Category: CyberSecurityNews

Zoom Patches Multiple Vulnerabilities That Let Attackers Escalate Privileges
15
Jan
2025

Zoom Patches Multiple Vulnerabilities That Let Attackers Escalate Privileges

Zoom, the popular video conferencing platform, has addressed several vulnerabilities across its suite of applications, ranging from privilege escalation to…

Cisco Releases Security Updates Addressing Vulnerabilities in ThousandEyes and Snort
15
Jan
2025

Cisco Releases Security Updates Addressing Vulnerabilities in ThousandEyes and Snort

Cisco has released security vulnerabilities impacting its ThousandEyes Endpoint Agent for macOS and RoomOS, as well as its Snort detection…

CISA Released a Free AI Cybersecurity Collaboration Playbook (PDF)
15
Jan
2025

CISA Released a Free AI Cybersecurity Collaboration Playbook (PDF)

The Cybersecurity and Infrastructure Security Agency (CISA) has unveiled the AI Cybersecurity Collaboration Playbook, a new guidance document aimed at…

Windows OLE Remote Code Execution Vulnerability Could Be Exploited Via Email
15
Jan
2025

Windows OLE Remote Code Execution Vulnerability Could Be Exploited Via Email

Microsoft has disclosed a newly identified critical security vulnerability (CVE-2025-21298) affecting Object Linking and Embedding (OLE), a technology widely used…

CISA Adds Fortinet and Microsoft Zero-Day to Known Exploited Vulnerabilities Catalog
15
Jan
2025

CISA Adds Fortinet and Microsoft Zero-Day to Known Exploited Vulnerabilities Catalog

The Cybersecurity and Infrastructure Security Agency (CISA) has recently updated its Known Exploited Vulnerabilities (KEV) catalog to include critical zero-day…

Fortinet Released Security Updates to Fix 15 Vulnerabilities That Affect Multiple Products
14
Jan
2025

Fortinet Released Security Updates to Fix 15 Vulnerabilities That Affect Multiple Products

Fortinet has released a security update with the fixes for 15 vulnerabilities that affect multiple products with distinct security issues,…

Boost up Your SOC & DFIR Operations with ANY.RUN's Threat Intelligence Feeds
14
Jan
2025

Boost up Your SOC & DFIR Operations with ANY.RUN’s Threat Intelligence Feeds

Effective cyber threat detection and response depend on the ability to access actionable, real-time intelligence. ANY.RUN, a trusted name in…

Critical SAP NetWeaver Vulnerabilities Let Attacker Gain Access to the system
14
Jan
2025

Critical SAP NetWeaver Vulnerabilities Let Attacker Gain Access to the system

SAP has disclosed two critical vulnerabilities in its NetWeaver Application Server for ABAP and ABAP Platform, urging immediate action to…

First Ever OWASP "Top 10 Non-Human Identities (NHI)" Released
14
Jan
2025

First Ever OWASP “Top 10 Non-Human Identities (NHI)” Released

The Open Worldwide Application Security Project’s (OWASP) released the first “Non-Human Identities (NHI) Top 10 used to provide authorization to…

Zero-Day Vulnerability in PDF Files Leaking NTLM Data in Adobe & Foxit Reader
14
Jan
2025

Zero-Day Vulnerability in PDF Files Leaking NTLM Data in Adobe & Foxit Reader

Cybersecurity researchers at EXPMON have uncovered an intriguing “zero-day behavior” in PDF samples that could potentially be exploited by attackers…

Google OAuth "Sign in with Google" Vulnerability Exposes Millions of Accounts
14
Jan
2025

Google OAuth “Sign in with Google” Vulnerability Exposes Millions of Accounts

A critical vulnerability in Google’s “Sign in with Google” authentication flow is putting millions of Americans at risk of data…

Smishing Attack Targets iMessage Users by Exploiting Built-In Phishing Protections
14
Jan
2025

Smishing Attack Targets iMessage Users by Exploiting Built-In Phishing Protections

A new smishing (SMS phishing) campaign is making waves, specifically targeting iMessage users by manipulating Apple’s built-in phishing protections. Users…