Actualizat automat în fiecare oră · ultima verificare 27.09.2026, 13:41 (ora României)
Alerte de securitate în timp real: breșe, ransomware și vulnerabilități exploatate activ
Tot ce publică autoritățile de securitate cibernetică din România, Uniunea Europeană, Franța, Germania, Marea Britanie și SUA, plus principalele publicații de specialitate, într-o singură pagină, în ultimele 7 zile. Fiecare rând trimite la sursa oficială. Nu scriem noi conținutul alertelor: îl preluăm exact, ca să îl puteți verifica.
Alertele imediate pe e-mail, în ora în care apar
Doar alertele DNSC și vulnerabilitățile exploatate activ, cel mult un e-mail la 6 ore. Păstrăm adresa, data și ora cererii și a confirmării, ca dovadă a acordului, până vă dezabonați (prelucrarea datelor). Operator: DEVALAND MARKETING S.R.L., CUI 50841395 · cod TVA RO50841395 · ORC J2024039063003.
Cele importante: exploatate activ, ransomware, breșe mari, alerte naționale (16)
- 26.09.2026, 00:41 · BleepingComputer [EN]: Kiteworks urges 6-hour server shutdown over potential zero-day attacks
- 25.09.2026, 18:00 · The Record [EN]: Cyberattack hits Welsh police force, may have affected staff data
- 25.09.2026, 03:00 · CISA, vulnerabilități exploatate activ (KEV) [EN]: MikroTik RouterOS: Mikrotik RouterOS Improper Enforcement of Behavioral Workflow Vulnerability · CVE-2026-67279
- 25.09.2026, 03:00 · CISA, vulnerabilități exploatate activ (KEV) [EN]: Microsoft SharePoint: Microsoft SharePoint Code Injection Vulnerability · CVE-2026-65660
- 25.09.2026, 03:00 · CISA, vulnerabilități exploatate activ (KEV) [EN]: WordPress Core: WordPress Core Remote File Inclusion Vulnerability · CVE-2026-87902
- 24.09.2026, 14:57 · DNSC, Directoratul Național de Securitate Cibernetică: Știrile săptămânii din cybersecurity (24.09.2026)
- 24.09.2026, 14:40 · DNSC, Directoratul Național de Securitate Cibernetică: ALERTĂ: Vulnerabilitate critică la nivelul WordPress Core
- 24.09.2026, 03:00 · CISA, vulnerabilități exploatate activ (KEV) [EN]: WSO2 Multiple Products: WSO2 Multiple Products Path Traversal Vulnerability · CVE-2026-5430
- 24.09.2026, 03:00 · CISA, vulnerabilități exploatate activ (KEV) [EN]: Adobe Commerce and Magento : Adobe Commerce and Magento Incorrect Authorization Vulnerability · CVE-2026-71362
- 23.09.2026, 14:59 · DNSC, Directoratul Național de Securitate Cibernetică: ALERTĂ: Vulnerabilitate critică exploatată activ în F5 BIG-IP APM · CVE-2026-94127
- 22.09.2026, 11:02 · Have I Been Pwned, ultima breșă publicată [EN]: LimeLeads: 17.838.396 conturi expuse
- 22.09.2026, 03:00 · CISA, vulnerabilități exploatate activ (KEV) [EN]: Arista VeloCloud Orchestrator: Arista VeloCloud Orchestrator Improper Input Validation Vulnerability · CVE-2026-93952
- 22.09.2026, 03:00 · CISA, vulnerabilități exploatate activ (KEV) [EN]: F5 BIG-IP APM: F5 BIG-IP APM Heap-based Buffer Overflow Vulnerability · CVE-2026-94127
- 22.09.2026, 03:00 · CISA, vulnerabilități exploatate activ (KEV) [EN]: Check Point Multiple Products: Check Point Multiple Products Path Traversal Vulnerability · CVE-2026-93616
- 22.09.2026, 03:00 · CISA, vulnerabilități exploatate activ (KEV) [EN]: Check Point Multiple Products: Check Point Multiple Products Improper Certificate Validation Vulnerability · CVE-2026-85102
- 21.09.2026, 03:00 · CISA, vulnerabilități exploatate activ (KEV) [EN]: Zyxel GS1900 Series Switches: Zyxel GS1900 Series Switches Stack-Based Buffer Overflow Vulnerability · CVE-2026-7273
Celelalte avize și știri (60)
