190Articles
10Categories
2025-12-09Date
🚨
CISA Adds Two Known Exploited Vulnerabilities to CatalogCISA has added two new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog , based on evidence of active exploitation. CVE-2025-6218 RARLAB WinRAR Path Traversal Vulnerability CVE-2025-62221 Microsoft Windows Use After Free Vulnerability  These types of vuln…
KEV
πŸ›
CVE-2025-40307 exfat: validate cluster allocation bits of the allocation bitmap
πŸ›
CVE-2025-40314 usb: cdns3: gadget: Use-after-free during failed initialization and exit of cdnsp gadget
πŸ›
CVE-2025-40301 Bluetooth: hci_event: validate skb length for unknown CC opcode
πŸ›
CVE-2025-40297 net: bridge: fix use-after-free due to MST port state bypass
πŸ›
CVE-2025-40303 btrfs: ensure no dirty metadata is written back for an fs with errors
πŸ›
CVE-2023-53749 x86: fix clear_user_rep_good() exception handling annotation
πŸ›
CVE-2025-40308 Bluetooth: bcsp: receive data only if registered
πŸ›
CVE-2025-40309 Bluetooth: SCO: Fix UAF on sco_conn_free
πŸ›
CVE-2025-40305 9p/trans_fd: p9_fd_request: kick rx thread if EPOLLIN
πŸ›
CVE-2025-40293 iommufd: Don't overflow during division for dirty tracking
πŸ›
CVE-2025-40292 virtio-net: fix received length check in big packets
πŸ›
CVE-2025-40306 orangefs: fix xattr related buffer overflow...
πŸ›
CVE-2025-40319 bpf: Sync pending IRQ work before freeing ring buffer
πŸ›
CVE-2025-40312 jfs: Verify inode mode when loading from disk
πŸ›
CVE-2025-40315 usb: gadget: f_fs: Fix epfile null pointer access after ep enable.
πŸ›
CVE-2025-40317 regmap: slimbus: fix bus_context pointer in regmap init calls
πŸ›
CVE-2025-40321 wifi: brcmfmac: fix crash while sending Action Frames in standalone AP Mode
πŸ›
CVE-2025-40304 fbdev: Add bounds checking in bit_putcs to fix vmalloc-out-of-bounds
πŸ›
CVE-2025-40313 ntfs3: pretend $Extend records as regular files
πŸ›
CVE-2025-40294 Bluetooth: MGMT: Fix OOB access in parse_adv_monitor_pattern()
πŸ›
CVE-2025-40310 amd/amdkfd: resolve a race in amdgpu_amdkfd_device_fini_sw
πŸ›
CVE-2025-40323 fbcon: Set fb_display[i]->mode to NULL when the mode is released
πŸ›
CVE-2025-40311 accel/habanalabs: support mapping cb with vmalloc-backed coherent memory
πŸ›
CVE-2025-40322 fbdev: bitblit: bound-check glyph index in bit_putcs*
πŸ›
CVE-2025-40324 NFSD: Fix crash in nfsd4_read_release()
πŸ›
Burp Suite Upgrades Scanner With Detection for Critical React2Shell Flaws
πŸ›
React2Shell Attacks Linked to North Korean Hackers
πŸ›
CVE-2025-62454 Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability
πŸ›
CVE-2025-62456 Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
πŸ›
CVE-2025-62457 Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability
πŸ›
CVE-2025-62458 Win32k Elevation of Privilege Vulnerability
πŸ›
CVE-2025-62466 Windows Client-Side Caching Elevation of Privilege Vulnerability
πŸ›
CVE-2025-62469 Microsoft Brokering File System Elevation of Privilege Vulnerability
πŸ›
CVE-2025-62470 Windows Common Log File System Driver Elevation of Privilege Vulnerability
πŸ›
CVE-2025-62472 Windows Remote Access Connection Manager Elevation of Privilege Vulnerability
πŸ›
CVE-2025-62473 Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability
πŸ›
CVE-2025-62549 Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
πŸ›
CVE-2025-62561 Microsoft Excel Remote Code Execution Vulnerability
πŸ›
CVE-2025-62562 Microsoft Outlook Remote Code Execution Vulnerability
πŸ›
CVE-2025-62563 Microsoft Excel Remote Code Execution Vulnerability
πŸ›
CVE-2025-62564 Microsoft Excel Remote Code Execution Vulnerability
πŸ›
CVE-2025-62571 Windows Installer Elevation of Privilege Vulnerability
πŸ›
CVE-2025-62572 Application Information Service Elevation of Privilege Vulnerability
πŸ›
CVE-2025-62573 DirectX Graphics Kernel Elevation of Privilege Vulnerability
πŸ›
CVE-2025-64658 Windows File Explorer Elevation of Privilege Vulnerability
