148Articles
9Categories
2025-11-11Date
πŸ›
Hackers Exploiting Triofox Flaw to Install Remote Access Tools via Antivirus Feature
πŸ›
Hackers Exploit Triofox 0-Day to Deploy Malicious Payloads Using Anti-Virus Feature
KEV
πŸ›
CISA Issues Alert on Samsung 0-Day RCE Flaw Actively Exploited in Attacks
KEV
πŸ›
WatchGuard Firebox Flaw Allows Attackers to Gain Unauthorized SSH Access
πŸ›
Devolutions Server Flaw Allows Attackers to Impersonate Users via Pre-MFA Cookie
πŸ›
WinRAR Vulnerability Exploited by APT-C-08 to Target Government Agencies
πŸ›
Zoom Workplace for Windows Flaw Allows Local Privilege Escalation
πŸ›
Ivanti Endpoint Manager Vulnerabilities Let Attackers Write Files Anywhere on Target Systems
πŸ›
CVE-2025-59504 Azure Monitor Agent Remote Code Execution Vulnerability
πŸ›
CVE-2025-59505 Windows Smart Card Reader Elevation of Privilege Vulnerability
πŸ›
CVE-2025-59506 DirectX Graphics Kernel Elevation of Privilege Vulnerability
πŸ›
CVE-2025-59507 Windows Speech Runtime Elevation of Privilege Vulnerability
πŸ›
CVE-2025-59508 Windows Speech Recognition Elevation of Privilege Vulnerability
πŸ›
CVE-2025-59509 Windows Speech Recognition Information Disclosure Vulnerability
πŸ›
CVE-2025-59510 Windows Routing and Remote Access Service (RRAS) Denial of Service Vulnerability
πŸ›
CVE-2025-59511 Windows WLAN Service Elevation of Privilege Vulnerability
πŸ›
CVE-2025-59512 Customer Experience Improvement Program (CEIP) Elevation of Privilege Vulnerability
πŸ›
CVE-2025-59513 Windows Bluetooth RFCOM Protocol Driver Information Disclosure Vulnerability
πŸ›
CVE-2025-60703 Windows Remote Desktop Services Elevation of Privilege Vulnerability
πŸ›
CVE-2025-60704 Windows Kerberos Elevation of Privilege Vulnerability
πŸ›
CVE-2025-60705 Windows Client-Side Caching Elevation of Privilege Vulnerability
πŸ›
CVE-2025-60706 Windows Hyper-V Information Disclosure Vulnerability
πŸ›
CVE-2025-60707 Multimedia Class Scheduler Service (MMCSS) Driver Elevation of Privilege Vulnerability
πŸ›
CVE-2025-60708 Storvsp.sys Driver Denial of Service Vulnerability
πŸ›
CVE-2025-60709 Windows Common Log File System Driver Elevation of Privilege Vulnerability
πŸ›
CVE-2025-60710 Host Process for Windows Tasks Elevation of Privilege Vulnerability
πŸ›
CVE-2025-60726 Microsoft Excel Information Disclosure Vulnerability
πŸ›
CVE-2025-60727 Microsoft Excel Remote Code Execution Vulnerability
πŸ›
CVE-2025-60728 Microsoft Excel Information Disclosure Vulnerability
πŸ›
CVE-2025-62199 Microsoft Office Remote Code Execution Vulnerability
πŸ›
CVE-2025-62206 Microsoft Dynamics 365 (On-Premises) Information Disclosure Vulnerability
πŸ›
CVE-2025-62210 Dynamics 365 Field Service (online) Spoofing Vulnerability
πŸ›
CVE-2025-62216 Microsoft Office Remote Code Execution Vulnerability
πŸ›
CVE-2025-60719 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
πŸ›
CVE-2025-60722 Microsoft OneDrive for Android Elevation of Privilege Vulnerability
πŸ›
CVE-2025-62217 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
πŸ›
CVE-2025-62218 Microsoft Wireless Provisioning System Elevation of Privilege Vulnerability
πŸ›
CVE-2025-62219 Microsoft Wireless Provisioning System Elevation of Privilege Vulnerability
πŸ›
CVE-2025-62220 Windows Subsystem for Linux GUI Remote Code Execution Vulnerability
πŸ›
CVE-2025-62452 Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
πŸ›
CVE-2025-59240 Microsoft Excel Information Disclosure Vulnerability
πŸ›
CVE-2025-47179 Configuration Manager Elevation of Privilege Vulnerability
πŸ›
CVE-2025-59514 Microsoft Streaming Service Proxy Elevation of Privilege Vulnerability
πŸ›
CVE-2025-59515 Windows Broadcast DVR User Service Elevation of Privilege Vulnerability
πŸ›
CVE-2025-60713 Windows Routing and Remote Access Service (RRAS) Elevation of Privilege Vulnerability
πŸ›
CVE-2025-60714 Windows OLE Remote Code Execution Vulnerability
πŸ›
CVE-2025-60715 Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
