65Articles
8Categories
2025-12-24Date
πŸ›
Critical MongoDB Flaw Leaks Sensitive Data Through zlib Compression
πŸ›
CVE-2025-38466 perf: Revert to requiring CAP_SYS_ADMIN for uprobes
πŸ›
CVE-2025-38437 ksmbd: fix potential use-after-free in oplock/lease break ack
πŸ›
CVE-2025-38439 bnxt_en: Set DMA unmap len correctly for XDP_REDIRECT
πŸ›
CVE-2025-38458 atm: clip: Fix NULL pointer dereference in vcc_sendmsg()
πŸ›
CVE-2025-38457 net/sched: Abort __tc_modify_qdisc if parent class does not exist
πŸ›
CVE-2025-38445 md/raid1: Fix stack memory use after return in raid1_reshape
πŸ›
CVE-2025-38462 vsock: Fix transport_{g2h,h2g} TOCTOU
πŸ›
CVE-2025-38465 netlink: Fix wraparounds of sk->sk_rmem_alloc.
πŸ›
CVE-2025-38461 vsock: Fix transport_* TOCTOU
πŸ›
CVE-2025-38443 nbd: fix uaf in nbd_genl_connect() error path
πŸ›
CVE-2025-38464 tipc: Fix use-after-free in tipc_conn_close().
πŸ›
CVE-2025-38460 atm: clip: Fix potential null-ptr-deref in to_atmarpd().
πŸ›
CVE-2025-38459 atm: clip: Fix infinite recursive call of clip_push().
πŸ›
CVE-2025-38476 rpl: Fix use-after-free in rpl_do_srh_inline().
πŸ›
CVE-2025-38470 net: vlan: fix VLAN 0 refcount imbalance of toggling filtering during runtime
πŸ›
CVE-2025-38448 usb: gadget: u_serial: Fix race condition in TTY wakeup
πŸ›
CVE-2025-38467 drm/exynos: exynos7_drm_decon: add vblank check in IRQ handling
πŸ›
CVE-2025-38468 net/sched: Return NULL when htb_lookup_leaf encounters an empty rbtree
πŸ›
CVE-2025-38474 usb: net: sierra: check for no status endpoint
πŸ›
CVE-2025-38444 raid10: cleanup memleak at raid10_make_request
πŸ›
CVE-2025-38441 netfilter: flowtable: account for Ethernet header in nf_flow_pppoe_proto()
πŸ›
CVE-2025-38473 Bluetooth: Fix null-ptr-deref in l2cap_sock_resume_cb()
πŸ›
CVE-2025-62231 Xorg: xmayland: value overflow in xkbsetcompatmap()
πŸ›
CVE-2025-62229 Xorg: xmayland: use-after-free in xpresentnotify structure creation
πŸ›
CVE-2025-62230 Xorg: xwayland: use-after-free in xkb client resource removal
πŸ›
CVE-2024-7883 CMSE secure state may leak from stack to floating-point registers
πŸ›
Webrat turns GitHub PoCs into a malware trap
πŸ›
M-Files Vulnerability Allows Attackers to Steal Active User Session Tokens
πŸ›
Net-SNMP Vulnerability Triggers Buffer Overflow, Crashing the Daemon
⚠️
Interpol sweep takes down cybercrooks in 19 countries
⚠️
ServiceNow’s $7.75 billion cash deal for Armis illustrates shifting strategies
⚠️
Operation PCPcat Exploits Next.js and React, Impacting 59,000+ Servers
⚠️
WebRAT Malware Campaign Leveraging GitHub-Hosted Proof-of-Concept Code
⚠️
Implementing NIS2 β€” without getting bogged down in red tape
⚠️
Attacks are Evolving: 3 Ways to Protect Your Business in 2026
⚠️
Urban VPN Proxy Surreptitiously Intercepts AI Chats
⚠️
MongoDB warns admins to patch severe RCE flaw immediately
⚠️
NVIDIA Isaac Vulnerabilities Enable Remote Code Execution Attacks
⚠️
Israeli Organizations Targeted by AV-Themed Malicious Word and PDF Files
⚠️
Human Error: Cybersecurity's Weak Spot
⚠️
MongoDB warns admins to patch severe vulnerability immediately
πŸ“’
MongoDB security advisory (AV25-862)
πŸ“’
Microsoft Teams to let admins block external users via Defender portal
πŸ”₯
ΠœΠ΅Π΄ΠΈΡ†ΠΈΠ½ΡΠΊΠ°Ρ лаборатория ГСмотСст (Gemotest) - 6,341,495 breached accounts
πŸ”₯
More than 22 million Aflac customers impacted by June data breach | The Record from Recorded Future News
πŸ”₯
Pro-Russian Hackers Claim Cyberattack on French Postal Service
πŸ”₯
NtKiller Malware Advertised on Dark Web With Claims of Antivirus and EDR Bypass
πŸ•΅οΈ
The CISO Holiday Party 2025: Leadership Lessons from the Year That Was - BSW #427
πŸ•΅οΈ
Feds Seize Password Database Used in Massive Bank Account Takeover Scheme - SecurityWeek
πŸ•΅οΈ
North Korean Beavertail malware sparks attacks across financial sector | SC Media
πŸ•΅οΈ
Hackers stole over $2.7B in crypto in 2025, data shows | TechCrunch
πŸ•΅οΈ
Prioritize Self-Care in 2026
πŸ•΅οΈ
Why We Abandoned Matrix: The Dark Truth About User Security and Safety
πŸ•΅οΈ
Evasive Panda APT: Malware Delivery via AitM and DNS Poisoning
πŸ•΅οΈ
Microsoft Enhances BitLocker with Hardware Acceleration Support
πŸ•΅οΈ
Protecting AI with Cybersecurity
🌐
Fake MAS Windows activation domain used to spread PowerShell malware
πŸŽ™οΈ
Year End Repeat: Pig Butchering: Operation Shamrock Fights Back
πŸ“‘
Italy Fines Apple €98.6 Million Over ATT Rules Limiting App Store Competition
πŸ“‘
SEC Files Charges Over $14 Million Crypto Scam Using Fake AI-Themed Investment Tips
πŸ“‘
Nomani Investment Scam Surges 62% Using AI Deepfake Ads on Social Media
πŸ“‘
FBI seizes domain storing bank credentials stolen from U.S. victims
πŸ“‘
New MacSync macOS Stealer Uses Signed App to Bypass Apple Gatekeeper
πŸ“‘
OpenAI is reportedly testing Claude-like Skills for ChatGPT