watchTowr Labs has released a detailed analysis of CVE-2025-54309, a zero-day authentication bypass vulnerability in CrushFTP, the...
zero-day
The Cloud Software Group (CSG) has released urgent security updates to address three high-severity vulnerabilities affecting NetScaler...
A high-severity zero-day vulnerability in Google Chrome’s V8 JavaScript engine, tracked as CVE-2025-5419, has been exposed, with...
BI.ZONE Threat Intelligence uncovered a series of targeted cyber-espionage campaigns conducted by the Paper Werewolf (GOFFEE) cluster,...
Apple has released urgent security updates to patch a zero-day vulnerability actively exploited in the wild, warning...
Microsoft Threat Intelligence has uncovered PipeMagic, a sophisticated modular backdoor used by the financially motivated threat actor...
In April, Microsoft has patched a high-severity, zero-day vulnerability (CVE-2025-29824) in the Windows Common Log File System...
Kaspersky Labs has released a new report shedding light on the persistent threat posed by PipeMagic, a...
Microsoft’s August 2025 Patch Tuesday brings security updates for 119 vulnerabilities, including 13 rated Critical and 91...
Fortinet has issued an urgent security advisory for a critical remote unauthenticated command injection vulnerability affecting multiple...
Security researchers at ESET have uncovered a zero-day path traversal vulnerability in the Windows version of WinRAR...
The Cybersecurity and Infrastructure Security Agency (CISA) has released an in-depth Malware Analysis Report warning of a...
Huntress has issued a critical alert about what appears to be a zero-day vulnerability in SonicWall Secure...
A newly released Metasploit module highlights the critical threat posed by an actively exploited remote code execution...
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has updated its Known Exploited Vulnerabilities (KEV) Catalog with four...
Last week, the Microsoft Security Response Center (MSRC) issued an urgent advisory regarding active exploitation of critical...
Cisco has issued an urgent update to its security advisory, revealing that three critical remote code execution...
In April 2025, Microsoft issued a critical security patch addressing a serious vulnerability in the Windows Common...
On the evening of July 18, 2025, Eye Security identified an active, large-scale exploitation of a newly...
Microsoft has issued an urgent security advisory for on-premises SharePoint Server customers in response to active exploitation...
CrushFTP, a widely used secure file transfer server, has issued an urgent advisory regarding a critical zero-day...
A critical vulnerability was found in Cisco Identity Services Engine (ISE) and Cisco ISE-PIC. Tracked as CVE-2025-20337,...