Latest zero-days Total: 417, in 2019: Zero-days 11, candidates: 0

Backdoor in Asus Live Update

An APT campaign was launched against ASUS between June and November 2018. The attacker compromised ASA Live Update servers and distributed malware to cca. 1 million computers worldwide. 

The attack was attributed to APT17 adversary, also known as Deputy Dog.

Stored XSS in Social Warfare WordPress plugin
CVE-2019-9978

A stored XSS vulnerability in the Social Warfare plugin, used by 70 000 users, led to a mass hacking campaign of WordPress websites.

Insecure deserialization in Easy WP SMTP plugin for WordPress

WordPress websites were under attack due to vulnerability in a popular WP plugin since March 15, 2019.

Privilege escalation in Microsoft Windows Win32k.sys driver
CVE-2019-0797

Kaspersky Lab has detected and reported a zero-day vulnerability in Win32k.sys driver in Microsoft Windows.

Vulnerability Scanning SaaS

Vulnerability scanning SaaS service is online 3-rd generation vulnerability scanner with scheduled assessments and vulnerability subscription. You can use service to check security of your network perimeter.