The critical-severity bug in the Fireware OS’s iked process leads to unauthenticated remote code execution.
Hi, what are you looking for?
The critical-severity bug in the Fireware OS’s iked process leads to unauthenticated remote code execution.
The startup’s solution captures, verifies, and governs all AI interactions within an enterprise’s environment.
The hacking group has been using Group Policy to deploy cyberespionage tools on governmental networks.
The exchange has been allegedly involved in laundering money for ransomware groups and other transnational cybercriminal organizations.
Downloaded from a code library, the information pertains to current and former staff and affiliates, and to alumni and students.
Linked to the Aisuru IoT botnet, Kimwolf was seen launching over 1.7 billion DDoS attack commands and increasing its C&C domain’s popularity.
Tracked as CVE-2025-37164, the critical flaw could allow unauthenticated, remote attackers to execute arbitrary code.
Tracked as CVE-2025-59374, the issue is a software backdoor implanted in Asus Live Update in a supply chain attack.
Threat actors stole names, Social Security numbers, and financial and health information, and deployed ransomware on RBHA’s systems.
The medium-severity flaw has been exploited in combination with a critical bug for remote code execution.
The malware provides full device control and real-time surveillance capabilities like those of advanced spyware.
Led by Bain Capital Ventures, the investment round brings the total raised by the company to $146.5 million.
The malware hijacks purchase commissions, tracks users, removes security headers, injects hidden iframes, and bypasses CAPTCHA.
The startup takes an agentic approach to preventing vulnerability exploitation by uncovering exposure across assets.
The fresh investment comes less than six months after the startup’s seed funding announcement.
The company plans to accelerate product development, scale go-to-market efforts, and hire new talent.
The issue allows attackers to write arbitrary data to any file, or delete arbitrary files to obtain System privileges.
Threat actors are exploiting the two critical authentication bypass vulnerabilities against FortiGate appliances.
The sovereign smartphone OS runs along Android or iOS, allowing users to switch between secure, isolated environments.
Atlassian has released software updates for Bamboo, Bitbucket, Confluence, Crowd, Fisheye/Crucible, and Jira.