πŸ›
CVE-2025-60716 DirectX Graphics Kernel Elevation of Privilege Vulnerability
πŸ›
CVE-2025-60717 Windows Broadcast DVR User Service Elevation of Privilege Vulnerability
πŸ›
CVE-2025-60718 Windows Administrator Protection Elevation of Privilege Vulnerability
πŸ›
CVE-2025-60720 Windows Transport Driver Interface (TDI) Translation Driver Elevation of Privilege Vulnerability
πŸ›
CVE-2025-60723 DirectX Graphics Kernel Denial of Service Vulnerability
πŸ›
CVE-2025-60724 GDI+ Remote Code Execution Vulnerability
πŸ›
CVE-2025-62200 Microsoft Excel Remote Code Execution Vulnerability
πŸ›
CVE-2025-62201 Microsoft Excel Remote Code Execution Vulnerability
πŸ›
CVE-2025-62202 Microsoft Excel Information Disclosure Vulnerability
πŸ›
CVE-2025-62203 Microsoft Excel Remote Code Execution Vulnerability
πŸ›
CVE-2025-62204 Microsoft SharePoint Remote Code Execution Vulnerability
πŸ›
CVE-2025-62205 Microsoft Office Remote Code Execution Vulnerability
πŸ›
CVE-2025-62208 Windows License Manager Information Disclosure Vulnerability
πŸ›
CVE-2025-62209 Windows License Manager Information Disclosure Vulnerability
πŸ›
CVE-2025-59499 Microsoft SQL Server Elevation of Privilege Vulnerability
πŸ›
CVE-2025-62211 Dynamics 365 Field Service (online) Spoofing Vulnerability
πŸ›
CVE-2025-62214 Visual Studio Remote Code Execution Vulnerability
πŸ›
CVE-2025-62215 Windows Kernel Elevation of Privilege Vulnerability
πŸ›
CVE-2025-62213 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
πŸ›
CVE-2025-62222 Agentic AI and Visual Studio Code Remote Code Execution Vulnerability
πŸ›
CVE-2025-62449 Microsoft Visual Studio Code CoPilot Chat Extension Security Feature Bypass Vulnerability
πŸ›
CVE-2025-60721 Windows Administrator Protection Elevation of Privilege Vulnerability
πŸ›
CVE-2025-62453 GitHub Copilot and Visual Studio Code Security Feature Bypass Vulnerability
πŸ›
CVE-2025-30398 Nuance PowerScribe 360 Information Disclosure Vulnerability
πŸ›
Microsoft Patch Tuesday for November 2025 – Fix for 0-day and Other 62 Vulnerabilities
KEV
⚠️
How GlassWorm wormed its way back into developers’ code β€” and what it says about open source security
⚠️
EU Eyes Huawei and ZTE Ban in Mobile Networks of Member Countries
⚠️
EU Eyes Huawei and ZTE Ban in Mobile Networks of Member Countries
⚠️
Danabot Malware Reemerges with Version 669 After Operation Endgame
⚠️
Your passwordless future may never fully arrive
⚠️
Ransomware, Defaults, and Proactive Defenses - Rob Allen - ASW #356
⚠️
Beyond silos: How DDI-AI integration is redefining cyber resilience
⚠️
Γ–ffentliche Verwaltung im Visier von Cyberspionen
⚠️
Senate moves to restore lapsed cybersecurity laws after shutdown
KEV
⚠️
New Phishing Campaign Targets Meta Business Suite Users
⚠️
Prompt Injection in AI Browsers
⚠️
β€˜Whisper Leak’ LLM Side-Channel Attack Infers User Prompt Topics
⚠️
CISO's Expert Guide To AI Supply Chain Attacks
⚠️
Android Trojan 'Fantasy Hub' Malware Service Turns Telegram Into a Hub for Hackers
⚠️
North Korean hackers exploit Google’s safety tools for remote wipe
⚠️
Phishing Scam Uses Big-Name Brands to Steal Logins
⚠️
CISA orders feds to patch Samsung zero-day used in spyware attacks
⚠️
CMMC Live: Pentagon Demands Verified Cybersecurity From Contractors
⚠️
Monsta FTP Vulnerability Exposed Thousands of Servers to Full Takeover – Hackread – Cybersecurity News, Data Breaches, Tech, AI, Crypto and More
⚠️
Hackers Exploiting Triofox Flaw to Install Remote Access Tools via Antivirus Feature
⚠️
Popular JavaScript library expr-eval vulnerable to RCE flaw
⚠️
Critical Triofox Vulnerability Exploited in the Wild
KEV
⚠️
What is the Pixnapping vulnerability, and how to protect your Android smartphone? | Kaspersky official blog
⚠️
Microsoft November 2025 Patch Tuesday fixes 1 zero-day, 63 flaws
KEV
⚠️
Threat Actors Leverage RMM Tools to Deploy Medusa & DragonForce Ransomware
⚠️
