Latest updates for Zero-Day

Fresh curated links around zero-day are collected here so marketers can spot useful updates and turn timely ideas into posts faster.

Recent items include:

  • Windows 0-day drops the same day Microsoft releases record number of patches
  • GeoServer Zero-Day Targeted in Active Exploitation Attempts, Can Lead to RCE
  • Microsoft-vendetta hacker has a new zero day that gives system privileges on fully patched Windows

Post angles to try

Share the most useful takeaway for your audience.
Turn one article into a quick practical checklist.
Ask your audience how this shift affects their work.
Turn angles into scheduled posts

Fresh articles and ideas

Recent curated links from global sources. Generate one free draft from any story, then use SocialBu to schedule and refine your content calendar.

arstechnica.com /1 month ago

Windows 0-day drops the same day Microsoft releases record number of patches

HiveLegacy is a "powerful primitive" that's likely capable of other nefarious actions.

Read source
thehackernews.com /3 weeks ago

GeoServer Zero-Day Targeted in Active Exploitation Attempts, Can Lead to RCE

A newly disclosed zero-day flaw in GeoServer is seeing active exploitation efforts, per watchTowr. The vulnerability, which has yet to be assigned a CVE identifier, is an SQL inje...

Read source
theregister.com /4 weeks ago

Microsoft-vendetta hacker has a new zero day that gives system privileges on fully patched Windows

Exploit Wednesday's back, baby

Read source
techcrunch.com /4 weeks ago

After Microsoft threatened legal action, a security researcher publishes a new Windows zero-day bug

This is the latest zero-day released by security researcher Nightmare Eclipse, despite Microsoft publicly threatening to take legal action against them.

Read source
techround.co.uk /3 weeks ago

Zero-Day Attacks: What Happens When Hackers Find A Flaw Before Anyone Can Fix It?

Authored by Mikaelle De Oliveira    Most people assume software is built like a massive, unbreakable vault. You install an... The post Zero-Day Attacks: What Happens When Hackers F...

Read source
thehackernews.com /12 hours ago

Chrome V8 Zero-Day Exploited in the Wild Enables Code Execution Inside Sandbox

Google on Thursday released updates to patch 230 security vulnerabilities, including one that has come under active exploitation in the wild. The medium-severity vulnerability, as...

Read source
bleepingcomputer.com /14 hours ago

New Microsoft Defender 'ShieldCrash' zero-day grants SYSTEM access

An anonymous security researcher known as Nightmare Eclipse has released a new Microsoft Defender zero-day exploit named "ShieldCrash" right after Microsoft rolled out its Septembe...

Read source
thehackernews.com /1 month ago

SonicWall SMA Zero-Days Exploited Before Disclosure to Gain Root Access

A previously undocumented threat actor has been attributed to the exploitation of recently disclosed SonicWall Secure Mobile Access (SMA) 1000 series VPN appliances as zero-days pr...

Read source
bleepingcomputer.com /5 days ago

New CrowdStrike 'FalconFlank' zero-day grants SYSTEM privileges

An anonymous security researcher who uses the "Nightmare Eclipse" handle released a CrowdStrike Falcon zero-day exploit named "FalconFlank" that lets attackers escalate privileges...

Read source
bleepingcomputer.com /4 weeks ago

New Microsoft Defender 'ShieldBreak' zero-day grants SYSTEM privileges

Nightmare Eclipse has released a new Microsoft Defender zero-day exploit named "ShieldBreak" after Microsoft released the August 2026 Patch Tuesday security updates. [...]

Read source
thehackernews.com /4 weeks ago

ShieldBreak Zero-Day PoC Claims Microsoft Defender Patch Bypass With SYSTEM Access

The security researcher going by the name Chaotic Eclipse (aka INFINITE NIGHTMARE, MSNightmare, and Nightmare-Eclipse) has released a proof-of-concept (PoC) for a new Microsoft zer...

