67Articles
9Categories
2025-04-09Date
🚨
CISA Adds Two Known Exploited Vulnerabilities to CatalogCISA has added two new vulnerabilities to its  Known Exploited Vulnerabilities Catalog , based on evidence of active exploitation. CVE-2024-53197 Linux Kernel Out-of-Bounds Access Vulnerability CVE-2024-53150 Linux Kernel Out-of-Bounds Read Vulnerability These types of vulne…
KEV
πŸ›
CVE-2025-26663 Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability
πŸ›
CVE-2025-26665 Windows upnphost.dll Elevation of Privilege Vulnerability
πŸ›
CVE-2025-26669 Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability
πŸ›
CVE-2025-26668 Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
πŸ›
CVE-2025-26686 Windows TCP/IP Remote Code Execution Vulnerability
πŸ›
CVE-2025-26687 Win32k Elevation of Privilege Vulnerability
πŸ›
CVE-2025-26688 Microsoft Virtual Hard Disk Elevation of Privilege Vulnerability
πŸ›
CVE-2025-27471 Microsoft Streaming Service Denial of Service Vulnerability
πŸ›
CVE-2025-27473 HTTP.sys Denial of Service Vulnerability
πŸ›
CVE-2025-27472 Windows Mark of the Web Security Feature Bypass Vulnerability
πŸ›
CVE-2025-27477 Windows Telephony Service Remote Code Execution Vulnerability
πŸ›
CVE-2025-27478 Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability
πŸ›
CVE-2025-27741 NTFS Elevation of Privilege Vulnerability
πŸ›
CVE-2025-27742 NTFS Information Disclosure Vulnerability
πŸ›
CVE-2025-29824 Windows Common Log File System Driver Elevation of Privilege Vulnerability
πŸ›
CVE-2025-24073 Microsoft DWM Core Library Elevation of Privilege Vulnerability
πŸ›
CVE-2025-21197 Windows NTFS Information Disclosure Vulnerability
πŸ›
CVE-2025-21191 Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability
πŸ›
CVE-2025-21205 Windows Telephony Service Remote Code Execution Vulnerability
πŸ›
CVE-2025-21204 Windows Process Activation Elevation of Privilege Vulnerability
πŸ›
CVE-2025-21221 Windows Telephony Service Remote Code Execution Vulnerability
πŸ›
CVE-2025-21222 Windows Telephony Service Remote Code Execution Vulnerability
πŸ›
CVE-2025-26637 BitLocker Security Feature Bypass Vulnerability
πŸ›
CVE-2025-26641 Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
πŸ›
CVE-2025-26648 Windows Kernel Elevation of Privilege Vulnerability
πŸ›
CVE-2025-26670 Lightweight Directory Access Protocol (LDAP) Client Remote Code Execution Vulnerability
πŸ›
CVE-2025-26672 Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability
πŸ›
CVE-2025-26673 Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability
πŸ›
CVE-2025-26679 RPC Endpoint Mapper Service Elevation of Privilege Vulnerability
πŸ›
CVE-2025-27469 Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability
πŸ›
CVE-2025-27484 Windows Universal Plug and Play (UPnP) Device Host Elevation of Privilege Vulnerability
πŸ›
CVE-2025-27481 Windows Telephony Service Remote Code Execution Vulnerability
πŸ›
CVE-2025-27483 NTFS Elevation of Privilege Vulnerability
πŸ›
CVE-2025-27487 Remote Desktop Client Remote Code Execution Vulnerability
πŸ›
CVE-2025-27489 Azure Local Elevation of Privilege Vulnerability
πŸ›
CVE-2025-27491 Windows Hyper-V Remote Code Execution Vulnerability
πŸ›
CVE-2025-27727 Windows Installer Elevation of Privilege Vulnerability
πŸ›
CVE-2025-27733 NTFS Elevation of Privilege Vulnerability
πŸ›
CVE-2025-27735 Windows Virtualization-Based Security (VBS) Security Feature Bypass Vulnerability
πŸ›
CVE-2025-27737 Windows Security Zone Mapping Security Feature Bypass Vulnerability
πŸ›
CVE-2025-27738 Windows Resilient File System (ReFS) Information Disclosure Vulnerability
πŸ›
CVE-2025-29809 Windows Kerberos Security Feature Bypass Vulnerability
πŸ›
CVE-2025-29810 Active Directory Domain Services Elevation of Privilege Vulnerability
⚠️
Critical Security Updates and Identity Management Insights
⚠️
Industrial-strength April Patch Tuesday covers 135 CVEs
KEV
⚠️
Patch Tuesday, April 2025 Edition
KEV
⚠️
How cyberattackers exploit domain controllers using ransomware
⚠️
News alert: Gcore launches Super Transit – accelerated DDoS protection to safeguard enterprises
⚠️
GetShared phishing | Kaspersky official blog
⚠️
Google fixes two Android zero-day bugs actively exploited by hackers
KEV
⚠️
Risky Business #787 -- Trump fires NSA director, CISA cuts inbound
πŸ“’
Senator puts hold on Trump’s nominee for CISA director, citing telco security β€˜cover up’
πŸ”₯
Trend Vision Oneβ„’ Now Supports Azure vTAP
πŸ”₯
Qraved - 984,519 breached accounts
πŸ”₯
So your friend has been hacked: Could you be next?
πŸ•΅οΈ
How to Leak to a Journalist
πŸ•΅οΈ
Stopping attacks against on-premises Exchange Server and SharePoint Server with AMSI
πŸ•΅οΈ
Creating a Large Text File Viewer by Vibe Coding with Visual Studio Code, Cline, OpenRouter, and Claude 3.7
πŸ•΅οΈ
Trends-To-Watch Q&A: The future of edgeβ€”will decentralization ever be more than a talking point?
πŸ•΅οΈ
New Frontier of GenAI Threats: A Comprehensive Guide to Prompt Attacks
πŸ•΅οΈ
What are You Working on Wednesday
🌐
Court document reveals locations of WhatsApp victims targeted by NSO spyware
🌐
Governments identify dozens of Android apps bundled with spyware
πŸŽ™οΈ
Smashing Security podcast #412: Signalgate sucks, and the quandary of quishing
πŸ“‘
Lovable AI Found Most Vulnerable to VibeScamming β€” Enabling Anyone to Build Live Scam Pages
πŸ“‘
OpenAI helps spammers plaster 80,000 sites with messages that bypassed filters