78Articles
8Categories
2025-04-08Date
🚨
CISA Adds Two Known Exploited Vulnerabilities to CatalogCISA has added two new vulnerabilities to its  Known Exploited Vulnerabilities Catalog , based on evidence of active exploitation. CVE-2025-30406 Gladinet CentreStack Use of Hard-coded Cryptographic Key Vulnerability CVE-2025-29824 Microsoft Windows Common Log File System (C…
KEV
πŸ›
CVE-2025-26664 Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability
πŸ›
CVE-2025-26666 Windows Media Remote Code Execution Vulnerability
πŸ›
CVE-2025-26667 Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability
πŸ›
CVE-2025-26681 Win32k Elevation of Privilege Vulnerability
πŸ›
CVE-2025-26680 Windows Standards-Based Storage Management Service Denial of Service Vulnerability
πŸ›
CVE-2025-27470 Windows Standards-Based Storage Management Service Denial of Service Vulnerability
πŸ›
CVE-2025-27474 Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability
πŸ›
CVE-2025-27476 Windows Digital Media Elevation of Privilege Vulnerability
πŸ›
CVE-2025-27475 Windows Update Stack Elevation of Privilege Vulnerability
πŸ›
CVE-2025-27479 Kerberos Key Distribution Proxy Service Denial of Service Vulnerability
πŸ›
CVE-2025-27740 Active Directory Certificate Services Elevation of Privilege Vulnerability
πŸ›
CVE-2025-27744 Microsoft Office Elevation of Privilege Vulnerability
πŸ›
CVE-2025-27743 Microsoft System Center Elevation of Privilege Vulnerability
πŸ›
CVE-2025-29793 Microsoft SharePoint Remote Code Execution Vulnerability
πŸ›
CVE-2025-29792 Microsoft Office Elevation of Privilege Vulnerability
πŸ›
CVE-2025-29794 Microsoft SharePoint Remote Code Execution Vulnerability
πŸ›
CVE-2025-29821 Microsoft Dynamics Business Central Information Disclosure Vulnerability
πŸ›
CVE-2025-29823 Microsoft Excel Remote Code Execution Vulnerability
πŸ›
CVE-2025-24074 Microsoft DWM Core Library Elevation of Privilege Vulnerability
πŸ›
CVE-2025-21203 Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability
πŸ›
CVE-2025-24058 Windows DWM Core Library Elevation of Privilege Vulnerability
πŸ›
CVE-2025-25002 Azure Local Cluster Information Disclosure Vulnerability
πŸ›
CVE-2025-26628 Azure Local Cluster Information Disclosure Vulnerability
πŸ›
CVE-2025-26639 Windows USB Print Driver Elevation of Privilege Vulnerability
πŸ›
CVE-2025-26635 Windows Hello Security Feature Bypass Vulnerability
πŸ›
CVE-2025-26640 Windows Digital Media Elevation of Privilege Vulnerability
πŸ›
CVE-2025-26644 Windows Hello Spoofing Vulnerability
πŸ›
CVE-2025-26649 Windows Secure Channel Elevation of Privilege Vulnerability
πŸ›
CVE-2025-26647 Windows Kerberos Elevation of Privilege Vulnerability
πŸ›
CVE-2025-26651 Windows Local Session Manager (LSM) Denial of Service Vulnerability
πŸ›
CVE-2025-26652 Windows Standards-Based Storage Management Service Denial of Service Vulnerability
πŸ›
CVE-2025-26671 Windows Remote Desktop Services Remote Code Execution Vulnerability
πŸ›
CVE-2025-26674 Windows Media Remote Code Execution Vulnerability
πŸ›
CVE-2025-26675 Windows Subsystem for Linux Elevation of Privilege Vulnerability
πŸ›
CVE-2025-26676 Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability
πŸ›
CVE-2025-26678 Windows Defender Application Control Security Feature Bypass Vulnerability
