Fortinet has recently released patches to address a critical vulnerability in its FortiSwitch product line, identified as CVE-2024-48887. This flaw, with a CVSS score of […]
Day: April 9, 2025
CISA Urges Immediate Patching of Exploited CentreStack and Windows Zero-Day Vulnerabilities
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent call for organizations to address two critical zero-day vulnerabilities that have been actively […]
OCC Discloses Major Email Breach Impacting 150,000 Communications
The Office of the Comptroller of the Currency (OCC), a bureau within the U.S. Department of the Treasury responsible for regulating and supervising national banks, […]
Critical Windows CLFS Zero-Day Vulnerability Exploited by Ransomware Group
A significant security flaw has been identified in the Windows Common Log File System (CLFS), designated as CVE-2025-29824. This zero-day vulnerability is currently being actively […]
Critical Chrome Vulnerability Exposes Users to Remote Code Execution
Google has recently issued an urgent security update for its Chrome browser, addressing a critical Use After Free (UAF) vulnerability within the Site Isolation feature. […]
Critical Vulnerability in AWS Systems Manager Plugin Allows Arbitrary Code Execution
A significant security flaw has been identified in the AWS Systems Manager (SSM) Agent, potentially enabling attackers to execute arbitrary code with elevated privileges. This […]
Critical Authentication Bypass Vulnerability in CrushFTP Exploited in Active Attacks
The Cybersecurity and Infrastructure Security Agency (CISA) has recently added a critical authentication bypass vulnerability in CrushFTP, a widely used file transfer application, to its […]
Over 5,000 Ivanti Connect Secure Devices Remain Vulnerable to Critical RCE Exploit
Recent cybersecurity assessments have revealed that over 5,113 Ivanti Connect Secure (ICS) VPN appliances are still unpatched and susceptible to active exploitation of a critical […]
Critical Kibana Vulnerability (CVE-2025-25012) Exposes Systems to Code Execution
Elastic has recently addressed a critical security vulnerability in Kibana, identified as CVE-2025-25012, which could allow authenticated attackers to execute arbitrary code on affected systems. […]
NCSC Issues Urgent Warning on MOONSHINE and BADBAZAAR Malware Targeting Global Communities
The United Kingdom’s National Cyber Security Centre (NCSC), in collaboration with international cybersecurity agencies, has issued a critical advisory concerning the proliferation of two sophisticated […]