Read source
cybersecuritynews.com /4 weeks ago

Nightmare-Eclipse Drops ShieldBreak Windows Defender 0-day Vulnerability

The prolific and controversial security researcher known as Nightmare-Eclipse (also tracked under the alias Chaotic Eclipse) has released a ninth Windows zero-day exploit called Sh...

Read source
bleepingcomputer.com /1 week ago

PaperCut warns of NG, MF flaw exploited in zero-day attacks

PaperCut is warning that hackers are actively exploiting a vulnerability in all versions of its PaperCut NG and PaperCut MF print management software in zero-day attacks. [...]

Read source
cybersecuritynews.com /6 days ago

Chaotic Eclipse Claims Avast Antivirus 0-Day Vulnerability – PoC Released

Researcher Chaotic Eclipse has claimed to have discovered a zero-day privilege-escalation vulnerability affecting Avast Antivirus and released a public proof-of-concept repository...

Read source
thehackernews.com /1 month ago

Researcher Drops New Windows Zero-Day PoC Hours After Microsoft Patch Tuesday

Security researcher Chaotic Eclipse (aka Nightmare-Eclipse) has released a new proof-of-concept (PoC) exploit called LegacyHive. It has been described as a Windows User Profile Se...

Read source
thehackernews.com /4 weeks ago

Microsoft Patches 398 Flaws Including a Windows Driver Zero-Day Under Active Attack

Microsoft released its monthly security updates on Tuesday, and one of the flaws it closed is already being used in attacks. The bug sits in a core Windows kernel driver that hand...

Read source
bleepingcomputer.com /1 month ago

New Windows LegacyHive zero-day gives hackers admin privileges

A security researcher using the "Nightmare Eclipse" handle has released a Windows zero-day exploit dubbed LegacyHive that allows attackers to escalate privileges on up-to-date Wind...

Read source
bleepingcomputer.com /1 month ago

Windows LegacyHive zero-day flaw gets free, unofficial patches

Free unofficial patches are available for a recently disclosed Windows zero-day flaw that allows attackers to escalate privileges on up-to-date Windows systems. [...]

Read source
cybersecuritynews.com /1 month ago

Hackers Actively Exploiting SonicWall SMA1000 0-Day Vulnerability in the Wild

SonicWall disclosed two vulnerabilities affecting its SMA1000 Series remote access appliances, and threat actors were already exploiting one of them before the advisory even went p...

Read source
bleepingcomputer.com /4 weeks ago

Lazarus hackers exploited Windows zero-day to target defense firms

North Korean hackers have been exploiting a Windows zero-day vulnerability (CVE-2026-68820) to target defense-sector companies as part of the Operation Dream Job campaign. [...]

Read source
theregister.com /6 days ago

Prolific Microsoft 0-day hunter drops CrowdStrike Falcon exploit PoC

A shared security 'Nightmare'

Read source
thehackernews.com /4 weeks ago

Lazarus Exploits Windows Zero-Day to Gain SYSTEM Access and Deploy Backdoor

The North Korean threat actor known as Lazarus Group has been attributed to the zero-day exploitation of a newly patched security flaw impacting Microsoft Windows to deliver a neve...

Read source
dev.to /1 month ago

Cursor has an unpatched 0-day. It's been 7 months.

A developer opens a repository in Cursor on Windows. If that repo contains a file named git.exe in the root, Cursor executes it automatically. No clicks. No warnings. No prompts. J...

Read source
thehackernews.com /1 month ago

N-day is Becoming N-Hour. Patching Faster Won't Save You.

Every patch is a confession. The moment a vendor ships a security fix, the diff between the old code and the new code tells anyone watching exactly what was broken and where. Turn...

Read source

Turn fresh research into a full content calendar

Use SocialBu to discover ideas, generate post drafts, and schedule them across your social channels.

Sources covering Zero-Day

feeds.arstechnica.com

Recent coverage from public sources
Public source

cybersecuritynews.com

Recent coverage from public sources
Public source

dev.to

Recent coverage from public sources
Public source

feeds.feedburner.com

Recent coverage from public sources
Public source

techcrunch.com

Recent coverage from public sources
Public source

techround.co.uk

Recent coverage from public sources
Public source