📧 info@ciso.sa | 📱 +966550939344 | Riyadh, Kingdom of Saudi Arabia
🔧 Scheduled Maintenance — Saturday 2:00-4:00 AM AST. Some features may be temporarily unavailable.    ●   
💎
Pro Plan 50% Off Unlock all AI features, unlimited reports, and priority support. Upgrade
Search Center
ESC to close
Global insider Education HIGH 4h Global supply_chain Software Development and Technology HIGH 9h Global apt Government/Critical Infrastructure CRITICAL 11h Global vulnerability Enterprise Software / Data Analytics CRITICAL 12h Global vulnerability Artificial Intelligence and Technology HIGH 15h Global general Technology and Artificial Intelligence MEDIUM 18h Global general Technology and Artificial Intelligence HIGH 19h Global vulnerability Higher Education CRITICAL 1d Global data_breach Government HIGH 1d Global supply_chain Software Development and Open Source Communities CRITICAL 1d Global insider Education HIGH 4h Global supply_chain Software Development and Technology HIGH 9h Global apt Government/Critical Infrastructure CRITICAL 11h Global vulnerability Enterprise Software / Data Analytics CRITICAL 12h Global vulnerability Artificial Intelligence and Technology HIGH 15h Global general Technology and Artificial Intelligence MEDIUM 18h Global general Technology and Artificial Intelligence HIGH 19h Global vulnerability Higher Education CRITICAL 1d Global data_breach Government HIGH 1d Global supply_chain Software Development and Open Source Communities CRITICAL 1d Global insider Education HIGH 4h Global supply_chain Software Development and Technology HIGH 9h Global apt Government/Critical Infrastructure CRITICAL 11h Global vulnerability Enterprise Software / Data Analytics CRITICAL 12h Global vulnerability Artificial Intelligence and Technology HIGH 15h Global general Technology and Artificial Intelligence MEDIUM 18h Global general Technology and Artificial Intelligence HIGH 19h Global vulnerability Higher Education CRITICAL 1d Global data_breach Government HIGH 1d Global supply_chain Software Development and Open Source Communities CRITICAL 1d
📅 Daily Security Digest — Monday, February 23, 2026

🇸🇦 Saudi Cyber Daily Digest

All security vulnerabilities, threats, and news aggregated today from trusted sources — continuously updated

