Wednesday, May 27, 2026

Ethan Brooks

Ethan Brooks is a Senior cybersecurity journalist passionate about threat intelligence and data privacy. His work highlights cyber attacks, hacking, security culture, and cybercrime with The Cyber News.

Critical SUSE Manager Vulnerability Allows Remote Root Command Execution

A severe security vulnerability has been discovered in SUSE Manager that allows unauthenticated attackers to execute arbitrary commands with root privileges through an exposed websocket endpoint. The vulnerability, tracked as CVE-2025-46811, has been assigned a critical CVSS score of...

Critical 0-Day Exploits Discovered in Legacy Netgear Router and BitDefender Box

A zero-day vulnerabilities in two discontinued network devices, demonstrating the persistent security risks posed by end-of-life hardware. The team won runner-up for "Most Innovative Exploitation Technique" at DistrictCon's inaugural Junkyard competition in February 2025, showcasing how abandoned devices become...

CrushFTP 0-Day RCE Vulnerability: Technical Details & PoC Released

A critical zero-day vulnerability in CrushFTP has been disclosed, allowing attackers to achieve remote code execution without authentication. The vulnerability, tracked as CVE-2025-54309, has received a maximum CVSS score of 9.8 and affects the software's DMZ proxy functionality. Security...

Palo Alto Networks to Acquire CyberArk in Landmark $25 Billion Merger

Palo Alto Networks announced a definitive agreement to acquire CyberArk Software for approximately $25 billion, marking the cybersecurity giant's formal entry into Identity Security and establishing it as a core pillar of their multi-platform strategy. The acquisition combines CyberArk's...

Threat Actors Reportedly Breach Nokia’s Internal Network

A cybercriminal group known as Tsar0Byte has allegedly claimed responsibility for breaching Nokia's internal network systems, potentially exposing sensitive data belonging to more than 94,500 employees. The incident, reported across various dark web forums including DarkForums, represents one of...

Apple Fixes Several Vulnerabilities, Including Safari Vulnerability Exploited as Chrome 0-Day

Apple released a comprehensive set of security updates on July 29, 2025, addressing vulnerabilities across its entire ecosystem of devices and operating systems. The latest updates include critical patches for iOS, iPadOS, macOS, watchOS, tvOS, and visionOS, with particular...
spot_img

latest articles