A significant security flaw has been identified in Microsoft SQL Server, designated as CVE-2025-49719. This vulnerability allows unauthorized attackers to access sensitive data over network […]
Month: July 2025
TapTrap: A New Android Vulnerability Allowing Malicious Apps to Bypass Permissions and Execute Harmful Actions
Security researchers at TU Wien have identified a novel attack vector named TapTrap, which enables malicious Android applications to circumvent the operating system’s permission system […]
Apache Tomcat Vulnerabilities Expose Systems to Denial-of-Service Attacks
Apache Tomcat, a widely used open-source Java servlet container, has recently addressed three critical vulnerabilities that could allow attackers to execute denial-of-service (DoS) attacks, potentially […]
Critical SQL Injection Vulnerability in FortiWeb Threatens Web Application Security
A significant security flaw has been identified in Fortinet’s FortiWeb web application firewalls, potentially allowing authenticated attackers with administrative privileges to execute unauthorized SQL commands […]
Critical Vulnerability in Citrix Windows Virtual Delivery Agent Allows SYSTEM Privilege Escalation
A significant security vulnerability, identified as CVE-2025-6759, has been discovered in Citrix’s Windows Virtual Delivery Agent (VDA), a core component of Citrix Virtual Apps and […]
SparkKitty Malware Targets iOS and Android Users to Steal Personal Photos
A sophisticated Trojan malware known as SparkKitty has been actively targeting iOS and Android devices since early 2024, infiltrating both official app stores and untrusted […]
Splunk Releases Critical Security Updates to Address Third-Party Package Vulnerabilities
Splunk has recently issued critical security updates to remediate multiple vulnerabilities identified in third-party packages utilized within its Enterprise versions. These updates, released on July […]
Critical Windows BitLocker Vulnerability Exposes Encrypted Data
A significant security flaw, identified as CVE-2025-48818, has been discovered in Windows BitLocker, allowing attackers with physical access to bypass the encryption feature. This vulnerability, […]
Chinese State-Sponsored Hackers Exploit Microsoft Exchange Servers to Steal COVID-19 Research Data
In a significant cybersecurity breach, Chinese state-sponsored hackers have exploited vulnerabilities in Microsoft Exchange servers to steal critical COVID-19 research from American universities. This operation, […]
Microsoft 365’s PDF Export Vulnerability Exposes Sensitive Server Data
A significant security flaw was recently identified in Microsoft 365’s Export to PDF functionality, potentially allowing unauthorized access to sensitive server-side data. This Local File […]