106Articles
10Categories
2025-08-13Date
๐Ÿšจ
CISA Adds Two Known Exploited Vulnerabilities to CatalogCISA has added two new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog , based on evidence of active exploitation.  CVE-2025-8875 N-able N-central Insecure Deserialization Vulnerability CVE-2025-8876 N-able N-central Command Injection Vulnerability Theseโ€ฆ
KEV
๐Ÿ›
August Patch Tuesday: Authentication hole in Windows Server 2025 now has a fix
KEV
๐Ÿ›
Citrix NetScaler flaw likely has global impact
KEV
๐Ÿ›
Microsoft Teams RCE Flaw Allows Hackers to Read, Modify, and Delete Messages
๐Ÿ›
New Zero-Click NTLM Credential Leak Exploit Bypasses Microsoft Patch for CVE-2025-24054
๐Ÿ›
FortiWeb Authentication Bypass Vulnerability Allows Logins as Any Existing User
๐Ÿ›
Critical FortiSIEM Vulnerability Allows Attackers to Execute Malicious Commands, PoC Found in the Wild
๐Ÿ›
CVE-2017-11882 Will Never Die, (Wed, Aug 13th)
๐Ÿ›
GitHub Copilot RCE Vulnerability via Prompt Injection Enables Full System Compromise
๐Ÿ›
Windows Remote Desktop Services Flaw Allows Network-Based Denial-of-Service Attacks
๐Ÿ›
Microsoft Exchange Server Flaws Allow Network-Based Spoofing and Data Tampering
๐Ÿ›
Microsoft Office Vulnerabilities Allow Attackers to Execute Remote Code
๐Ÿ›
Hackers exploit unpatched Erlang/OTP to crack OT firewalls
๐Ÿ›
Fortinet Warns About FortiSIEM Vulnerability (CVE-2025-25256) With In-the-Wild Exploit Code
๐Ÿ›
New ransomware โ€˜Charonโ€™ uses DLL sideloading to breach critical infrastructure
๐Ÿ›
Zoom and Xerox Release Critical Security Updates Fixing Privilege Escalation and RCE Flaws
โš ๏ธ
Get Pwned, Get Local Advice From a Trusted Gov Source
โš ๏ธ
Schwachstellen managen: Die besten Vulnerability-Management-Tools
โš ๏ธ
Adobe Patches Over 60 Vulnerabilities Across 13 Products
โš ๏ธ
Digital siege puts Taiwanโ€™s resilience to the test: Taipei bets on transparency, civil society as China increases cyber attacks
โš ๏ธ
Digital siege puts Taiwanโ€™s resilience to the test: Taipei bets on transparency, civil society as China increases cyber attacks
โš ๏ธ
Urgent Vulnerabilities: Patching Exchange, Citrix, and Fortinet
โš ๏ธ
Microsoft August 2025 Patch Tuesday Fixes Kerberos Zero-Day Among 111 Total New Flaws
โš ๏ธ
Defending Trust & Reputation as CISOs and Leaders Prepare Their AI Strategy - Santosh ... - BSW #408
โš ๏ธ
Multiple GitLab Vulnerabilities Allow Account Takeover and Stored XSS Attacks
โš ๏ธ
Web DDoS and App Exploitation Attacks Surge in First Half of 2025
โš ๏ธ
Silicon under siege: Nation-state hackers target semiconductor supply chains
โš ๏ธ
Serbia is secretly expanding Chinese surveillance system despite EU warnings and local opposition
โš ๏ธ
Serbia is secretly expanding Chinese surveillance system despite EU warnings and local opposition
