Vulnerabilities Oracle Patches Exploited Agile PLM Zero-Day Oracle has patched a high-severity information disclosure zero-day in Agile PLM that has been exploited in the wild. Ionut ArghireNovember 20, 2024
Malware & Threats Palo Alto Patches Firewall Zero-Day Exploited in Operation Lunar Peek Palo Alto Networks has released patches and CVEs for the firewall zero-days exploited in what the company calls Operation Lunar Peek. Eduard KovacsNovember 19, 2024
Malware & Threats Discontinued GeoVision Products Targeted in Botnet Attacks via Zero-Day A zero-day vulnerability affecting five discontinued GeoVision product models has been exploited by a botnet. Ionut ArghireNovember 18, 2024
Vulnerabilities Palo Alto Networks Releases IoCs for New Firewall Zero-Day Palo Alto Networks has released IoCs for the attacks exploiting a newly uncovered firewall zero-day vulnerability. Eduard KovacsNovember 18, 2024
Vulnerabilities CISA Warns of Two More Palo Alto Expedition Flaws Exploited in Attacks CISA has added two more Palo Alto Networks Expedition flaws, CVE-2024-9463 and CVE-2024-9465, to its KEV catalog. Eduard KovacsNovember 15, 2024
Vulnerabilities Palo Alto Networks Confirms New Firewall Zero-Day Exploitation Palo Alto Networks has confirmed that a zero-day is being exploited in attacks after investigating claims of a firewall remote code execution flaw. Eduard KovacsNovember 15, 2024
Vulnerabilities Windows Zero-Day Exploited by Russia Triggered With File Drag-and-Drop, Delete Actions The exploit for a new zero-day vulnerability in Windows is executed by deleting files, drag-and-dropping them, or right clicking on them. Ionut ArghireNovember 14, 2024
Vulnerabilities Unpatched Flaw in Legacy D-Link NAS Devices Exploited Days After Disclosure Exploitation attempts targeting CVE-2024-10914, a recently disclosed ‘won’t fix’ vulnerability affecting outdated D-Link NAS devices. Eduard KovacsNovember 14, 2024
Vulnerabilities Veeam Patches High-Severity Vulnerability as Exploitation of Previous Flaw Expands Veeam has released a hotfix for a high-severity authentication bypass vulnerability in Backup Enterprise Manager. Ionut ArghireNovember 11, 2024
Vulnerabilities Palo Alto Networks Expedition Vulnerability Exploited in Attacks, CISA Warns CISA has added a Palo Alto Networks Expedition flaw tracked as CVE-2024-5910 to its Known Exploited Vulnerabilities Catalog. Eduard KovacsNovember 8, 2024
Mobile & Wireless Google Patches Two Android Vulnerabilities Exploited in Targeted Attacks Google warns of the limited, targeted exploitation of two vulnerabilities resolved with the latest Android security update. Ionut ArghireNovember 5, 2024
Malware & Threats CyberPanel Vulnerabilities Exploited in Ransomware Attacks Shortly After Disclosure CyberPanel vulnerabilities have been exploited to compromise thousands of instances as part of ransomware attacks. Eduard KovacsOctober 31, 2024
Vulnerabilities New Fortinet Zero-Day Exploited for Months Before Patch A Fortinet zero-day tracked as CVE-2024-47575 and named FortiJump has been exploited since at least June 2024. Eduard KovacsOctober 24, 2024
Network Security Cisco Patches Vulnerability Exploited in Large-Scale Brute-Force Campaign Cisco has released patches for multiple vulnerabilities in ASA, FMC, and FTD products, including an exploited flaw. Ionut ArghireOctober 24, 2024
Vulnerabilities CISA Warns Recent Microsoft SharePoint RCE Flaw Exploited in Attacks CISA has added a recent Microsoft SharePoint Server remote code execution vulnerability to the KEV catalog. Ionut ArghireOctober 23, 2024
Mobile & Wireless Google Warns of Samsung Zero-Day Exploited in the Wild A zero-day vulnerability in Samsung mobile processors has been abused as part of an exploit chain for arbitrary code execution. Ionut ArghireOctober 22, 2024
Email Security Roundcube Webmail Vulnerability Exploited in Government Attack An XSS vulnerability in Roundcube Webmail has been targeted for code execution against a governmental organization in a CIS country. Ionut ArghireOctober 21, 2024
Malware & Threats Microsoft: macOS Vulnerability Potentially Exploited in Adware Attacks The Adload macOS adware potentially exploits a privacy bypass vulnerability resolved in Sequoia 15 last month. Ionut ArghireOctober 18, 2024
Vulnerabilities CISA Flags Critical SolarWinds Web Help Desk Bug for In-the-Wild Exploitation CISA warns that a critical-severity hardcoded credentials vulnerability in SolarWinds Web Help Desk is exploited in attacks. Ionut ArghireOctober 16, 2024
Vulnerabilities Tor Browser Update Patches Exploited Firefox Zero-Day Tor browser version 13.5.7 is rolling out with patches for an exploited zero-day vulnerability recently addressed in Firefox. Ionut ArghireOctober 14, 2024