πŸ›
CVE-2025-64667 Microsoft Exchange Server Spoofing Vulnerability
πŸ›
CVE-2025-64666 Microsoft Exchange Server Elevation of Privilege Vulnerability
πŸ›
CVE-2025-64670 Windows DirectX Information Disclosure Vulnerability
πŸ›
CVE-2025-64673 Windows Storage VSP Driver Elevation of Privilege Vulnerability
πŸ›
CVE-2025-59516 Windows Storage VSP Driver Elevation of Privilege Vulnerability
πŸ›
CVE-2025-59517 Windows Storage VSP Driver Elevation of Privilege Vulnerability
πŸ›
CVE-2025-62455 Microsoft Message Queuing (MSMQ) Elevation of Privilege Vulnerability
πŸ›
CVE-2025-62461 Windows Projected File System Elevation of Privilege Vulnerability
πŸ›
CVE-2025-62462 Windows Projected File System Elevation of Privilege Vulnerability
πŸ›
CVE-2025-62463 DirectX Graphics Kernel Denial of Service Vulnerability
πŸ›
CVE-2025-62464 Windows Projected File System Elevation of Privilege Vulnerability
πŸ›
CVE-2025-62465 DirectX Graphics Kernel Denial of Service Vulnerability
πŸ›
CVE-2025-55233 Windows Projected File System Elevation of Privilege Vulnerability
πŸ›
CVE-2025-62467 Windows Projected File System Elevation of Privilege Vulnerability
πŸ›
CVE-2025-62468 Windows Defender Firewall Service Information Disclosure Vulnerability
πŸ›
CVE-2025-62474 Windows Remote Access Connection Manager Elevation of Privilege Vulnerability
πŸ›
CVE-2025-62550 Azure Monitor Agent Remote Code Execution Vulnerability
πŸ›
CVE-2025-62552 Microsoft Access Remote Code Execution Vulnerability
πŸ›
CVE-2025-62553 Microsoft Excel Remote Code Execution Vulnerability
πŸ›
CVE-2025-62554 Microsoft Office Remote Code Execution Vulnerability
πŸ›
CVE-2025-62555 Microsoft Word Remote Code Execution Vulnerability
πŸ›
CVE-2025-62556 Microsoft Excel Remote Code Execution Vulnerability
πŸ›
CVE-2025-62557 Microsoft Office Remote Code Execution Vulnerability
πŸ›
CVE-2025-62558 Microsoft Word Remote Code Execution Vulnerability
πŸ›
CVE-2025-62559 Microsoft Word Remote Code Execution Vulnerability
πŸ›
CVE-2025-62560 Microsoft Excel Remote Code Execution Vulnerability
πŸ›
CVE-2025-62567 Windows Hyper-V Denial of Service Vulnerability
πŸ›
CVE-2025-62569 Microsoft Brokering File System Elevation of Privilege Vulnerability
πŸ›
CVE-2025-62570 Windows Camera Frame Server Monitor Information Disclosure Vulnerability
πŸ›
CVE-2025-62565 Windows File Explorer Elevation of Privilege Vulnerability
πŸ›
CVE-2025-64661 Windows Shell Elevation of Privilege Vulnerability
πŸ›
CVE-2025-64671 GitHub Copilot for Jetbrains Remote Code Execution Vulnerability
πŸ›
CVE-2025-64672 Microsoft SharePoint Server Spoofing Vulnerability
πŸ›
CVE-2025-64678 Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
πŸ›
CVE-2025-64679 Windows DWM Core Library Elevation of Privilege Vulnerability
πŸ›
CVE-2025-64680 Windows DWM Core Library Elevation of Privilege Vulnerability
πŸ›
CVE-2025-54100 PowerShell Remote Code Execution Vulnerability
πŸ›
CVE-2025-62221 Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability
πŸ›
Zoom Rooms on Windows and macOS Exposed to Privilege Escalation and Data Leakage Flaws
⚠️
Ignoring AI in the threat chain could be a costly mistake, experts warn
⚠️
Making OAuth Scale Securely for MCPs - Aaron Parecki - ASW #360
⚠️
Proofpoint Completes $1.8 Billion Acquisition of Hornetsecurity
⚠️
Google Adds Layered Defenses to Chrome to Block Indirect Prompt Injection Threats
⚠️
Akira Group Targets Hyper-V and VMware ESXi with Ransomware Exploiting Vulnerabilities
⚠️
New Vishing Attack Exploits Microsoft Teams and QuickAssist to Deploy .NET Malware
⚠️
Malicious MCP Servers Enable Stealthy Prompt Injection to Drain System Resources
⚠️
Hackers Exploit Ivanti Connect Secure Vulnerabilities to Spread MetaRAT Malware
⚠️
New Variant of Mirai Botnet β€˜Broadside’ Launches Active Attacks on Users
⚠️
Sneeit WordPress RCE Exploited in the Wild While ICTBroadcast Bug Fuels Frost Botnet Attacks
