THREAT OPS › Threat News
Threat Intelligence News
12298 reports from 110+ open cyber-threat-intelligence sources — APT activity, malware, vulnerabilities and campaigns, newest first.
- Accelerating adoption of AI for cybersecurity at DEF CON 33google_security · 2025-09-24
- [NVD] CVE-2025-20327 (HIGH 7.7) — A vulnerability in the web UI of Cisco IOS Software could allow an authenticated, remote attacker with low privileges to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to improper input validation. An attacker could exploit this vulnnvd · 2025-09-24
- [NVD] CVE-2025-20313 (MEDIUM 6.7) — Multiple vulnerabilities in Cisco IOS XE Software of could allow an authenticated, local attacker with level-15 privileges or an unauthenticated attacker with physical access to the device to execute persistent code at boot time and break the chain of trust. These vulnerabilitnvd · 2025-09-24
- [NVD] CVE-2025-20312 (HIGH 7.7) — A vulnerability in the Simple Network Management Protocol (SNMP) subsystem of Cisco IOS XE Software could allow an authenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to improper error handling when parsinvd · 2025-09-24
- [NVD] CVE-2025-20311 (HIGH 7.4) — A vulnerability in the handling of certain Ethernet frames in Cisco IOS XE Software for Catalyst 9000 Series Switches could allow an unauthenticated, adjacent attacker to cause an egress port to become blocked and drop all outbound traffic. This vulnerability is due to impropenvd · 2025-09-24
- [NVD] CVE-2025-20160 (HIGH 8.1) — A vulnerability in the implementation of the TACACS+ protocol in Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to view sensitive data or bypass authentication. This vulnerability exists because the system does not properly check nvd · 2025-09-24
- [NVD] CVE-2025-20149 (MEDIUM 6.5) — A vulnerability in the CLI of Cisco IOS Software and Cisco IOS XE Software could allow an authenticated, local attacker to cause an affected device to reload unexpectedly, resulting in a denial of service (DoS) condition. This vulnerability is due to a buffer overflow. An attanvd · 2025-09-24
- Broken Trust: Fixed Supermicro BMC Bug Gains a New Life in Two New Vulnerabilitiesbinarly · 2025-09-24
- [NVD] CVE-2025-4993 (CRITICAL 9.1) — Untrusted Pointer Dereference vulnerability in RTI Connext Professional (Core Libraries) allows Pointer Manipulation. This issue affects Connext Professional: from 7.4.0 before 7.6.0, from 7.0.0 before 7.3.0.10, from 6.1.0 before 6.1.2.27, from 6.0.0 before 6.0.1.43, from 5.3.0 bnvd · 2025-09-23
- [NVD] CVE-2025-4582 (HIGH 7.1) — Buffer Over-read, Off-by-one Error vulnerability in RTI Connext Professional (Core Libraries) allows File Manipulation, Overread Buffers. This issue affects Connext Professional: from 7.4.0 before 7.6.0, from 7.0.0 before 7.3.0.8, from 6.1.0 before 6.1.2.26, from 6.0.0 before 6.0nvd · 2025-09-23
- [NVD] CVE-2025-39862 (HIGH 8.8) — In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7915: fix list corruption after hardware restart Since stations are recreated from scratch, all lists that wcids are added to must be cleared before calling ieee80211_restart_hw. Set wcid->sta = 0nvd · 2025-09-19
- [NVD] CVE-2025-10035 (CRITICAL 10.0) — A deserialization vulnerability in the License Servlet of Fortra's GoAnywhere MFT allows an actor with a validly forged license response signature to deserialize an arbitrary actor-controlled object, possibly leading to command injection.nvd · 2025-09-18
- [NVD] CVE-2022-50418 (MEDIUM 5.5) — In the Linux kernel, the following vulnerability has been resolved: wifi: ath11k: mhi: fix potential memory leak in ath11k_mhi_register() mhi_alloc_controller() allocates a memory space for mhi_ctrl. When gets some error, mhi_ctrl should be freed with mhi_free_controller(). Butnvd · 2025-09-18