Monday, February 23, 2026 Today
3 CVEs
36 Threats
14 News
1 Critical
🛡 Security Vulnerabilities (CVE)
3 vulnerabilities
CVE-2026-2588
Crypt::NaCl::Sodium Integer Overflow on 32-bit Systems
11:14 KSA
CRITICAL CVSS 9.1 CWE-190
Crypt::NaCl::Sodium versions through 2.001 for Perl has an integer overflow flaw on 32-bit systems. Sodium.xs casts a STRLEN (size_t) to unsigned long long when passing a length pointer to libsodium functions. On 32-bit systems size_t is typically 32-bits while an unsigned long…
CVE-2026-2958
A security vulnerability has been detected in D-Link DWR-M960 1.01.07. Affected is the function sub_457C5C of the file /
11:14 KSA
HIGH CVSS 8.8 CWE-119
A security vulnerability has been detected in D-Link DWR-M960 1.01.07. Affected is the function sub_457C5C of the file /boafrm/formWsc. Such manipulation of the argument save_apply leads to stack-based buffer overflow. The attack may be launched remotely. The exploit has been dis…
CVE-2026-2959
A vulnerability was detected in D-Link DWR-M960 1.01.07. Affected by this vulnerability is the function sub_44E0F8 of th
11:14 KSA
HIGH CVSS 8.8 CWE-119
A vulnerability was detected in D-Link DWR-M960 1.01.07. Affected by this vulnerability is the function sub_44E0F8 of the file /boafrm/formNewSchedule. Performing a manipulation of the argument url results in stack-based buffer overflow. Remote exploitation of the attack is possi…
⚠️ Threat Intelligence
36 threats
Bug Bounty
05:05 KSA
HIGH Cloud Misconfiguration Wave
Multiple exposed S3 buckets and Azure storage accounts found across Saudi organizations, revealing PII, financial records, and internal documents to the public internet.
SIEM Detection
21:48 KSA
HIGH Credential Stuffing Campaign
Large-scale credential stuffing attacks targeting Saudi e-commerce platforms and loyalty programs using leaked credentials from international breaches.
GitHub Advisory
21:48 KSA
HIGH Supply Chain Compromise - npm packages
Malicious npm packages detected targeting Saudi developers with credential-stealing capabilities embedded in popular dependency names through typosquatting.
SIEM Detection
21:47 KSA
HIGH Credential Stuffing Campaign
Large-scale credential stuffing attacks targeting Saudi e-commerce platforms and loyalty programs using leaked credentials from international breaches.
GitHub Advisory
21:47 KSA
HIGH Supply Chain Compromise - npm packages
Malicious npm packages detected targeting Saudi developers with credential-stealing capabilities embedded in popular dependency names through typosquatting.
TI
14:38 KSA
HIGH Phishing Campaign
Sophisticated spear-phishing targeting government officials
TI
14:38 KSA
CRITICAL Ransomware
Active ransomware campaign targeting Saudi banking infrastructure
TI
14:38 KSA
CRITICAL Zero-Day Exploit
Critical zero-day in major cloud provider affecting KSA organizations
TI
14:38 KSA
MEDIUM DDoS Attack
Distributed denial of service targeting Saudi telecom operators
TI
14:38 KSA
HIGH Supply Chain
Supply chain compromise affecting energy sector vendors
Saudi CERT
14:38 KSA
CRITICAL APT41 Banking Trojan
Advanced persistent threat group targeting Saudi financial institutions with custom banking malware through spear-phishing campaigns impersonating SAMA communications.
NCA Advisory
14:38 KSA
CRITICAL CVE-2026-1234 Zero-Day Exploit
Active exploitation of zero-day vulnerability in government web application frameworks. Remote code execution with no authentication required. Patches pending from vendor.
Threat Intelligence
14:38 KSA
CRITICAL DarkSide Ransomware v3
New ransomware variant targeting Saudi oil & gas sector with double extortion techniques, encrypting OT systems and threatening data exposure on dark web leak sites.
GitHub Advisory
14:38 KSA
HIGH Supply Chain Compromise - npm packages
Malicious npm packages detected targeting Saudi developers with credential-stealing capabilities embedded in popular dependency names through typosquatting.
SIEM Detection
14:38 KSA
HIGH Credential Stuffing Campaign
Large-scale credential stuffing attacks targeting Saudi e-commerce platforms and loyalty programs using leaked credentials from international breaches.
Bug Bounty
14:38 KSA
HIGH Cloud Misconfiguration Wave
Multiple exposed S3 buckets and Azure storage accounts found across Saudi organizations, revealing PII, financial records, and internal documents to the public internet.
Passive DNS
14:38 KSA
MEDIUM DNS Hijacking Campaign
DNS hijacking attacks redirecting Saudi government and education domains to phishing infrastructure hosted in Eastern Europe.
Honeypot Network
14:38 KSA
MEDIUM IoT Botnet Targeting Smart Cities
New IoT botnet variant scanning Saudi smart city infrastructure for default credentials on surveillance cameras and building management systems.
TI
14:38 KSA
HIGH Supply Chain
Supply chain compromise affecting energy sector vendors
TI
14:38 KSA
MEDIUM DDoS Attack
Distributed denial of service targeting Saudi telecom operators
TI
14:38 KSA
CRITICAL Zero-Day Exploit
Critical zero-day in major cloud provider affecting KSA organizations
TI
14:38 KSA
HIGH Phishing Campaign
Sophisticated spear-phishing targeting government officials
TI
14:38 KSA
CRITICAL Ransomware
Active ransomware campaign targeting Saudi banking infrastructure
SIEM Detection
14:35 KSA
HIGH Credential Stuffing Campaign
Large-scale credential stuffing attacks targeting Saudi e-commerce platforms and loyalty programs using leaked credentials from international breaches.
Saudi CERT
14:35 KSA
CRITICAL APT41 Banking Trojan
Advanced persistent threat group targeting Saudi financial institutions with custom banking malware through spear-phishing campaigns impersonating SAMA communications.
NCA Advisory
14:35 KSA
CRITICAL CVE-2026-1234 Zero-Day Exploit
Active exploitation of zero-day vulnerability in government web application frameworks. Remote code execution with no authentication required. Patches pending from vendor.
Threat Intelligence
14:35 KSA
CRITICAL DarkSide Ransomware v3
New ransomware variant targeting Saudi oil & gas sector with double extortion techniques, encrypting OT systems and threatening data exposure on dark web leak sites.
GitHub Advisory
14:35 KSA
HIGH Supply Chain Compromise - npm packages
Malicious npm packages detected targeting Saudi developers with credential-stealing capabilities embedded in popular dependency names through typosquatting.
Bug Bounty
14:35 KSA
HIGH Cloud Misconfiguration Wave
Multiple exposed S3 buckets and Azure storage accounts found across Saudi organizations, revealing PII, financial records, and internal documents to the public internet.
Passive DNS
14:35 KSA
MEDIUM DNS Hijacking Campaign
DNS hijacking attacks redirecting Saudi government and education domains to phishing infrastructure hosted in Eastern Europe.
Honeypot Network
14:35 KSA
MEDIUM IoT Botnet Targeting Smart Cities
New IoT botnet variant scanning Saudi smart city infrastructure for default credentials on surveillance cameras and building management systems.
TI
14:35 KSA
CRITICAL Ransomware
Active ransomware campaign targeting Saudi banking infrastructure
TI
14:35 KSA
HIGH Supply Chain
Supply chain compromise affecting energy sector vendors
TI
14:35 KSA
MEDIUM DDoS Attack
Distributed denial of service targeting Saudi telecom operators
TI
14:35 KSA
CRITICAL Zero-Day Exploit
Critical zero-day in major cloud provider affecting KSA organizations
TI
14:35 KSA
HIGH Phishing Campaign
Sophisticated spear-phishing targeting government officials
📰 Cybersecurity News
14 articles
NCA Issues Emergency Advisory on Critical Infrastructure
13:35 KSA
The National Cybersecurity Authority has issued an emergency advisory regarding vulnerabilities in critical infrastructure systems.
Major Ransomware Attack Disrupts Saudi Healthcare Provider
12:35 KSA
A sophisticated ransomware campaign has targeted one of Saudi Arabia's largest healthcare networks, affecting multiple hospitals across the Eastern Province.
Saudi Arabia Ranks #1 in GCI Cybersecurity Index
11:35 KSA
Saudi Arabia has achieved the top ranking in the Global Cybersecurity Index, reflecting Vision 2030 commitments.
NCA Releases Updated ECC 2026 Controls Framework
09:35 KSA
The National Cybersecurity Authority has published version 3.0 of the Essential Cybersecurity Controls with significant updates to cloud and AI governance.
New SAMA Circular on Third-Party Risk Management
09:35 KSA
SAMA releases new requirements for financial institutions regarding third-party risk management and vendor assessments.
PDPL Authority Announces First Major Penalty
06:35 KSA
The PDPL enforcement authority has announced its first significant penalty against a major organization for data protection violations.
Saudi Banks Urged to Enhance API Security After Wave of Attacks
14:35 KSA
SAMA issues advisory to financial institutions regarding increased API exploitation attempts targeting mobile banking applications.
Saudi Arabia Ranks #1 in Global Cybersecurity Index 2025
14:35 KSA
For the second consecutive year, the Kingdom tops the ITU Global Cybersecurity Index, reflecting Vision 2030 digital transformation success.
PDPL Compliance Deadline Approaches for SMEs
14:35 KSA
Small and medium enterprises face a March 2026 deadline to demonstrate full compliance with the Saudi Personal Data Protection Law.
New Phishing Campaign Targets Saudi Government Employees
14:35 KSA
A coordinated spear-phishing campaign impersonating official government portals has been detected targeting Saudi public sector employees.
NEOM Cybersecurity Hub Attracts Global Talent
14:35 KSA
NEOM's dedicated cybersecurity innovation center has attracted over 200 international cybersecurity experts in its first year of operation.
Critical Vulnerability Found in Popular Saudi Banking App
14:35 KSA
Researchers disclosed a critical authentication bypass vulnerability in a widely-used Saudi mobile banking application.
Saudi Cybersecurity Workforce Grows 40% in 2025
14:35 KSA
The Kingdom's cybersecurity workforce reached 30,000 professionals, a 40% increase driven by NCA training programs and university partnerships.
SAMA Mandates Real-Time Fraud Detection for All Banks
14:35 KSA
New SAMA circular requires all licensed banks to implement AI-powered real-time fraud detection systems by Q3 2026.

