# 0Day: CVE & Exploit Alerts — DevSecOps & Vulnerability Feed

> Real-time security alerts for your technology stack, filtered for relevance. (iPhone/iPad app by Richard Lous.)

- Source: https://appshunter.io/ios/app/0day-cve-and-exploit-alerts/id6761655372 (this page in markdown: same URL + `.md`)
- Developer: [Richard Lous](https://appshunter.io/developer/1890695617)
- Category: Developer Tools, Productivity
- Price: Free with in-app purchases
- Rating: 5.00/5 from 2 App Store ratings · 3 written reviews indexed
- Age rating: 4+
- Requires: iOS 18.0 · 10 MB
- Languages: American English
- Released: 2026-04-15
- Data updated: 2026-08-19
- Monetization: freemium
- User reviews in markdown: https://appshunter.io/ios/app/0day-cve-and-exploit-alerts/id6761655372/reviews.md

## What is 0Day?

Most security feeds bury you in CVEs that have nothing to do with what you ship. 0Day cuts through that. Zero-days, supply chain attacks, compromised packages, active exploits: filtered to your exact stack, the moment they break.

Pick your stack once during onboarding: npm, PyPI, Docker, Kubernetes, React, Rails, OpenSSL, whatever you use and the feed shows you only what touches your tech. No noise. No irrelevant advisories. Just what matters to you.

The goal is lead time. Know about a compromised package, a poisoned build pipeline, or an actively exploited CVE before it reaches your CI, your production deployment, or your customers. Before the news cycle. Before the stragglers patch. Before you're the one scrambling at 2am.

WHY 0DAY

- Privacy-first — no analytics, no tracking, no third-party SDKs
- Early warnings before the news cycle — the moment a threat breaks, you know
- Stack-aware filtering — see only threats that hit the tools you use
- Multi-source corroboration — duplicates merged, sources ranked by tier
- Curated, not firehose — every alert is tied to a specific component
- Full archive — searchable history of every threat that hit your stack

HOW IT WORKS

Every item in the feed goes through a three-stage lifecycle so you can tell the difference between "we're watching this" and "this is real, act now":

CANDIDATE — A single source has reported an incident. In the pipeline, being correlated, not yet corroborated.

EARLY WARNING — Either an authoritative research outlet flagged it, or a second independent source has confirmed the same incident. Pushed to your device immediately — this is the lead time the product is built for.

CONFIRMED — Two or more authoritative sources agree, or three independent sources total. High-confidence state you can act on without double-checking.

INSIDE THE FEED

Each alert gives you a plain-English summary, affected components with version ranges, recommended action, CVE and GHSA identifiers with tappable links to the upstream advisories, and a timeline of when each source reported the incident.

PRIVACY

We collect only what we need to run the service: your email for sign-in, your stack selections, your notification preferences, and your device token for push delivery. No analytics. No crash reporting SDKs. No advertising identifiers. No cross-app tracking. All data is stored in the European Union on AWS infrastructure. You can delete your account and all associated data instantly from Settings.

SUBSCRIPTION

0Day Pro unlocks the full experience: early warning alerts, push notifications, full archive access, remediation guidance, and stack filtering. All new users get a free 14-day trial — no payment required to get started. After the trial, subscribe to keep full access. Offered as a monthly or annual subscription. Payment is charged to your Apple ID at confirmation of purchase. Subscription auto-renews unless cancelled at least 24 hours before the end of the current period. Manage or cancel anytime in iOS Settings → Apple ID → Subscriptions.

Terms of Use: https://0day.lous.nl/terms
Privacy Policy: https://0day.lous.nl/privacy

## Key features

- Zero-day vulnerability alerts
- Supply chain attack notifications
- Compromised package warnings
- Stack-aware filtering
- Early warning system
- Push notifications
- Full alert archive

## Pricing and in-app purchases

Base price: Free.