โš ๏ธ
ShinyHunters May Have Teamed Up With Scattered Spider in Salesforce Attack Campaigns
โš ๏ธ
Over 3,000 NetScaler devices left unpatched against CitrixBleed 2 bug
โš ๏ธ
He Almost Got Firedโ€ฆ for Having Nmap Installed ๐Ÿ˜ฑ
โš ๏ธ
Hackers Deploy Dedicated Phishlet for FIDO Authentication Downgrade Attacks
โš ๏ธ
2 SharePoint Zero Daysโ€ฆ AFTER the Patch?! ๐Ÿ˜ณ
โš ๏ธ
Spike in Fortinet VPN brute-force attacks raises zero-day concerns
โš ๏ธ
The Altair 8800: Cybersecurityโ€™s Grandfather? #throwbacktech
โš ๏ธ
Adobeโ€™s August 2025 Patch Tuesday Fixes 60 Vulnerabilities Across Multiple Products
โš ๏ธ
The Creepy New AI Pricing Tactic No One Told You About
โš ๏ธ
Googleโ€™s Android pKVM Framework Achieves SESIP Level 5 Certification
โš ๏ธ
They Hacked an AI Assistant With Markdown ๐Ÿ˜ฑ
โš ๏ธ
Emerging AI-Driven Phishing Trends Reshape Cybercrime Tactics
โš ๏ธ
Fortinet warns of FortiSIEM pre-auth RCE flaw with exploit in the wild
โš ๏ธ
That 16 Billion Password Story (AKA "Data Troll")
โš ๏ธ
Russian APT group Curly COMrades employs novel backdoor and persistence tricks
โš ๏ธ
Risky Business #802 -- Accessing internal Microsoft apps with your Hotmail creds
๐Ÿ“‹
Microsoft Patches Over 100 Vulnerabilities
๐Ÿ“‹
Chrome Security Update Fixes High-Severity Flaws Allowing Arbitrary Code Execution
๐Ÿ“‹
ICS Patch Tuesday: Major Vendors Address Code Execution Vulnerabilities
๐Ÿ“‹
Fortinet, Ivanti Release August 2025 Security Patches
๐Ÿ“‹
Chipmaker Patch Tuesday: Many Vulnerabilities Addressed by Intel, AMD, Nvidia
๐Ÿ“‹
August Patch Tuesday includes blasts from the (recent) past
๐Ÿ“ข
Ivanti security advisory (AV25-503)
๐Ÿ“ข
Microsoft security advisory โ€“ August 2025 monthly rollup (AV25-504)
๐Ÿ“ข
Adobe security advisory (AV25-505)
๐Ÿ“ข
CISA and Partners Release Asset Inventory Guidance to Strengthen Operational Technology Security
๐Ÿ“ข
CISA and Partners Release Asset Inventory Guidance for Operational Technology Owners and Operators
๐Ÿ“ข
GitLab security advisory (AV25-507)
๐Ÿ“ข
Fortinet security advisory (AV25-506)
๐Ÿ“ข
Critical SSH vulnerabilities expose enterprise network infrastructure as patching lags
๐Ÿ“ข
HPE security advisory (AV25-508)
๐Ÿ“ข
Windows 11 24H2 updates failing again with 0x80240069 errors
๐Ÿ“ข
F5 security advisory (AV25-509)
๐Ÿ“ข
Foxit security advisory (AV25-510)
๐Ÿ“ข
CISAโ€™s Free Security Scan: Game-Changer or Gimmick? ๐Ÿค”
๐Ÿ“ข
Intel security advisory (AV25-511)
๐Ÿ”ฅ
Charon Ransomware Hits Middle East Sectors Using APT-Level Evasion Tactics
๐Ÿ”ฅ
Malicious npm Package Lures Job Seekers and Exfiltrates Sensitive Data
๐Ÿ”ฅ
New Charon Ransomware Uses DLL Sideloading and Anti-EDR Tactics in Targeted Attacks
๐Ÿ”ฅ
Webinar: What the Next Wave of AI Cyberattacks Will Look Like โ€” And How to Survive