This digest is updated automatically every day — Last updated: Monday, February 23, 2026
CVE Archive · Threats · News

📣 Found this valuable?
Share it with your cybersecurity network
in LinkedIn 𝕏 X / Twitter 💬 WhatsApp ✈ Telegram
🍪 Privacy Preferences
CISO Consulting — Compliant with Saudi Personal Data Protection Law (PDPL)
We use cookies and similar technologies to provide the best experience on our platform. You can choose which types you accept.
🔒
Essential Always On
Required for the website to function properly. Cannot be disabled.
📋 Sessions, CSRF tokens, authentication, language preferences
📊
Analytics
Help us understand how visitors use the site and improve performance.
📋 Page views, session duration, traffic sources, performance metrics
⚙️
Functional
Enable enhanced features like content personalization and preferences.
📋 Dark/light theme, font size, custom dashboards, saved filters
📣
Marketing
Used to deliver content and ads relevant to your interests.
📋 Campaign tracking, retargeting, social media analytics
Privacy Policy →
CISO AI Assistant
Ask anything · Documents · Support
🔐

Introduce Yourself

Enter your details to access the full assistant

Your info is private and never shared
💬
CyberAssist
Online · responds in seconds
5 / 5
🔐 Verify Your Identity

Enter your email to receive a verification code before submitting a support request.

Enter to send · / for commands 0 / 2000
CISO AI · Powered by Anthropic Claude
✦ Quick Survey Help Us Improve CISO Consulting Your feedback shapes the future of our platform — takes less than 2 minutes.
⚠ Please answer this question to continue

How would you rate your overall experience with our platform?

Rate from 1 (poor) to 5 (excellent)

🎉
Thank you!
Your response has been recorded.