15 van 15 bronnen bereikbaar. Deze pagina ververst zichzelf elke minuut.
Seinwacht: actueel dreigingsbeeld voor SOC-teams in Nederland en België
Dreigingsniveau
Aanzienlijk
niveau 3 van 5Actief misbruik van relevante producten. Versneld patchen aanbevolen.
Berekend uit nieuw actief misbruikte CVE's, NCSC-inschalingen en kritieke meldingen van de afgelopen 72 uur. Hoe werkt dit?
- Nieuwe actief misbruikte CVE's (KEV)2afgelopen 72 uur, 16 punten
- …waarvan gebruikt door ransomware0afgelopen 72 uur, 0 punten
- NCSC-advisories met kans/schade Hoog/Hoog2afgelopen 72 uur, 20 punten
- Kritieke meldingen (score ≥ 70)1afgelopen 72 uur, 3 punten
Nu handelen
hoogste prioriteit, 7 dagen, dubbele meldingen samengevoegdKwetsbaarheden verholpen in NetScaler ADC en NetScaler Gateway
Citrix heeft 8 kwetsbaarheden verholpen in NetScaler ADC en NetScaler Gateway. De volgende ondersteunde versies van Citrix NetScaler ADC en Citrix NetScaler Gateway zijn kwetsbaar: - Citrix NetScaler ADC en Citrix NetScaler Gateway 14.1 vóór versie 14.1-73.37 - Citrix NetScaler ADC en Citrix NetScaler Gateway 13.1 vóór
Ook gemeld door CISA Known Exploited Vulnerabilities, Palo Alto Unit 42, CCB / Safeonweb@work (België), NCSC-NL Nieuws & alerts
prio95kritiekKwetsbaarheid in WordPress wordt actief misbruikt: update nu
Er is een kwetsbaarheid gevonden in WordPress met het kenmerk CVE-2026-87902. Deze kwetsbaarheid kan een hoog risico vormen omdat een aanvaller zonder inloggegevens mogelijk schadelijke acties kan uitvoeren op de server waar de WordPress website op draait. De kans op misbruik wordt als ‘normaal’ beoordeeld met de mogel
Ook gemeld door CISA Known Exploited Vulnerabilities
prio88kritiekCisco Catalyst SD-WAN Manager API Authentication Bypass Vulnerability
A vulnerability in the API session-based authentication management of Cisco Catalyst SD-WAN Manager could allow an unauthenticated, remote attacker to access an affected system with privileges of…
Ook gemeld door CISA Known Exploited Vulnerabilities
prio55hoogActief misbruik van zeroday-kwetsbaarheden in Zammad: update nu
Er zijn twee zeroday-kwetsbaarheden ontdekt in Zammad, een softwareproduct voor klantenservice. De kwetsbaarheden hebben de kenmerken CVE-2026-102489 en CVE-2026-102490. Beide kwetsbaarheden worden actief misbruikt en de kans op misbruik en de mogelijke schade zijn hoog.
Ook gemeld door NCSC-NL Security Advisories
prio50hoogCVE-2026-86950: Apple Multiple Products Out-of-Bounds Write Vulnerability
Apple iOS, macOS, and iPadOS contain an out-of-bounds write vulnerability in CoreGraphics that may lead to arbitrary code execution. Vereiste actie: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance
prio48hoogCVE-2026-67279: Mikrotik RouterOS Improper Enforcement of Behavioral Workflow Vulnerability
Mikrotik RouterOS contains an improper enforcement of behavioral workflow vulnerability that could allow an unauthenticated client to open a session channel and send an exec request. This vulnerability can be chained to achieve unauthenticated exploitation of CVE-2026-86060. Vereiste actie: Apply mitigations in accorda
prio40middelCVE-2026-65660: Microsoft SharePoint Code Injection Vulnerability
Microsoft SharePoint contains a code injection vulnerability which could allow an authorized attacker to execute code over a network. Vereiste actie: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidanc
prio40middel- prio20laag
- prio20laag
- prio20laag
- prio20laag
- prio20laag
- prio20laag
Vacatures
voor werkgeversZoek je een securityspecialist?
Plaats je vacature hier en bereik elke dag SOC-analisten, pentesters en security engineers in Nederland en België.