KEV
⚠️
NIS2 umsetzen – ohne im Papierkrieg zu enden
⚠️
North Korean hackers exploit React2Shell flaw in EtherRAT malware attacks
⚠️
Spain arrests teen who stole 64 million personal data records
⚠️
Gemini for Chrome gets a second AI agent to watch over it
⚠️
Racks, sprawl and the myth of redundancy: Why your failover isn’t as safe as you think
⚠️
Ivanti warns of critical Endpoint Manager code execution flaw
⚠️
Maintaining enterprise IT hygiene using Wazuh SIEM/XDR
⚠️
CISA Releases Three Industrial Control Systems Advisories
⚠️
Further Hardening Android GPUs
⚠️
Microsoft December 2025 Patch Tuesday fixes 3 zero-days, 57 flaws
KEV
⚠️
North Korea-linked Actors Exploit React2Shell to Deploy New EtherRAT Malware
⚠️
Microsoft releases Windows 10 KB5071546 extended security update
⚠️
Microsoft Names New Operating CISOs in Strategic Move to Strengthen Cyberdefense
⚠️
Microsoft Patches 57 Vulnerabilities, Three Zero-Days
⚠️
Microsoft Patch Tuesday December 2025, (Tue, Dec 9th)
⚠️
Opportunistic Pro-Russia Hacktivists Attack US and Global Critical Infrastructure
⚠️
Warning: Phishing Campaign Leveraging Evilginx Targets U.S. Universities
⚠️
Microsoft Patch Tuesday, December 2025 Edition
⚠️
Microsoft December 2025 Patch Tuesday Fixes 56 Vulnerabilities Fixed and 3 Zero-days
KEV
⚠️
Makop Ransomware Targets RDP Systems Using AV Killer and Additional Exploits
⚠️
Multiple Vulnerabilities in Adobe Products Could Allow for Arbitrary Code Execution
⚠️
Critical Patches Issued for Microsoft Products, December 9, 2025
⚠️
Multiple Vulnerabilities in Mozilla Products Could Allow for Arbitrary Code Execution
⚠️
GrayBravo’s CastleLoader Activity Clusters Target Multiple Industries
⚠️
November 2025 CVE Landscape: 10 Critical Vulnerabilities Show 69% Drop from October
πŸ“‹
Fortinet warns of critical FortiCloud SSO login auth bypass flaws
πŸ“‹
Adobe Patches Nearly 140 Vulnerabilities
πŸ“‹
SAP fixes three critical vulnerabilities across multiple products
πŸ“’
SAP Security Patch Day Fixes Critical Flaws in Solution Manager, NetWeaver & More
πŸ“’
OAuth Mix-Up Attack Explained
πŸ“’
[Control systems] Siemens security advisory (AV25-817)
πŸ“’
Mozilla security advisory (AV25-819)
πŸ“’
SAP security advisory – December 2025 monthly rollup (AV25-818)
πŸ“’
Fortinet security advisory (AV25-821)
πŸ“’
VMware security advisory (AV25-820)
πŸ“’
Microsoft security advisory – December 2025 monthly rollup (AV25-822)
πŸ“’
CISA, FBI, and U.S. and Global Partners Urge Immediate Action to Defend Critical Infrastructure from Pro-Russia Hacktivist Threats
πŸ”₯
Manufacturing fares better against ransomware β€” with room for improvement
πŸ”₯
Over 300,000 Individuals Impacted by Vitas Hospice Data Breach
πŸ”₯
STAC6565 Targets Canada in 80% of Attacks as Gold Blade Deploys QWCrypt Ransomware
πŸ”₯
Microsoft investigates Copilot outage affecting users in Europe
πŸ”₯
Data breach at Marquis Software Solutions affected over 780,000 people - Infosecurity Magazine
πŸ”₯
FinCEN says ransomware gangs extorted over $2.1B from 2022 to 2024
πŸ”₯
Ransomware gangs turn to Shanya EXE packer to hide EDR killers
πŸ”₯
Hackers Using FLIPPER Devices to Breach IT Systems Arrested by Authorities
πŸ”₯
New JS#SMUGGLER Campaign Drops NetSupport RAT Through Infected Sites – Hackread – Cybersecurity News, Data Breaches, Tech, AI, Crypto and More
πŸ”₯
Storm-0249 Escalates Ransomware Attacks with ClickFix, Fileless PowerShell, and DLL Sideloading
πŸ”₯
Tri-Century Eye Care Data Breach Impacts 200,000 Individuals - SecurityWeek
πŸ”₯
Ransomware IAB abuses EDR for stealthy malware execution
πŸ”₯
Ransomware
πŸ”₯
DeadLock Ransomware Uses BYOVD to Evade Security Measures
πŸ”₯
GOLD BLADE: Custom QWCrypt Locker for Data Exfiltration and Ransomware Deployment
πŸ”₯
5 Real-Word Third-Party Risk Examples
πŸ•΅οΈ
Hacking an Entire Country's Prison System...