- [NVD] CVE-2022-50407 (MEDIUM 5.5) — In the Linux kernel, the following vulnerability has been resolved: crypto: hisilicon/qm - increase the memory of local variables Increase the buffer to prevent stack overflow by fuzz test. The maximum length of the qos configuration buffer is 256 bytes. Currently, the value ofnvd · 2025-09-18
- [NVD] CVE-2022-50393 (HIGH 7.8) — In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: SDMA update use unlocked iterator SDMA update page table may be called from unlocked context, this generate below warning. Use unlocked iterator to handle this case. WARNING: CPU: 0 PID: 1475 at drnvd · 2025-09-18
- [NVD] CVE-2022-50378 (HIGH 7.8) — In the Linux kernel, the following vulnerability has been resolved: drm/meson: reorder driver deinit sequence to fix use-after-free bug Unloading the driver triggers the following KASAN warning: [ +0.006275] ============================================================= [ +0.nvd · 2025-09-18
- [NVD] CVE-2022-50376 (MEDIUM 5.5) — In the Linux kernel, the following vulnerability has been resolved: orangefs: Fix kmemleak in orangefs_{kernel,client}_debug_init() When insert and remove the orangefs module, there are memory leaked as below: unreferenced object 0xffff88816b0cc000 (size 2048): comm "insmod"nvd · 2025-09-18
- [NVD] CVE-2025-10592 (MEDIUM 6.3) — A security vulnerability has been detected in itsourcecode Online Public Access Catalog OPAC 1.0. This impacts an unknown function of the file mysearch.php of the component POST Parameter Handler. Such manipulation of the argument search_field/search_text leads to sql injection. nvd · 2025-09-17
- [NVD] CVE-2025-9242 (CRITICAL 9.8) — An Out-of-bounds Write vulnerability in the WatchGuard Fireware OS iked process may allow a remote unauthenticated attacker to execute arbitrary code. This vulnerability affects both the mobile user VPN with IKEv2 and the branch office VPN using IKEv2 when configured with a dynamnvd · 2025-09-17
- [NVD] CVE-2025-4953 (HIGH 7.4) — A flaw was found in Podman. In a Containerfile or Podman, data written to RUN --mount=type=bind mounts during the podman build is not discarded. This issue can lead to files created within the container appearing in the temporary build context directory on the host, leaving the cnvd · 2025-09-16
- [NVD] CVE-2025-39833 (MEDIUM 5.5) — In the Linux kernel, the following vulnerability has been resolved: mISDN: hfcpci: Fix warning when deleting uninitialized timer With CONFIG_DEBUG_OBJECTS_TIMERS unloading hfcpci module leads to the following splat: [ 250.215892] ODEBUG: assert_init not available (active statnvd · 2025-09-16
- [NVD] CVE-2023-53292 (MEDIUM 5.5) — In the Linux kernel, the following vulnerability has been resolved: blk-mq: fix NULL dereference on q->elevator in blk_mq_elv_switch_none After grabbing q->sysfs_lock, q->elevator may become NULL because of elevator switch. Fix the NULL dereference on q->elevator by checking invd · 2025-09-16
- [NVD] CVE-2025-6947 — A stored cross-site scripting (XSS) vulnerability exists in the management interface of WatchGuard Firebox appliances via the SIP Proxy configuration. An authenticated remote attacker with administrator privileges could exploit this vulnerability to execute arbitrary JavaScript cnvd · 2025-09-15
- Supporting Rowhammer research to protect the DRAM ecosystemgoogle_security · 2025-09-15
- Post-quantum security for SSH access on GitHubgithub_security_lab · 2025-09-15
- [NVD] CVE-2022-50336 (MEDIUM 5.5) — In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: Add null pointer check to attr_load_runs_vcn Some metadata files are handled before MFT. This adds a null pointer check for some corner cases that could lead to NPD while reading these metadata files nvd · 2025-09-15
- [NVD] CVE-2022-50316 (MEDIUM 5.5) — In the Linux kernel, the following vulnerability has been resolved: orangefs: Fix kmemleak in orangefs_sysfs_init() When insert and remove the orangefs module, there are kobjects memory leaked as below: unreferenced object 0xffff88810f95af00 (size 64): comm "insmod", pid 783nvd · 2025-09-15