Vacature plaatsenNieuw in CISA KEV
bevestigd misbruik- CVE-2026-7650430 sepCisco Catalyst SD-WAN Manager Hex Encoding Vulnerability
- CVE-2026-8695029 sepApple Multiple Products Out-of-Bounds Write Vulnerability
- CVE-2026-8877227 sepCitrix NetScaler Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability
- CVE-2026-8877127 sepCitrix NetScaler Improper Input Validation Vulnerability
- CVE-2026-8790225 sepWordPress Core Remote File Inclusion Vulnerability
- CVE-2026-6727925 sepMikrotik RouterOS Improper Enforcement of Behavioral Workflow Vulnerability
- CVE-2026-6566025 sepMicrosoft SharePoint Code Injection Vulnerability
- CVE-2026-7136224 sepAdobe Commerce and Magento Incorrect Authorization Vulnerability
- CVE-2026-543024 sepWSO2 Multiple Products Path Traversal Vulnerability
- CVE-2026-9412722 sepF5 BIG-IP APM Heap-based Buffer Overflow Vulnerability
- CVE-2026-9395222 sepArista VeloCloud Orchestrator Improper Input Validation Vulnerability
- CVE-2026-9361622 sepCheck Point Multiple Products Path Traversal Vulnerability
- CVE-2026-8510222 sepCheck Point Multiple Products Improper Certificate Validation Vulnerability
- CVE-2026-727321 sepZyxel GS1900 Series Switches Stack-Based Buffer Overflow Vulnerability
- CVE-2026-5326618 sepLinux Kernel Out-of-Bounds Write Vulnerability
- CVE-2025-3996418 sepLinux Kernel Race Condition Vulnerability
- CVE-2025-3968218 sepLinux Kernel Improper Check for Unusual or Exceptional Conditions Vulnerability
- CVE-2026-8788616 sepAcronis Backup Incorrect Default Permissions Vulnerability
- CVE-2026-7646016 sepCisco Identity Services Engine Incorrect Use of Privileged APIs Vulnerability
- CVE-2026-5870416 sepGoogle Pixel Improper Authorization Vulnerability
Binnenkomend
alle bronnen, nieuwste eerst- [UPDATE] [hoch] Mozilla Firefox, Firefox ESR und Thunderbird: Mehrere SchwachstellenBSI CERT-Bund WID
- Cyberveilig gedrag van werknemers blijft achterNCSC-NL Nieuws & alerts
- Threat Brief: NetScaler Zero Days CVE-2026-88771 and CVE-2026-88772 Exploited in the Wild (Updated September 30)Palo Alto Unit 42
- Actief misbruik van zeroday-kwetsbaarheden in Zammad: update nuNCSC-NL Nieuws & alerts
- Kwetsbaarheden aangetroffen in ZammadNCSC-NL Security Advisories
- Cisco Advance Notification for Publication of October 7, 2026, Security AdvisoriesCisco PSIRT
- Kwetsbaarheden in Citrix NetScaler ADC en NetScaler Gateway: update nuNCSC-NL Nieuws & alerts
- Kwetsbaarheid verholpen in Cisco Catalyst SD-WAN ManagerNCSC-NL Security Advisories
- CVE-2026-69328 Windows Storage Elevation of Privilege VulnerabilityMicrosoft Security Response Center
- CVE-2026-69586 Microsoft Windows PDF Remote Code Execution VulnerabilityMicrosoft Security Response Center
- CVE-2026-69504 Windows NTFS Information Disclosure VulnerabilityMicrosoft Security Response Center
- CVE-2026-62699 Windows Universal Disk Format File System Driver (UDFS) Remote Code Execution VulnerabilityMicrosoft Security Response Center
- Cisco Catalyst SD-WAN Manager API Authentication Bypass VulnerabilityCisco PSIRT
- [NEU] [niedrig] poppler: Mehrere Schwachstellen ermöglichen nicht spezifizierten AngriffBSI CERT-Bund WID
- [NEU] [mittel] Moodle: Mehrere SchwachstellenBSI CERT-Bund WID
- [NEU] [mittel] OpenClaw: Mehrere SchwachstellenBSI CERT-Bund WID
- China-nexus UAT-11587 targets government and policy organizations across Asia with Antino backdoorCisco Talos Intelligence
- Kwetsbaarheden verholpen in NetScaler ADC en NetScaler GatewayNCSC-NL Security Advisories
- CVE-2026-0307 GlobalProtect App: Local Privilege Escalation Vulnerabilities (Severity: MEDIUM)Palo Alto Networks Security Advisories
- CVE-2026-76504: Cisco Catalyst SD-WAN Manager Hex Encoding VulnerabilityCISA Known Exploited Vulnerabilities
- Warning: Critical Cross-site Scripting (XSS) in Rancher - Kubernetes management platform, Patch Immediately!CCB / Safeonweb@work (België)
- Warning: Two critical vulnerabilities which can lead to Remote Code Execution in WatchGuard, Patch Immediately!CCB / Safeonweb@work (België)
- OperTraitors: How Kubernetes Operators Betray Your Security PosturePalo Alto Unit 42
- Securing the keys to the kingdom: Announcing Executive Threat DetectionCisco Talos Intelligence
- CVE-2026-86950: Apple Multiple Products Out-of-Bounds Write VulnerabilityCISA Known Exploited Vulnerabilities
- Warning: Critical vulnerabilities in Mikrotik RouterOS, Patch immediately!CCB / Safeonweb@work (België)
- Warning: Cross-site Scripting vulnerabilities in Zimbra, Patch Immediately!CCB / Safeonweb@work (België)
- 2026-014: Critical Vulnerabilities in Citrix NetScaler ADC and GatewayCERT-EU Security Advisories
- CVE-2026-88771: Citrix NetScaler Improper Input Validation VulnerabilityCISA Known Exploited Vulnerabilities
- CVE-2026-88772: Citrix NetScaler Improper Restriction of Operations within the Bounds of a Memory Buffer VulnerabilityCISA Known Exploited Vulnerabilities
- 3 Consulting Myths Debunked by Unit 42 ExpertsPalo Alto Unit 42
- Trust and the enticing consultancy offerCisco Talos Intelligence
- Cisco Identity Services Engine Authentication Bypass VulnerabilitiesCisco PSIRT
- Kwetsbaarheid in WordPress wordt actief misbruikt: update nuNCSC-NL Nieuws & alerts
- Kwetsbaarheid verholpen in WordPressNCSC-NL Security Advisories
- Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software SSL VPN Denial of Service VulnerabilityCisco PSIRT
- 2026-013: Critical Vulnerability in F5 BIG-IP APMCERT-EU Security Advisories
- The Closed Quorum: Inside the first reported autonomous AI C2 implantCisco Talos Intelligence
- From Exposure to Lockdown: How AWS Neutralizes Compromised IAM Credentials through Managed PoliciesPalo Alto Unit 42
- CVE-2026-0296 GlobalProtect App: Improper Certificate Validation Bypass Vulnerability (Severity: MEDIUM)Palo Alto Networks Security Advisories
Botnet-C2
Feodo TrackerBlocklist voor je firewall: feodotracker.abuse.ch