๐Ÿ”ฅ
โ€˜Curly COMradesโ€™ APT Hackers Target Critical Organizations Across Multiple Countries
๐Ÿ”ฅ
Manpower Says Data Breach Stemming From Ransomware Attack Impacts 140,000
๐Ÿ”ฅ
The MedusaLocker ransomware gang is hiring penetration testers
๐Ÿ”ฅ
Pennsylvania attorney general's email, site down after cyberattack
๐Ÿ”ฅ
Data Troll Stealer Logs - 109,532,219 breached accounts
๐Ÿ”ฅ
Norwegian Police Say Pro-Russian Hackers Were Likely Behind Suspected Sabotage at a Dam
๐Ÿ•ต๏ธ
ISC Stormcast For Wednesday, August 13th, 2025 https://isc.sans.edu/podcastdetail/9568, (Wed, Aug 13th)
๐Ÿ•ต๏ธ
GPT-5 ist geknackt
๐Ÿ•ต๏ธ
Hacker verkaufen Ausweispapiere Zehntausender Italien-Urlauber
๐Ÿ•ต๏ธ
SIGINT During World War II
๐Ÿ•ต๏ธ
Black Hat Fireside Chat: Automation takes center stage as TLS lifespans grow ever shorter
๐Ÿ•ต๏ธ
VexTrio Hackers Use Fake CAPTCHAs and Malicious Apps on Google Play & App Store to Target Users
๐Ÿ•ต๏ธ
Researchers Spot XZ Utils Backdoor in Dozens of Docker Hub Images, Fueling Supply Chain Risks
๐Ÿ•ต๏ธ
Home Office Phishing Scam Targets UK Immigration Sponsors - Infosecurity Magazine
๐Ÿ•ต๏ธ
Hackers Raid Dutch Lab, Stealing Data on 500,000 Patients - Infosecurity Magazine
๐Ÿ•ต๏ธ
Ozone, Coffee & Code: The Smell of Legacy Gear โ˜•
๐Ÿ•ต๏ธ
SmartLoader Malware Masquerades as Legitimate GitHub Repository to Infect Users
๐Ÿ•ต๏ธ
AI Applications in Cybersecurity
๐Ÿ•ต๏ธ
10 Best Purple Teaming Companies in 2025
๐Ÿ•ต๏ธ
DEF CON research takes aim at ZTNA, calls it a bust
๐Ÿ•ต๏ธ
Infamous XZ Backdoor Found Hidden in Docker Images for Over a Year
๐Ÿ•ต๏ธ
Microsoft Just Ranked Who AI Will Replace First ๐Ÿ‘€
๐Ÿ•ต๏ธ
Why Threat Modeling Turns Devs into Security Ninjas ๐Ÿฅท
๐Ÿ•ต๏ธ
Connect with the security community at Microsoft Ignite 2025
๐ŸŒ
New PS1Bot Malware Campaign Uses Malvertising to Deploy Multi-Stage In-Memory Attacks
๐ŸŽ™๏ธ
Smashing Security podcast #430: Poisoned Calendar invites, ChatGPT, and Bromide
๐Ÿ“ก
OpenAI adds new GPT-5 models, restores o3, o4-mini and it's a mess all over again
๐Ÿ“ก
Telegram scams in 2025 | Kaspersky official blog
๐Ÿ“ก
AI SOC 101: Key Capabilities Security Leaders Need to Know
๐Ÿ“ก
Microsoft asks users to ignore certificate enrollment errors
๐Ÿ“ก
Microsoft removes PowerShell 2.0 from Windows 11, Windows Server
๐Ÿ“ก
How we found TeaOnHer spilling usersโ€™ driverโ€™s licenses in less than 10 minutes
๐Ÿ“ก
Joint guidance on foundations for operational technology cyber security and asset inventory guidance for owners and operators
๐Ÿ“ก
Steps to address data spillage in the cloud (ITSAP.50.112)
๐Ÿ“ก
New downgrade attack can bypass FIDO auth in Microsoft Entra ID
๐Ÿ“ก
OpenAI relaxes GPT-5 rate limit, promises to improve the personality
๐Ÿ“ก
Google Gemini's Deep Research is finally coming to API