- [NVD] CVE-2022-50303 (HIGH 7.8) — In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: Fix double release compute pasid If kfd_process_device_init_vm returns failure after vm is converted to compute vm and vm->pasid set to compute pasid, KFD will not take pdd->drm_file reference. As anvd · 2025-09-15
- [NVD] CVE-2022-50273 (MEDIUM 5.5) — In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to do sanity check on destination blkaddr during recovery As Wenqing Liu reported in bugzilla: https://bugzilla.kernel.org/show_bug.cgi?id=216456 loop5: detected capacity change from 0 to 131072 F2Fnvd · 2025-09-15
- [NVD] CVE-2022-50262 (MEDIUM 5.5) — In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: Validate BOOT record_size When the NTFS BOOT record_size field < 0, it represents a shift value. However, there is no sanity check on the shift result and the sbi->record_bits calculation through blksnvd · 2025-09-15
- [NVD] CVE-2022-50256 (HIGH 7.8) — In the Linux kernel, the following vulnerability has been resolved: drm/meson: remove drm bridges at aggregate driver unbind time drm bridges added by meson_encoder_hdmi_init and meson_encoder_cvbs_init were not manually removed at module unload time, which caused dangling refenvd · 2025-09-15
- [NVD] CVE-2025-9086 (HIGH 7.5) — 1. A cookie is set using the `secure` keyword for `https://target` 2. curl is redirected to or otherwise made to speak with `http://target` (same hostname, but using clear text HTTP) using the same cookie set 3. The same cookie name is set - but with only a slash as path (`patnvd · 2025-09-12
- [NVD] CVE-2025-10148 (MEDIUM 5.3) — curl's WebSocket code did not update the 32-bit mask pattern for each new outgoing frame as the specification says. Instead it used a fixed mask that persisted and was used throughout the entire connection. A predictable mask pattern allows for a malicious server to induce traffnvd · 2025-09-12
- [NVD] CVE-2025-39758 (CRITICAL 9.8) — In the Linux kernel, the following vulnerability has been resolved: RDMA/siw: Fix the sendmsg byte count in siw_tcp_sendpages Ever since commit c2ff29e99a76 ("siw: Inline do_tcp_sendpages()"), we have been doing this: static int siw_tcp_sendpages(struct socket *s, struct page nvd · 2025-09-11
- [NVD] CVE-2025-20248 (MEDIUM 6.0) — A vulnerability in the installation process of Cisco IOS XR Software could allow an authenticated, local attacker to bypass Cisco IOS XR Software image signature verification and load unsigned software on an affected device. To exploit this vulnerability, the attacker must have rnvd · 2025-09-10
- How Pixel and Android are bringing a new level of trust to your images with C2PA Content Credentialsgoogle_security · 2025-09-10
- Signed and Dangerous: BYOVD Attacks on Secure Bootbinarly · 2025-09-10
- [NVD] CVE-2025-8277 (LOW 3.1) — A flaw was found in libssh's handling of key exchange (KEX) processes when a client repeatedly sends incorrect KEX guesses. The library fails to free memory during these rekey operations, which can gradually exhaust system memory. This issue can lead to crashes on the client sidenvd · 2025-09-09
- Blurring the Lines: Intrusion Shows Connection With Three Major Ransomware Gangsdfirreport · 2025-09-08
- [NVD] CVE-2025-10072 (MEDIUM 6.3) — A vulnerability was found in Portabilis i-Educar up to 2.10. This issue affects some unknown processing of the file /matricula/[ID_STUDENT]/enturmar/. Performing a manipulation results in improper access controls. It is possible to initiate the attack remotely. The exploit has benvd · 2025-09-07
- [NVD] CVE-2025-58375 (HIGH 8.1) — Frappe is a full-stack web application framework. Versions 14.96.9 and below, and 15.0.0 through 15.71.0 have an insecure endpoint parameter that is vulnerable to error-based SQL Injection through lack of validation. Sensitive information such as versioning can be retrieved. Thisnvd · 2025-09-06
