recently disclosed vulnerability in Metabase allows
0-day SQL Injection in Metabase, no CVE assigned yet, 10.0 rating ā€šŸ”„šŸ”„šŸ”„ Recently disclosed vulnerability in Metabase allows an unauthenticated remote attacker to inject arbitrary SQL into the Metabase application database, which can give them administrator access to the instance. This vulnerability is already being actively exploited in the wild! Search at Netlas.io: šŸ‘‰ Link: https://nt.ls/q4U1I šŸ‘‰ Dork: http.favicon.hash_sha256:61c0353e2bde23f74f7febc277df979fbc1017186de060fd9bd8d07b65bcac13 OR http.headers.set_cookie:"metabase.DEVICE" OR http.title:"Metabase" Vendor's advisory: https://github.com/metabase/metabase/security/advisories/GHSA-vwf4-m7j8-wcjf
450
14
CVE-2026-64638: Pre-auth reflected XSS in WordPress, 8.9 rating ā€šŸ”„ WordPress is vulnerable to a pre-auth reflected cross-sit
CVE-2026-64638: Pre-auth reflected XSS in WordPress, 8.9 rating ā€šŸ”„ WordPress is vulnerable to a pre-auth reflected cross-site scripting (XSS) on the login screen, which can be escalated to RCE. Search at Netlas.io: šŸ‘‰ Link: https://nt.ls/SjACB šŸ‘‰ Dork: tag.name:"wordpress" Vendor's advisory: https://github.com/WordPress/wordpress-develop/security/advisories/GHSA-52p2-r8wf-jcrf
507
15
šŸ¤– Desktop AI Supercomputers and Automated Cyberattacks AI supercomputers now fit on a desk. Combine them with uncensored open models and autonomous agents, and cyberattacks become cheaper, faster, and far easier to scale. āœ” Why local AI changes the economics of offensive operations āœ” How model guardrails can be removed or bypassed āœ” How agents automate reconnaissance, exploitation, and retries āœ” Why defenders must prepare for same-day, machine-speed attacks ā± 12 min read šŸ‘‰ https://netlas.io/blog/desktop_ai_supercomputers_and_automated_attacks/
472
16
CVE-2026-15307: Server-side file-write and request forgery via spatial lookups in Django, 8.8 rating ā€šŸ”„ Recently disclosed D
CVE-2026-15307: Server-side file-write and request forgery via spatial lookups in Django, 8.8 rating ā€šŸ”„ Recently disclosed Django vulnerability allows an attacker to write a file to disk (in some cases enabling remote code execution) or issue a network request as the Django process user. This flaw is reachable by staff users with view permissions on any registered model containing a spatial field. Search at Netlas.io: šŸ‘‰ Link: https://nt.ls/xa9dB šŸ‘‰ Dork: tag.name:"django" Vendor's advisory: https://www.djangoproject.com/weblog/2026/aug/04/security-releases/
454
17
CVE-2026-16347: Possible brute-force attack in Mikrotik RouterOS, 8.8 rating ā€šŸ”„ MikroTik RouterOS contains a weakness in its
CVE-2026-16347: Possible brute-force attack in Mikrotik RouterOS, 8.8 rating ā€šŸ”„ MikroTik RouterOS contains a weakness in its API authentication handling that allows attackers to brute-force logins for unauthorized system access. Search at Netlas.io: šŸ‘‰ Link: https://nt.ls/mMq91 šŸ‘‰ Dork: http.favicon.hash_sha256:6e08f1f90e778da22f07537040dfcdab9c29ac443d8386ba5be71fcbc418ff47 OR http.title:"RouterOS" OR http.body:"img src=\"mikrotik_logo.svg" Read more: https://www.cisa.gov/news-events/ics-advisories/icsa-26-209-05
509
18
CVE-2026-56846, CVE-2026-56848 & CVE-2026-58043 and other: 3 high-severity and 8 medium or low vulnerabilities in Node.js ā€šŸ”„
CVE-2026-56846, CVE-2026-56848 & CVE-2026-58043 and other: 3 high-severity and 8 medium or low vulnerabilities in Node.js ā€šŸ”„ Recently disclosed vulnerabilities in Node.js touch HTTP/2, the Permission Model, and several core modules. Search at Netlas.io: šŸ‘‰ Link: https://nt.ls/AAg1f šŸ‘‰ Dork: tag.name:"node_js" Vendor's advisory: https://nodejs.org/en/blog/vulnerability/july-2026-security-releases
609
19
Command injection in Mittel MiCollab, no CVE assigned yet, 9.8 rating ā€šŸ”„ A command injection vulnerability has been discover
Command injection in Mittel MiCollab, no CVE assigned yet, 9.8 rating ā€šŸ”„ A command injection vulnerability has been discovered in the AWV component of Mitel MiCollab. A successful exploit of this vulnerability could allow an attacker to execute arbitrary commands and potentially gain control of the system. Search at Netlas.io: šŸ‘‰ Link: https://nt.ls/t8Tk9 šŸ‘‰ Dork: tag.name:"micollab" Vendor's advisory: https://www.mitel.com/support/security-advisories/mitel-product-security-advisory-misa-2026-0006
555
20
CVE-2026-16812: OS Command injection in VeloCloud Orchestrator, 10.0 rating ā€šŸ”„ A new vulnerability in Arista VeloCloud Orche
CVE-2026-16812: OS Command injection in VeloCloud Orchestrator, 10.0 rating ā€šŸ”„ A new vulnerability in Arista VeloCloud Orchestrator (VCO) allows an unauthenticated remote attacker run OS commands on the VCO host. A compromise can also expose managed devices. This vulnerability is already being actively exploited in the wild! Search at Netlas.io: šŸ‘‰ Link: https://nt.ls/PkM4n šŸ‘‰ Dork: http.body:"single-spa-application:@velocloud/vco-header" OR http.body:"vco/branding.css" OR http.body:"vco/favicon" Vendor's advisory: https://www.arista.com/en/support/advisories-notices/security-advisory/24364-security-advisory-0144
544