Category: Securityaffairs

Unpatched zero-day in Gladinet CentreStack, Triofox under attack
12
Oct
2025

Unpatched zero-day in Gladinet CentreStack, Triofox under attack

CVE-2025-11371: Unpatched zero-day in Gladinet CentreStack, Triofox under attack Pierluigi Paganini October 11, 2025 Threat actors are exploiting a zero-day,…

Cybercrime ring GXC Team dismantled in Spain, 25-year-old leader detained
11
Oct
2025

Cybercrime ring GXC Team dismantled in Spain, 25-year-old leader detained

Cybercrime ring GXC Team dismantled in Spain, 25-year-old leader detained Pierluigi Paganini October 11, 2025 Spain’s Guardia Civil dismantled the…

Attackers exploit valid logins in SonicWall SSL VPN compromise
11
Oct
2025

Attackers exploit valid logins in SonicWall SSL VPN compromise

Attackers exploit valid logins in SonicWall SSL VPN compromise Pierluigi Paganini October 11, 2025 Huntress warns of widespread SonicWall SSL…

Apple addressed the seventh actively exploited zero-day
11
Oct
2025

Apple doubles maximum bug bounty to $2M for zero-click RCEs

Apple doubles maximum bug bounty to $2M for zero-click RCEs Pierluigi Paganini October 10, 2025 Apple raised bug bounties to…

Ukraine sees surge in AI-Powered cyberattacks by Russia-linked Threat Actors
10
Oct
2025

Ukraine sees surge in AI-Powered cyberattacks by Russia-linked Threat Actors

Ukraine sees surge in AI-Powered cyberattacks by Russia-linked Threat Actors Pierluigi Paganini October 10, 2025 Russia-linked actors use AI to…

Juniper patched nine critical flaws in Junos Space
10
Oct
2025

Juniper patched nine critical flaws in Junos Space

Juniper patched nine critical flaws in Junos Space Pierluigi Paganini October 10, 2025 Juniper fixed nearly 220 flaws in Junos…

U.S. CISA adds Synacor Zimbra Collaboration Suite (ZCS) flaw to its Known Exploited Vulnerabilities catalog
10
Oct
2025

U.S. CISA adds Grafana flaw to its Known Exploited Vulnerabilities catalog

U.S. CISA adds Grafana flaw to its Known Exploited Vulnerabilities catalog Pierluigi Paganini October 10, 2025 U.S. Cybersecurity and Infrastructure Security…

RondoDox Botnet targets 56 flaws across 30+ device types worldwide
10
Oct
2025

RondoDox Botnet targets 56 flaws across 30+ device types worldwide

RondoDox Botnet targets 56 flaws across 30+ device types worldwide Pierluigi Paganini October 10, 2025 RondoDox botnet exploits 56 known…

ClayRat campaign uses Telegram and phishing sites to distribute Android spyware
09
Oct
2025

ClayRat campaign uses Telegram and phishing sites to distribute Android spyware

ClayRat campaign uses Telegram and phishing sites to distribute Android spyware Pierluigi Paganini October 09, 2025 ClayRat Android spyware targets…

WordPress Plugin flaw lets hackers access Admin accounts
09
Oct
2025

WordPress Plugin flaw lets hackers access Admin accounts

CVE-2025-5947: WordPress Plugin flaw lets hackers access Admin accounts Pierluigi Paganini October 09, 2025 Threat actors are exploiting a critical…

SonicWall dismisses zero-day fears after Ransomware probe
09
Oct
2025

Threat actors steal firewall configs, impacting all SonicWall Cloud Backup users

Threat actors steal firewall configs, impacting all SonicWall Cloud Backup users Pierluigi Paganini October 09, 2025 All SonicWall Cloud Backup…

Discord discloses third-party breach affecting customer support data
09
Oct
2025

Discord denies massive breach, confirms limited exposure of 70K ID photos

Discord denies massive breach, confirms limited exposure of 70K ID photos Pierluigi Paganini October 09, 2025 Discord won’t pay threat…