- [NVD] CVE-2025-9566 (HIGH 8.1) — There's a vulnerability in podman where an attacker may use the kube play command to overwrite host files when the kube file container a Secrete or a ConfigMap volume mount and such volume contains a symbolic link to a host file path. In a successful attack, the attacker can onlynvd · 2025-09-05
- [NVD] CVE-2025-39682 (CRITICAL 9.8) — In the Linux kernel, the following vulnerability has been resolved: tls: fix handling of zero-length records on the rx_list Each recvmsg() call must process either - only contiguous DATA records (any number of them) - one non-DATA record If the next record has different typenvd · 2025-09-05
- [NVD] CVE-2025-10012 (MEDIUM 6.3) — A security vulnerability has been detected in Portabilis i-Educar up to 2.10. The impacted element is an unknown function of the file educar_historico_escolar_lst.php. Such manipulation of the argument ref_cod_aluno leads to sql injection. The attack can be executed remotely. Thenvd · 2025-09-05
- Supercharging Your Threat Hunts: Join VirusTotal at Labscon for a Workshop on Automation and LLMsvirustotal_blog · 2025-09-05
- Uncovering a Colombian Malware Campaign with AI Code Analysisvirustotal_blog · 2025-09-04
- [NVD] CVE-2025-9467 — When the Vaadin Upload's start listener is used to validate metadata about an incoming upload, it is possible to bypass the upload validation. Users of affected versions should apply the following mitigation or upgrade. Releases that have fixed this issue include: Product vernvd · 2025-09-04
- [NVD] CVE-2025-9189 (HIGH 7.8) — There is an out of bounds write vulnerability due to improper bounds checking resulting in a large destination address when parsing a DSB file with Digilent DASYLab. This vulnerability may result in arbitrary code execution. Successful exploitation requires an attacker to get anvd · 2025-09-02
- [NVD] CVE-2025-9784 (HIGH 7.5) — A flaw was found in Undertow where malformed client requests can trigger server-side stream resets without triggering abuse counters. This issue, referred to as the "MadeYouReset" attack, allows malicious clients to induce excessive server workload by repeatedly causing server-sinvd · 2025-09-02
- Wrap Up: The Month of AI Bugsembracethered · 2025-08-31
- AgentHopper: An AI Virusembracethered · 2025-08-30
- [NVD] CVE-2025-9606 (MEDIUM 6.3) — A vulnerability was detected in Portabilis i-Educar up to 2.10. Affected by this vulnerability is an unknown functionality of the file /intranet/agenda_preferencias.php. Performing a manipulation of the argument cod_agenda results in sql injection. The attack may be initiated remnvd · 2025-08-29
- Windsurf MCP Integration: Missing Security Controls Put Users at Riskembracethered · 2025-08-28
- Integrating Code Insight into Reverse Engineering Workflowsvirustotal_blog · 2025-08-28
- [NVD] CVE-2025-34163 — Dongsheng Logistics Software exposes an unauthenticated endpoint at /CommMng/Print/UploadMailFile that fails to enforce proper file type validation and access control. An attacker can upload arbitrary files, including executable scripts such as .ashx, via a crafted multipart/formnvd · 2025-08-27
- [NVD] CVE-2023-7309 — A path traversal vulnerability exists in the Dahua Smart Park Integrated Management Platform (also referred to as the Dahua Smart Campus Integrated Management Platform), affecting the SOAP-based GIS bitmap upload interface. The flaw allows unauthenticated remote attackers to uplonvd · 2025-08-27
- [NVD] CVE-2025-20296 (MEDIUM 5.4) — A vulnerability in the web-based management interface of Cisco UCS Manager Software could allow an authenticated, remote attacker to conduct a stored cross-site scripting (XSS) attack against a user of the interface. This vulnerability is due to insufficient validation of usernvd · 2025-08-27
- Cline: Vulnerable To Data Exfiltration And How To Protect Your Dataembracethered · 2025-08-27
- [NVD] CVE-2025-9531 (MEDIUM 6.3) — A vulnerability was detected in Portabilis i-Educar up to 2.10. This affects an unknown function of the file /intranet/agenda.php of the component Agenda Module. Performing a manipulation of the argument cod_agenda results in sql injection. It is possible to initiate the attack rnvd · 2025-08-27
