Category: CyberSecurityNews

Threat Actors Allegedly Listed Veeam RCE Exploit for Sale on Dark Web
30
Sep
2025

Threat Actors Allegedly Listed Veeam RCE Exploit for Sale on Dark Web

Veeam Backup & Replication, a cornerstone of many enterprises’ data protection strategy, has reportedly become the focus of a new…

Google Gemini Vulnerabilities Let Attackers Exfiltrate User’s Saved Data and Location
30
Sep
2025

Google Gemini Vulnerabilities Let Attackers Exfiltrate User’s Saved Data and Location

Three new vulnerabilities in Google’s Gemini AI assistant suite could have allowed attackers to exfiltrate users’ saved information and location…

CISA Warns of Linux Sudo Vulnerability Actively Exploited in Attacks
30
Sep
2025

CISA Warns of Linux Sudo Vulnerability Actively Exploited in Attacks

CISA has issued an urgent advisory regarding a critical vulnerability in the Linux and Unix sudo utility CVE-2025-32463 that is…

Linux 6.17 Released With Fix for use-after-free Vulnerabilities
30
Sep
2025

Linux 6.17 Released With Fix for use-after-free Vulnerabilities

Linux Torvalds has announced the release of Linux Kernel 6.17, a new version focused on stability and incremental improvements rather…

Hackers Actively Scanning to Exploit Palo Alto Networks PAN-OS Global Protect Vulnerability
30
Sep
2025

Hackers Actively Scanning to Exploit Palo Alto Networks PAN-OS Global Protect Vulnerability

Security researchers are observing a significant increase in internet-wide scans targeting the critical PAN-OS GlobalProtect vulnerability (CVE-2024-3400).  Exploit attempts have…

Tesla's Telematics Control Unit Vulnerability Let Attackers Gain Code Execution as Root
30
Sep
2025

Tesla’s Telematics Control Unit Vulnerability Let Attackers Gain Code Execution as Root

A security vulnerability in Tesla’s Telematics Control Unit (TCU) allowed attackers with physical access to bypass security measures and gain…

Lunar Spider Infected Windows Machine in Single Click and Harvested Login Credentials
30
Sep
2025

Lunar Spider Infected Windows Machine in Single Click and Harvested Login Credentials

Lunar Spider, a newly observed malware strain, has emerged as a potent threat to Windows environments by compromising systems in…

Beer Brewing Giant Asahi Halts Production Following Cyberattack
30
Sep
2025

Beer Brewing Giant Asahi Halts Production Following Cyberattack

Japanese beverage conglomerate Asahi Group Holdings has halted production at its domestic factories following a significant cyberattack that crippled its…

Fake Postmark MCP Server Silently Stole Thousands of Emails With a Single Line of Malicious Code
30
Sep
2025

Fake Postmark MCP Server Silently Stole Thousands of Emails With a Single Line of Malicious Code

A malicious npm package masquerading as the official Postmark MCP Server has been exfiltrating user emails to an external server. …

VMware vCenter and NSX Vulnerabilities Let Attackers Enumerate Valid Usernames
30
Sep
2025

VMware vCenter and NSX Vulnerabilities Let Attackers Enumerate Valid Usernames

VMware has disclosed critical security vulnerabilities in vCenter Server and NSX platforms that could allow attackers to enumerate valid usernames…

VMware Tools and Aria Operations Vulnerabilities Let Attackers Escalate Privileges to Root
30
Sep
2025

VMware Tools and Aria Operations Vulnerabilities Let Attackers Escalate Privileges to Root

VMware has released an advisory to address three high-severity vulnerabilities in VMware Aria Operations, VMware Tools, VMware Cloud Foundation, VMware…

VMware Tools and Aria 0-Day Vulnerability Exploited for Privilege Escalation and Code Execution
30
Sep
2025

VMware Tools and Aria 0-Day Vulnerability Exploited for Privilege Escalation and Code Execution

A zero-day local privilege escalation vulnerability in VMware Tools and VMware Aria Operations is being actively exploited in the wild….