In early October 2025, cybersecurity experts from Google Threat Intelligence Group (GTIG) and Mandiant uncovered a series of sophisticated cyberattacks targeting Oracle E-Business Suite (EBS) […]
Year: 2025
Critical SQL Injection Vulnerability in FreePBX Exploited for Database Manipulation and Remote Code Execution
A critical security flaw has been identified in FreePBX, a widely used open-source web-based graphical user interface for managing Asterisk VoIP systems. This vulnerability, designated […]
CrowdStrike Falcon Windows Sensor Vulnerabilities Allow Arbitrary File Deletion
CrowdStrike has recently identified and addressed two medium-severity vulnerabilities within its Falcon sensor for Windows, designated as CVE-2025-42701 and CVE-2025-42706. These flaws could potentially enable […]
Discord Data Breach Exposes Sensitive User Information Amid Extortion Attempt
In a significant cybersecurity incident, Discord, the widely used communication platform, has become the target of an extortion attempt following a data breach at one […]
Microsoft 365 Outage Disrupts Global Access to Teams and Exchange Online
On October 8, 2025, a significant outage affected Microsoft 365 services, including Microsoft Teams, Exchange Online, and the Microsoft 365 admin center, leaving users worldwide […]
Cybercriminals Exploit CSS to Evade Email Security Through Hidden Text Salting
In the ever-evolving landscape of cyber threats, a sophisticated technique known as hidden text salting has emerged, posing significant challenges to email security systems. This […]
Unveiling APT35: Structure, Tools, and Espionage Tactics of the IRGC-Linked Cyber Threat Group
Since its emergence in the mid-2010s, APT35, also known as Charming Kitten, has established itself as a formidable cyber threat actor. Linked to Iran’s Islamic […]
GitLab Releases Critical Security Updates to Address Multiple Vulnerabilities
GitLab has recently issued critical security updates for both its Community Edition (CE) and Enterprise Edition (EE), introducing versions 18.4.2, 18.3.4, and 18.2.8. These updates […]
Critical Vulnerability in Linux Kernel’s KSMBD Module Allows Local Privilege Escalation
A significant security flaw has been identified in the Linux kernel’s `ksmbd` module, potentially enabling authenticated local users to escalate their privileges to root level. […]
The Unseen Threat: How Employee Use of ChatGPT Compromises Corporate Data Security
In the rapidly evolving digital landscape, generative AI tools like ChatGPT have become integral to workplace productivity. However, a recent study has unveiled a significant […]