- AWS Kiro: Arbitrary Code Execution via Indirect Prompt Injectionembracethered · 2025-08-26
- [NVD] CVE-2025-53811 — The configuration of Mosh-Pro on macOS, specifically the "RunAsNode" fuse enabled, allows a local attacker with unprivileged access to execute arbitrary code that inherits Mosh-Pro TCC (Transparency, Consent, and Control) permissions. Acquired resource access is limited to previnvd · 2025-08-26
- Applying AI Analysis to PDF Threatsvirustotal_blog · 2025-08-25
- Safeguarding VS Code against prompt injectionsgithub_security_lab · 2025-08-25
- How Prompt Injection Exposes Manus' VS Code Server to the Internetembracethered · 2025-08-25
- How Deep Research Agents Can Leak Your Dataembracethered · 2025-08-25
- Sneaking Invisible Instructions by Developers in Windsurfembracethered · 2025-08-23
- Windsurf: Memory-Persistent Data Exfiltration (SpAIware Exploit)embracethered · 2025-08-22
- [NVD] CVE-2025-38660 (CRITICAL 9.8) — In the Linux kernel, the following vulnerability has been resolved: [ceph] parse_longname(): strrchr() expects NUL-terminated string ... and parse_longname() is not guaranteed that. That's the reason why it uses kmemdup_nul() to build the argument for kstrtou64(); the problem nvd · 2025-08-22
- [NVD] CVE-2025-38621 (MEDIUM 5.5) — In the Linux kernel, the following vulnerability has been resolved: md: make rdev_addable usable for rcu mode Our testcase trigger panic: BUG: kernel NULL pointer dereference, address: 00000000000000e0 ... Oops: Oops: 0000 [#1] SMP NOPTI CPU: 2 UID: 0 PID: 85 Comm: kworker/2:1nvd · 2025-08-22
- [NVD] CVE-2025-38616 (HIGH 7.8) — In the Linux kernel, the following vulnerability has been resolved: tls: handle data disappearing from under the TLS ULP TLS expects that it owns the receive queue of the TCP socket. This cannot be guaranteed in case the reader of the TCP socket entered before the TLS ULP was invd · 2025-08-22
- Hijacking Windsurf: How Prompt Injection Leaks Developer Secretsembracethered · 2025-08-21
- [NVD] CVE-2025-9236 (MEDIUM 6.3) — A vulnerability has been found in Portabilis i-Educar up to 2.10. This affects an unknown function of the file /intranet/educar_tipo_usuario_lst.php of the component Tipos de usuàrio Page. Such manipulation of the argument nm_tipo/descrição leads to sql injection. The attack may nvd · 2025-08-20
- [NVD] CVE-2025-20131 (MEDIUM 4.9) — A vulnerability in the GUI of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker with administrative privileges to upload files to an affected device. This vulnerability is due to improper validation of the file copy function. An attacker could nvd · 2025-08-20
- [NVD] CVE-2025-4877 (MEDIUM 4.5) — There's a vulnerability in the libssh package where when a libssh consumer passes in an unexpectedly large input buffer to ssh_get_fingerprint_hash() function. In such cases the bin_to_base64() function can experience an integer overflow leading to a memory under allocation, whennvd · 2025-08-20
- [NVD] CVE-2025-4437 (MEDIUM 5.7) — There's a vulnerability in the CRI-O application where when container is launched with securityContext.runAsUser specifying a non-existent user, CRI-O attempts to create the user, reading the container's entire /etc/passwd file into memory. If this file is excessively large, it cnvd · 2025-08-20
- Amazon Q Developer for VS Code Vulnerable to Invisible Prompt Injectionembracethered · 2025-08-20
- Amazon Q Developer: Remote Code Execution with Prompt Injectionembracethered · 2025-08-19
- [NVD] CVE-2025-38591 (MEDIUM 5.5) — In the Linux kernel, the following vulnerability has been resolved: bpf: Reject narrower access to pointer ctx fields The following BPF program, simplified from a syzkaller repro, causes a kernel warning: r0 = *(u8 *)(r1 + 169); exit; With pointer field sk being at ofnvd · 2025-08-19
