Vulnerabilities Exploited Vulnerability Puts 5,000 Ivanti VPN Appliances at Risk More than 5,000 Ivanti Connect Secure appliances are vulnerable to attacks exploiting CVE-2025-22457, which has been used by Chinese hackers. Ionut ArghireApril 8, 2025
Mobile & Wireless Call Records of Millions Exposed by Verizon App Vulnerability A patch has been released for a serious information disclosure vulnerability affecting a Verizon call filtering application. Eduard KovacsApril 4, 2025
Vulnerabilities Critical Apache Parquet Vulnerability Leads to Remote Code Execution A critical vulnerability in Apache Parquet can be exploited to execute arbitrary code remotely, leading to complete system compromise. Ionut ArghireApril 4, 2025
Vulnerabilities Halo ITSM Vulnerability Exposed Organizations to Remote Hacking An unauthenticated SQL injection vulnerability in Halo ITSM could have been exploited to read, modify, or insert data. Eduard KovacsApril 3, 2025
Vulnerabilities Vulnerabilities Expose Cisco Meraki and ECE Products to DoS Attacks Cisco fixes two high-severity denial-of-service vulnerabilities in Meraki devices and Enterprise Chat and Email. Ionut ArghireApril 3, 2025
Vulnerabilities Chrome 135, Firefox 137 Patch High-Severity Vulnerabilities Chrome 135 and Firefox 137 were released on Tuesday with fixes for several high-severity memory safety vulnerabilities. Ionut ArghireApril 2, 2025
Vulnerabilities Hackers Looking for Vulnerable Palo Alto Networks GlobalProtect Portals GreyNoise warns of a coordinated effort probing the internet for potentially vulnerable Palo Alto Networks GlobalProtect instances. Ionut ArghireApril 1, 2025
Vulnerabilities Critical Vulnerability Found in Canon Printer Drivers Microsoft’s offensive security team warned Canon about a critical code execution vulnerability in printer drivers. Eduard KovacsApril 1, 2025
Vulnerabilities CrushFTP Blames Security Firms for Fast Exploitation of Vulnerability Shadowserver has started seeing exploitation attempts aimed at a CrushFTP vulnerability tracked as CVE-2025-2825 and CVE-2025-31161. Eduard KovacsApril 1, 2025
Vulnerabilities Splunk Patches Dozens of Vulnerabilities Splunk patches high-severity remote code execution and information disclosure flaws in Splunk Enterprise and Secure Gateway App. Ionut ArghireMarch 27, 2025
ICS/OT More Solar System Vulnerabilities Expose Power Grids to Hacking Forescout has found dozens of vulnerabilities in solar power systems from Sungrow, Growatt and SMA. Eduard KovacsMarch 27, 2025
ICS/OT Vulnerabilities Allow Remote Hacking of Inaba Plant Monitoring Cameras Production line monitoring cameras made by Inaba can be hacked for surveillance and sabotage, but they remain unpatched. Eduard KovacsMarch 26, 2025