πŸ•΅οΈ
ISC Stormcast For Tuesday, December 9th, 2025 https://isc.sans.edu/podcastdetail/9730, (Tue, Dec 9th)
πŸ•΅οΈ
Ermittler kappen Tausende Nummern von mutmaßlichen Betrügern
πŸ•΅οΈ
Equixly Raises $11 Million for AI-Powered API Penetration Testing
πŸ•΅οΈ
New β€˜Broadside’ Botnet Poses Risk to Shipping Companies
πŸ•΅οΈ
AI vs. Human Drivers
πŸ•΅οΈ
Malicious VSCode extensions on Microsoft's registry drop infostealers
πŸ•΅οΈ
US Posts $10 Million Bounty for Iranian Hackers
πŸ•΅οΈ
Scammers harvesting Facebook photos to stage fake kidnappings, warns FBI | Malwarebytes
πŸ•΅οΈ
Malicious VS Code on Microsoft Registry Steals WiFi Passwords and Captures Screens
πŸ•΅οΈ
AI-Driven Tools Uncover GhostPenguin Backdoor Attacking Linux Servers
πŸ•΅οΈ
Android Malware FvncBot, SeedSnatcher, and ClayRat Gain Stronger Data Theft Features
πŸ•΅οΈ
Why the Sanitizer API is just <code>setHTML()</code>
πŸ•΅οΈ
UK intelligence warns AI 'prompt injection' attacks might never go away | The Record from Recorded Future News
πŸ•΅οΈ
"Broadside" Mirai Variant Targets Maritime Logistics Sector
πŸ•΅οΈ
Just a moment...
πŸ•΅οΈ
CyberheistNews Vol 15 #49 Ghost in the Machine: How a Multi-Stage Phishing Attack Evades M365 Security
πŸ•΅οΈ
Identity Security Firm Saviynt Raises $700 Million at $3 Billion Valuation
πŸ•΅οΈ
Webinar Today: Inside the First 72 hours of a Cyber Event
πŸ•΅οΈ
Four Threat Clusters Using CastleLoader as GrayBravo Expands Its Malware Service Infrastructure
πŸ•΅οΈ
Android Malware FvncBot, SeedSnatcher, and ClayRat Gain Stronger Data Theft Features
πŸ•΅οΈ
Winning the AI Race Starts with the Right Security Platform
πŸ•΅οΈ
SAP Security Patch Day: Fix for Critical Vulnerabilities in SAP Solution Manager, NetWeaver, and Other Products
πŸ•΅οΈ
Prime Security Raises $20 Million to Build Agentic Security Architect
πŸ•΅οΈ
Changing the physics of cyber defense
πŸ•΅οΈ
Partners Are Fueling Innovation with Cortex XSIAM and Prisma SASE
πŸ•΅οΈ
Dynamic Client Registration Simplified
πŸ•΅οΈ
Hypnotoad, AI Galore, Storm-0249, DocuSign, Broadside, Goldblade, Aaran Leyland... - SWN #536
πŸ•΅οΈ
Shai-Hulud 2.0: Guidance for detecting, investigating, and defending against the supply chain attack
πŸ•΅οΈ
The Rise of AI: Fake Videos and Social Media Chaos
πŸ•΅οΈ
Threat Actors Poison SEO to Spread Fake Microsoft Teams Installer
πŸ•΅οΈ
Microsoft Copilot Outage Disrupts UK and Europe With Access Failures and Broken Features
🌐
Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data
🌐
The AMOS infostealer is piggybacking ChatGPT's chat-sharing feature | Kaspersky official blog
πŸŽ™οΈ
The AI Fix #80: DeepSeek’s cheap GPT-5 rival, Antigravity fails, and why being rude to AI makes it smarter
πŸ“‘
Sophos Named One of Computerworld’s 2026 Best Places to Work in IT
πŸ“‘
Sophos Firewall v22 is now available
πŸ“‘
How to Streamline Zero Trust Using the Shared Signals Framework
πŸ“‘
California man admits role in $263 million cryptocurrency theft that funded lavish lifestyle
πŸ“‘
Windows 11 KB5072033 & KB5071417 cumulative updates released
πŸ“‘
Windows PowerShell now warns when running Invoke-WebRequest scripts
πŸ“‘
The big catch: How whaling attacks target top executives