Author: Cybernoz

Fortinet FortiWeb Vulnerability (CVE-2025-64446) Exploited in the Wild for Full Admin Takeover
16
Dec
2025

Fortinet FortiWeb Vulnerability (CVE-2025-64446) Exploited in the Wild for Full Admin Takeover

Threat actors have been actively exploiting a critical path-traversal vulnerability in Fortinet’s FortiWeb web application firewall since early October 2025, allowing unauthenticated…

Most Parked Domains Now Serving Malicious Content – Krebs on Security
16
Dec
2025

Most Parked Domains Now Serving Malicious Content – Krebs on Security

Direct navigation — the act of visiting a website by manually typing a domain name in a web browser —…

Android logo
16
Dec
2025

Android threats in 2025: When your phone becomes the main attack surface

Android users spent 2025 walking a tighter rope than ever, with malware, data‑stealing apps, and SMS‑borne scams all climbing sharply…

Windows Admin Center Vulnerability (CVE-2025-64669) Let Attackers Escalate Privileges
16
Dec
2025

Windows Admin Center Vulnerability (CVE-2025-64669) Let Attackers Escalate Privileges

A new local privilege escalation vulnerability in Microsoft’s Windows Admin Center (WAC), affecting versions up to 2.4.2.1 and environments running…

JumpCloud Remote Assist Flaw Lets Users Gain Full Control of Company Devices
16
Dec
2025

JumpCloud Remote Assist Flaw Lets Users Gain Full Control of Company Devices – Hackread – Cybersecurity News, Data Breaches, AI, and More

A major security problem has been found in the JumpCloud Remote Assist for Windows agent, a tool used by over…

The Risks of Integrating LLMs into Enterprise Apps
16
Dec
2025

The Risks of Integrating LLMs into Enterprise Apps

Integrating LLMs (large language models) with enterprise applications enables organizations to directly embed LLMs into operations for a wide range…

Exchange Online
16
Dec
2025

Microsoft to block Exchange Online access for outdated mobile devices

Microsoft announced on Monday that it will soon block mobile devices running outdated email software from accessing Exchange Online services until…

NoName057(16) Hackers Using DDoSia DDoS Tool to Attack Organizations in NATO
16
Dec
2025

NoName057(16) Hackers Using DDoSia DDoS Tool to Attack Organizations in NATO

NoName057(16), also known as 05716nnm or NoName05716, has emerged as a significant threat targeting NATO member states and European organizations….

Link11 Identifies Five Cybersecurity Trends Set to Shape European Defense Strategies in 2026
16
Dec
2025

Link11 Identifies Five Cybersecurity Trends Set to Shape European Defense Strategies in 2026

Frankfurt am Main, Germany, December 16th, 2025, CyberNewsWire Link11, a European provider of web infrastructure security solutions, has released new…

European police busts Ukraine scam call centers
16
Dec
2025

European police busts Ukraine scam call centers

Law enforcement agencies from several European countries have arrested twelve persons suspected of being involved in scamming victims across Europe,…

Amazon Exposes Years-Long GRU Cyber Campaign Targeting Energy and Cloud Infrastructure
16
Dec
2025

Amazon Exposes Years-Long GRU Cyber Campaign Targeting Energy and Cloud Infrastructure

Dec 16, 2025Ravie LakshmananCloud Security / Vulnerability Amazon’s threat intelligence team has disclosed details of a “years-long” Russian state-sponsored campaign…

FreePBX Vulnerabilities Enables Authentication Bypass that Leads Remote Code Execution
16
Dec
2025

FreePBX Vulnerabilities Enables Authentication Bypass that Leads Remote Code Execution

FreePBX has addressed critical vulnerabilities enabling authentication bypass and remote code execution in its Endpoint Manager module. Discovered by Horizon3.ai…