Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Malware & Threats

Exploitation of Windows MMC zero-day is being pinned on a ransomware gang known as EncryptHub (an affiliate of RansomHub)

ICS/OT

Production line monitoring cameras made by Inaba can be hacked for surveillance and sabotage, but they remain unpatched.

Critical Next.js Vulnerability in Hacker Crosshairs

Vulnerabilities

Threat actors have started probing servers impacted by a critical-severity vulnerability in the web application development framework Next.js.

Cyberwarfare

The vulnerability, tracked as CVE-2025-2783, was chained with a second exploit for remote code execution in attacks targeting organizations in Russia.

Vulnerabilities

The authentication bypass vulnerability, tagged as CVE-2025-22230, carries a CVSS severity score of 7.8/10.

NIST Still Struggling to Clear Vulnerability Submissions Backlog in NVD

Government

The effects of the backlog are already being felt in vulnerability management circles where NVD data promises an enriched source of truth.

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest cybersecurity news, threats, and expert insights. Unsubscribe at any time.