- Amazon Q Developer: Secrets Leaked via DNS and Prompt Injectionembracethered · 2025-08-18
- Data Exfiltration via Image Rendering Fixed in Amp Codeembracethered · 2025-08-17
- Amp Code: Invisible Prompt Injection Fixed by Sourcegraphembracethered · 2025-08-16
- [NVD] CVE-2023-4130 (HIGH 8.1) — In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix wrong next length validation of ea buffer in smb2_set_ea() There are multiple smb2_ea_info buffers in FILE_FULL_EA_INFORMATION request from client. ksmbd find next smb2_ea_info using ->NextEntryOffsenvd · 2025-08-16
- [NVD] CVE-2023-3867 (CRITICAL 9.1) — In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix out of bounds read in smb2_sess_setup ksmbd does not consider the case of that smb2 session setup is in compound request. If this is the second payload of the compound, OOB read issue occurs while prnvd · 2025-08-16
- [NVD] CVE-2023-3865 (HIGH 8.1) — In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix out-of-bound read in smb2_write ksmbd_smb2_check_message doesn't validate hdr->NextCommand. If ->NextCommand is bigger than Offset + Length of smb2 write, It will allow oversized smb2 write length. Invd · 2025-08-16
- [NVD] CVE-2023-32246 (MEDIUM 5.5) — In the Linux kernel, the following vulnerability has been resolved: ksmbd: call rcu_barrier() in ksmbd_server_exit() racy issue is triggered the bug by racing between closing a connection and rmmod. In ksmbd, rcu_barrier() is not called at module unload time, so nothing preventnvd · 2025-08-16
- [NVD] CVE-2025-38525 (HIGH 7.5) — In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix irq-disabled in local_bh_enable() The rxrpc_assess_MTU_size() function calls down into the IP layer to find out the MTU size for a route. When accepting an incoming call, this is called from rxrpc_nnvd · 2025-08-16
- [NVD] CVE-2025-38524 (HIGH 7.5) — In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix recv-recv race of completed call If a call receives an event (such as incoming data), the call gets placed on the socket's queue and a thread in recvmsg can be awakened to go and process it. Once thnvd · 2025-08-16
- Google Jules is Vulnerable To Invisible Prompt Injectionembracethered · 2025-08-15
- [NVD] CVE-2025-53341 (MEDIUM 4.3) — Missing Authorization vulnerability in Pixel Makers Creative INC. App, SaaS & Software Startup Tech Theme - Stratus allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects App, SaaS & Software Startup Tech Theme - Stratus: from n/a before 4.2.nvd · 2025-08-14
- [NVD] CVE-2025-20224 (MEDIUM 5.8) — A vulnerability in the Internet Key Exchange Version 2 (IKEv2) module of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to trigger a memory leak, resulting in a dennvd · 2025-08-14
- Jules Zombie Agent: From Prompt Injection to Remote Controlembracethered · 2025-08-14
- Code Insight Expands to Uncover Risks Across the Software Supply Chainvirustotal_blog · 2025-08-14
- CrossC2 Expanding Cobalt Strike Beacon to Cross-Platform Attacksjpcert_blog · 2025-08-14
- Google Jules: Vulnerable to Multiple Data Exfiltration Issuesembracethered · 2025-08-14
- GitHub Copilot: Remote Code Execution via Prompt Injection (CVE-2025-53773)embracethered · 2025-08-12
- [NVD] CVE-2025-25256 (CRITICAL 9.8) — An improper neutralization of special elements used in an OS command ('OS Command Injection') vulnerability [CWE-78] vulnerability in Fortinet FortiSIEM 7.3.0 through 7.3.1, FortiSIEM 7.2.0 through 7.2.5, FortiSIEM 7.1.0 through 7.1.7, FortiSIEM 7.0.0 through 7.0.3, FortiSIEM 6.7nvd · 2025-08-12
- Android’s pKVM Becomes First Globally Certified Software to Achieve Prestigious SESIP Level 5 Security Certificationgoogle_security · 2025-08-12
- Persistent Risk: XZ Utils Backdoor Still Lurking in Docker Imagesbinarly · 2025-08-12
- Go Get ‘Em: Updates to Volexity Golang Toolingvolexity · 2025-08-11
- Claude Code: Data Exfiltration with DNS (CVE-2025-55284)embracethered · 2025-08-11