- 27.09.2026, 12:23 · SecurityWeek [EN]: Microsoft SharePoint Flaw CVE-2026-65660 Now Exploited in Attacks · CVE-2026-65660
- 26.09.2026, 22:03 · BleepingComputer [EN]: ShinyHunters uses WAF bypass trick in Oracle PeopleSoft attacks · CVE-2026-35273
- 26.09.2026, 21:09 · SecurityWeek [EN]: China and US Agree to Establish AI Safety Channel and Continue Trade and Military Talks
- 26.09.2026, 19:26 · BleepingComputer [EN]: Claude Opus 5.5 uses 95% fewer em dashes, but its answers are getting longer
- 26.09.2026, 18:50 · BleepingComputer [EN]: Microsoft pauses KB5002907 update after Office license deactivations
- 26.09.2026, 17:19 · BleepingComputer [EN]: GitHub Actions re-enabled with Mini Shai-Hulud payload still active
- 26.09.2026, 15:28 · BleepingComputer [EN]: OpenAI's AI agents accidentally uploaded user-provided images to third-party sites
- 26.09.2026, 15:00 · SecurityWeek [EN]: New x47.c Windows Botnet Weaponizes xAI Grok, AI API Draining
- 26.09.2026, 13:15 · SecurityWeek [EN]: OpenAI Says Its Models Engaged With US Government Websites in New Model Misbehavior Disclosure
- 25.09.2026, 23:57 · BleepingComputer [EN]: ShinyHunters hacked Clop leak site using Grav CMS path traversal flaw
- 25.09.2026, 23:19 · The Record [EN]: Kiteworks urges customers to stop using platform after warning from federal intelligence agencies
- 25.09.2026, 22:35 · The Record [EN]: Labcorp to overhaul data security practices, pay $2.3 million fine for cybersecurity failings
- 25.09.2026, 21:13 · BleepingComputer [EN]: Elementor WordPress flaw lets attackers create admin accounts
- 25.09.2026, 20:24 · BleepingComputer [EN]: CISA warns of Sharepoint, WSO2, Adobe Commerce flaws exploited in attacks · CVE-2026-5430
- 25.09.2026, 19:00 · BleepingComputer [EN]: Anthropic rolls out up to $250 in free Claude Code credits, but only for cloud sessions
- 25.09.2026, 18:15 · The Record [EN]: Crypto CEO accuses North Korea of stealing $387 million from Bitget platform
- 25.09.2026, 18:07 · SecurityWeek [EN]: In Other News: Clop Leak Site Takeover, Docker Botnet Hunts AI Keys, Water Utility Exposure
- 25.09.2026, 17:54 · BleepingComputer [EN]: OpenAI is preparing a $500 ChatGPT Pro Max plan with faster Codex
- 25.09.2026, 17:51 · BleepingComputer [EN]: With the Rise of AI Agents, SOC 2 Should Adapt or Risk Irrelevance
- 25.09.2026, 17:16 · SecurityWeek [EN]: North Korea Suspected in $351 Million Bitget Crypto Heist
- 25.09.2026, 15:40 · BleepingComputer [EN]: Microsoft plans to deprecate Windows Deployment Services
- 25.09.2026, 15:39 · SecurityWeek [EN]: CISA Election Security Plan Flags Patching Barriers, Voter Database Attacks
- 25.09.2026, 15:16 · SecurityWeek [EN]: Kosovar Owner of Rydox Marketplace Pleads Guilty in US Court
- 25.09.2026, 15:00 · The Record [EN]: Doubts grow over claims OpenAI agent hacked Australian Medicare portal
- 25.09.2026, 14:59 · CERT-Bund (BSI) [DE]: [UPDATE] [mittel] Linux Kernel: Mehrere Schwachstellen
- 25.09.2026, 14:59 · CERT-Bund (BSI) [DE]: [UPDATE] [mittel] Linux Kernel: Mehrere Schwachstellen ermöglichen Denial of Service
- 25.09.2026, 14:59 · CERT-Bund (BSI) [DE]: [NEU] [hoch] QT: Schwachstelle ermöglicht Umgehen von Sicherheitsvorkehrungen
- 25.09.2026, 14:59 · CERT-Bund (BSI) [DE]: [NEU] [mittel] PHP: Mehrere Schwachstellen
- 25.09.2026, 14:59 · CERT-Bund (BSI) [DE]: [NEU] [hoch] cPanel cPanel/WHM: Mehrere Schwachstellen
- 25.09.2026, 14:59 · CERT-Bund (BSI) [DE]: [UPDATE] [hoch] Linux Kernel: Mehrere Schwachstellen ermöglichen Denial of Service
- 25.09.2026, 14:59 · CERT-Bund (BSI) [DE]: [NEU] [mittel] Linux Kernel: Mehrere Schwachstellen