Microsoft Patch Tuesday for November 2025, (Tue, Nov 11th)
⚠️
Hackers abuse Triofox antivirus feature to deploy remote access tools
⚠️
Microsoft Patches Actively Exploited Windows Kernel Zero-Day
KEV
⚠️
Synology fixes BeeStation zero-days demoed at Pwn2Own Ireland
⚠️
Miles, 10/8 time, Lost Phones, Whisper Leak, Quantum Route, AI Galore, Rob Allen - SWN #528
⚠️
Multiple Vulnerabilities in Mozilla Products Could Allow for Arbitrary Code Execution
⚠️
Critical Patches Issued for Microsoft Products, November 11, 2025
⚠️
Multiple Vulnerabilities in Adobe Products Could Allow for Arbitrary Code Execution
πŸ“‹
SAP Releases Security Update to Fix Critical Code Execution and Injection Flaws
πŸ“‹
SAP fixes hardcoded credentials flaw in SQL Anywhere Monitor
πŸ“‹
Microsoft: Emergency Windows 10 update fixes ESU enrollment bug
πŸ“‹
SAP Security Update - Patch for Critical Vulnerabilities Allowing Code Execution and Injection Attacks
πŸ“‹
Microsoft: Windows 11 23H2 Home and Pro reach end of support
πŸ“‹
Microsoft releases KB5068781 β€” The first Windows 10 extended security update
πŸ“’
AI startups leak sensitive credentials on GitHub, exposing models and training data
πŸ“’
EU-Kommission will DSGVO fΓΌr KI und Cookie-Tracking lockern
πŸ”₯
Researchers Expose Deep Connections Between Maverick and Coyote Banking Malware
πŸ”₯
New VanHelsing Ransomware-as-a-Service Hits Windows, Linux, BSD, ARM and ESXi
πŸ”₯
Researchers Detect Malicious npm Package Targeting GitHub-Owned Repositories
πŸ”₯
Yanluowang initial access broker pleaded guilty to ransomware attacks
πŸ”₯
Webinar: Modern Patch Management – Strategies to patch faster with less risk
πŸ”₯
GlobalLogic warns 10,000 employees of data theft after Oracle breach
πŸ”₯
How a CPU spike led to uncovering a RansomHub ransomware attack
πŸ”₯
How a CPU spike led to uncovering a RansomHub ransomware attack
πŸ”₯
GlobalLogic warns 10,000 employees of data theft after Oracle breach
πŸ•΅οΈ
Konni Hackers Turn Google’s Find Hub into a Remote Data-Wiping Weapon
πŸ•΅οΈ
ISC Stormcast For Tuesday, November 11th, 2025 https://isc.sans.edu/podcastdetail/9694, (Tue, Nov 11th)
πŸ•΅οΈ
OWASP Top 10 2025 Released: Major Revisions and Two New Security Classes Added
πŸ•΅οΈ
Threat Report: xHunt Targets Microsoft Exchange and IIS with Custom Backdoors
πŸ•΅οΈ
Lazarus Group Deploys Weaponized Documents Against Aerospace & Defense
πŸ•΅οΈ
65% of Top AI Firms Found Exposing Verified API Keys and Tokens on GitHub
πŸ•΅οΈ
Beware of Security Alert-Themed Malicious Emails that Steal Your Email Logins
πŸ•΅οΈ
Attackers Use Quantum Route Redirect to Launch Instant Phishing on M365
πŸ•΅οΈ
Ferocious Kitten APT Uses MarkiRAT for Keystroke and Clipboard Surveillance
πŸ•΅οΈ
New β€œKomeX” Android RAT Hits Hacker Forums with Tiered Subscriptions
πŸ•΅οΈ
APT37 hackers abuse Google Find Hub in Android data-wiping attacks
πŸ•΅οΈ
Honoring Our Veteran Readers: Thank You for Your Service
πŸ•΅οΈ
Allianz UK confirms Oracle EBS compromise β€’ The Register
πŸ•΅οΈ
SAP Patches Critical Flaws in SQL Anywhere Monitor, Solution Manager
πŸ•΅οΈ
New Firefox Protections Halve the Number of Trackable Users
πŸ•΅οΈ
OWASP Highlights Supply Chain Risks in New Top 10
πŸ•΅οΈ
Many Forbes AI 50 Companies Leak Secrets on GitHub - SecurityWeek
πŸ•΅οΈ
CyberheistNews Vol 15 #45 [Under the Radar] Scammers Use Real Bodies, Fake Faces in Extortion Scams
πŸ•΅οΈ
Tenzai Raises $75 Million in Seed Funding to Build AI-Powered Pentesting Platform
πŸ•΅οΈ
Adobe Patches 29 Vulnerabilities
🌐
GootLoader Is Back, Using a New Font Trick to Hide Malware on WordPress Sites
🌐
Rhadamanthys infostealer disrupted as cybercriminals lose server access
πŸŽ™οΈ
The AI Fix #76: AI self-awareness, and the death of comedy
πŸ“‘
β€œBitcoin Queen” gets 11 years in prison for $7.3 billion Bitcoin scam
πŸ“‘
Windows 11 KB5068861Β & KB5068865Β cumulative updates released
πŸ“‘
Why shadow AI could be your biggest security blind spot