**Subscriptions**

| Subscription | Price | Period |
| --- | --- | --- |
| 0Day Pro | $29.99 | per year |
| 0Day Pro | $3.99 | per month |


## Recent user reviews (3 of 3)

All indexed reviews: https://appshunter.io/ios/app/0day-cve-and-exploit-alerts/id6761655372/reviews.md

### 5/5 — Must-Have for Cybersecurity News

*2026-05-27*

Fast CVE alerts with clean filtering and useful exploit tracking.

**Developer response:** We will try to improve the exploit tracking even better with several new insights

### 5/5 — This is so Awesome

*2026-05-27*

All in one place and the push notification for first time felt really useful and not pushy. Always updated on my full stack, real time. Just too good

**Developer response:** Thank you for your review and feedback.

### 5/5 — Great exploit feed

*2026-05-13*

Keeps me well informed on what’s going on in the security exploit field. Accurate intel.

**Developer response:** Thanks!

## Frequently asked questions about 0Day

### What is 0Day?

0Day provides real-time alerts for zero-day vulnerabilities, supply chain attacks, and compromised packages. It filters these alerts to only show threats relevant to your specific technology stack, giving you lead time before they become widely known.

### How does 0Day filter alerts?

During onboarding, you select the technologies you use (e.g., npm, PyPI, Docker, Kubernetes). The app then filters all incoming security advisories to display only those that directly impact your chosen stack, eliminating irrelevant noise.

### What are the different alert stages in 0Day?

Alerts go through three stages: CANDIDATE (single source reported), EARLY WARNING (corroborated by a second source or authoritative outlet), and CONFIRMED (high-confidence, multiple authoritative sources agree). Early Warning alerts are pushed immediately.

### Does 0Day have ads?

No, 0Day does not contain advertisements. The app is privacy-first and does not use analytics, tracking, or third-party SDKs, ensuring a clean user experience.

### What information is included in each alert?

Each alert provides a plain-English summary, affected components with version ranges, recommended actions, CVE and GHSA identifiers with links, and a timeline of when sources reported the incident.

### How much does 0Day cost?

0Day is free to download and offers a 14-day free trial of 0Day Pro. After the trial, a monthly or annual subscription is required to access premium features like early warning alerts, push notifications, and full archive access.

### What devices does 0Day support?

Based on the provided data, 0Day is currently supported on iPhone devices.

### How often is 0Day updated?

The app was last updated on June 22, 2026, indicating regular maintenance and updates. The latest version is 1.0.8.

## Version history (last 5 releases)

### 1.1.0 — 2026-07-21

- Updated Terms and Privacy URLs
- General bug fixes

### 1.0.8 — 2026-06-22

- Several bug fixes to improve analytics.
- General visual updates within the app.
- Preparation for GitHub integration.

### 1.0.7 — 2026-05-20

- Analytics: Added pseudonymous product analytics via PostHog (EU-hosted, Frankfurt). Tracks conversion funnel events (paywall views,plan selection, purchases), feed filter changes, and alert opens. No advertising identifiers, no cross-app tracking.
- Privacy policy updated: Effective 20 May 2026, PostHog analytics data collection (pseudonymous usage events, EU Cloud, never linked to name or email).
- Feedback and About is added under Profile
- Several bug fixes to improve latency issues.
- General visual updates within the app.

### 1.0.6 — 2026-05-18

Free trial fix: New users on a 14-day trial no longer see the paywall incorrectly after sign-up.
Onboarding improvements: Notification setup is clearer, with permission confirmation before you continue
Paywall polish: Cleaner layout with an easier path to continue on the free tier

### 1.0.5 — 2026-05-14

- Support for 14 days trial
- Updated onboarding for trial period
- Limitations after 14 days of trial but can still use the app in free mode
- Improved backend and reduced loading time
- Updated push notifications for multiple threats in short period of time

---

*Data collected daily from the US App Store and indexed by [AppsHunter](https://appshunter.io/). User reviews are verbatim App Store reviews. Ratings, prices and chart positions refresh continuously; this snapshot is from 2026-08-19.*