πŸ›
CVE-2025-27467 Windows Digital Media Elevation of Privilege Vulnerability
πŸ›
CVE-2025-27485 Windows Standards-Based Storage Management Service Denial of Service Vulnerability
πŸ›
CVE-2025-27480 Windows Remote Desktop Services Remote Code Execution Vulnerability
πŸ›
CVE-2025-27482 Windows Remote Desktop Services Remote Code Execution Vulnerability
πŸ›
CVE-2025-27486 Windows Standards-Based Storage Management Service Denial of Service Vulnerability
πŸ›
CVE-2025-27492 Windows Secure Channel Elevation of Privilege Vulnerability
πŸ›
CVE-2025-27490 Windows Bluetooth Service Elevation of Privilege Vulnerability
πŸ›
CVE-2025-27728 Windows Kernel-Mode Driver Elevation of Privilege Vulnerability
πŸ›
CVE-2025-27731 Microsoft OpenSSH for Windows Elevation of Privilege Vulnerability
πŸ›
CVE-2025-27730 Windows Digital Media Elevation of Privilege Vulnerability
πŸ›
CVE-2025-27732 Windows Graphics Component Elevation of Privilege Vulnerability
πŸ›
CVE-2025-27736 Windows Power Dependency Coordinator Information Disclosure Vulnerability
πŸ›
CVE-2025-27739 Windows Kernel Elevation of Privilege Vulnerability
πŸ›
CVE-2025-29803 Visual Studio Tools for Applications and SQL Server Management Studio Elevation of Privilege Vulnerability
πŸ›
CVE-2025-29800 Microsoft AutoUpdate (MAU) Elevation of Privilege Vulnerability
πŸ›
CVE-2025-29802 Visual Studio Elevation of Privilege Vulnerability
πŸ›
CVE-2025-29801 Microsoft AutoUpdate (MAU) Elevation of Privilege Vulnerability
πŸ›
CVE-2025-29804 Visual Studio Elevation of Privilege Vulnerability
πŸ›
CVE-2025-29808 Windows Cryptographic Services Information Disclosure Vulnerability
πŸ›
CVE-2025-29805 Outlook for Android Information Disclosure Vulnerability
πŸ›
CVE-2025-29812 DirectX Graphics Kernel Elevation of Privilege Vulnerability
πŸ›
CVE-2025-29819 Windows Admin Center in Azure Portal Information Disclosure Vulnerability
πŸ›
CVE-2025-29811 Windows Mobile Broadband Driver Elevation of Privilege Vulnerability
πŸ›
CVE-2025-20570 Visual Studio Code Elevation of Privilege Vulnerability
πŸ›
CVE-2025-24060 Microsoft DWM Core Library Elevation of Privilege Vulnerability
πŸ›
CVE-2025-24062 Microsoft DWM Core Library Elevation of Privilege Vulnerability
πŸ›
CVE-2025-26682 ASP.NET Core and Visual Studio Denial of Service Vulnerability
⚠️
Critical Patches Issued for Microsoft Products, April 8, 2025
⚠️
Exploitation of CLFS zero-day leads to ransomware activity
⚠️
Google fixes two Android zero-day bugs actively exploited by hackers
KEV
⚠️
Boulanger - 2,077,078 breached accounts
πŸ”₯
1 billion reasons to protect your identity online
πŸ•΅οΈ
Meet the Deputy CISOs who help shape Microsoft’s approach to cybersecurity
🌐
CTEM + CREM: Aligning Your Cybersecurity Strategy
πŸŽ™οΈ
The AI Fix #45: The Turing test falls to GPT-4.5
πŸ“‘
Sophos Firewall v21.5 early access is now available
πŸ“‘
Russian bots hard at work spreading political unrest on Romania’s internet
πŸ“‘
What happens to your computer when you download pirated software | Kaspersky official blog
πŸ“‘
A small bug in the signature verification of AOSP OTA packages
πŸ“‘
Campaign Targets Amazon EC2 Instance Metadata via SSRF
πŸ“‘
Campaign Targets Amazon EC2 Instance Metadata via SSRF