- 25.09.2026, 14:54 · CERT-Bund (BSI) [DE]: [UPDATE] [hoch] Linux Kernel: Mehrere Schwachstellen
- 25.09.2026, 14:39 · CERT-Bund (BSI) [DE]: [UPDATE] [hoch] Linux Kernel: Mehrere Schwachstellen ermöglichen Denial of Service
- 25.09.2026, 14:39 · CERT-Bund (BSI) [DE]: [UPDATE] [hoch] Linux Kernel: Mehrere Schwachstellen
- 25.09.2026, 14:39 · CERT-Bund (BSI) [DE]: [UPDATE] [mittel] Linux Kernel: Mehrere Schwachstellen ermöglichen Denial of Service
- 25.09.2026, 14:39 · CERT-Bund (BSI) [DE]: [UPDATE] [mittel] Linux Kernel: Mehrere Schwachstellen
- 25.09.2026, 14:39 · CERT-Bund (BSI) [DE]: [UPDATE] [hoch] Linux Kernel: Mehrere Schwachstellen
- 25.09.2026, 14:39 · CERT-Bund (BSI) [DE]: [UPDATE] [hoch] Linux Kernel: Mehrere Schwachstellen
- 25.09.2026, 14:39 · CERT-Bund (BSI) [DE]: [UPDATE] [hoch] Linux Kernel: Mehrere Schwachstellen
- 25.09.2026, 14:39 · CERT-Bund (BSI) [DE]: [UPDATE] [hoch] Linux Kernel: Mehrere Schwachstellen ermöglichen Denial of Service
- 25.09.2026, 14:35 · BleepingComputer [EN]: Rydox marketplace admin pleads guilty, faces 22 years in prison
- 25.09.2026, 14:34 · CERT-Bund (BSI) [DE]: [UPDATE] [hoch] Linux Kernel: Mehrere Schwachstellen
- 25.09.2026, 14:34 · CERT-Bund (BSI) [DE]: [UPDATE] [hoch] Linux Kernel: Mehrere Schwachstellen
- 25.09.2026, 14:34 · CERT-Bund (BSI) [DE]: [UPDATE] [hoch] Linux Kernel: Mehrere Schwachstellen
- 25.09.2026, 14:34 · CERT-Bund (BSI) [DE]: [UPDATE] [hoch] Linux Kernel: Mehrere Schwachstellen
- 25.09.2026, 14:29 · CERT-Bund (BSI) [DE]: [UPDATE] [mittel] Linux Kernel: Mehrere Schwachstellen
- 25.09.2026, 14:29 · CERT-Bund (BSI) [DE]: [UPDATE] [mittel] Linux Kernel: Mehrere Schwachstellen
- 25.09.2026, 14:29 · CERT-Bund (BSI) [DE]: [UPDATE] [hoch] Linux Kernel: Mehrere Schwachstellen
- 25.09.2026, 14:29 · CERT-Bund (BSI) [DE]: [UPDATE] [mittel] Linux Kernel: Mehrere Schwachstellen
- 25.09.2026, 14:24 · CERT-Bund (BSI) [DE]: [UPDATE] [hoch] Linux Kernel: Mehrere Schwachstellen
- 25.09.2026, 14:19 · CERT-Bund (BSI) [DE]: [UPDATE] [hoch] Linux Kernel: Mehrere Schwachstellen
- 25.09.2026, 14:19 · CERT-Bund (BSI) [DE]: [UPDATE] [kritisch] Linux Kernel: Mehrere Schwachstellen
- 25.09.2026, 14:19 · CERT-Bund (BSI) [DE]: [UPDATE] [mittel] Linux Kernel: Mehrere Schwachstellen
- 25.09.2026, 14:19 · CERT-Bund (BSI) [DE]: [UPDATE] [hoch] Mozilla Firefox und Thunderbird: Mehrere Schwachstellen
- 25.09.2026, 14:19 · CERT-Bund (BSI) [DE]: [UPDATE] [mittel] Linux Kernel: Mehrere Schwachstellen ermöglichen nicht spezifizierten Angriff
- 25.09.2026, 14:14 · CERT-Bund (BSI) [DE]: [UPDATE] [hoch] Unbound: Mehrere Schwachstellen
- 25.09.2026, 14:14 · CERT-Bund (BSI) [DE]: [UPDATE] [hoch] Mozilla Firefox und Thunderbird: Mehrere Schwachstellen
- 25.09.2026, 14:14 · CERT-Bund (BSI) [DE]: [UPDATE] [hoch] Linux Kernel: Mehrere Schwachstellen
- 25.09.2026, 14:14 · CERT-Bund (BSI) [DE]: [UPDATE] [hoch] Linux Kernel: Mehrere Schwachstellen
- 25.09.2026, 14:14 · CERT-Bund (BSI) [DE]: [UPDATE] [hoch] Mozilla Firefox und Thunderbird: Mehrere Schwachstellen
Ce faceți când vedeți un produs pe care îl folosiți
Deschideți linkul sursei, verificați versiunea pe care o aveți și aplicați actualizarea sau măsura recomandată de producător. Pentru o instituție publică, alertele DNSC sunt reperul național. Dacă aveți nevoie de ajutor, scrieți-ne.
Surse: DNSC, CERT-EU, CERT-FR (ANSSI), CERT-Bund (BSI), NCSC (UK), CISA KEV, Have I Been Pwned, BleepingComputer, SecurityWeek, The Record. Titlurile rămân în limba sursei, marcate [EN], [FR], [DE].
