Vulnerability

BeyondTrust Tools RCE Vulnerability Allows Attackers to Execute Arbitrary Code

BeyondTrust has disclosed a critical server-side template injection vulnerability affecting its Remote Support and Privileged Remote Access products, potentially allowing…

10 months ago

ASUS Armoury Crate Vulnerability Allows Attackers to Escalate Privileges to System User on Windows

A critical security vulnerability in ASUS Armoury Crate software has been discovered that allows attackers to gain complete system control…

10 months ago

Hackers Actively Exploiting Google Chrome Zero-Day Vulnerability in the Wild

A sophisticated cyber attack campaign that exploited a Google Chrome zero-day vulnerability in March 2025, with investigators now linking the…

10 months ago

CISA Alerts on Active Exploitation of iOS 0-Click Vulnerability

The Cybersecurity and Infrastructure Security Agency (CISA) has added a critical zero-click vulnerability in Apple's iOS to its Known Exploited…

10 months ago

Hackers Exploiting Langflow RCE Vulnerability to Deploy Flodrix Botnet

A critical vulnerability in Langflow to deliver the Flodrix botnet malware. The vulnerability, tracked as CVE-2025-3248 with a CVSS score…

10 months ago

Hackers Exploiting Zyxel RCE Vulnerability Through UDP Port

A critical remote code execution vulnerability affecting Zyxel Internet Key Exchange (IKE) packet decoders. GreyNoise Intelligence has observed a concentrated…

10 months ago

IBM Backup Services Vulnerability Allows Attackers to Escalate Privileges

IBM has disclosed a critical security vulnerability in its Backup, Recovery and Media Services for i platform that could allow…

10 months ago

KIA Ecuador Keyless Entry Vulnerability Risks Mass Vehicle Theft

A critical security vulnerability discovered in KIA Ecuador vehicles manufactured between 2022 and 2025 has exposed thousands of cars to…

10 months ago

Vulnerability In DanaBot Malware C2 Server Reveals Threat Actor Usernames And Crypto Keys

A critical vulnerability in the command-and-control, or C2, infrastructure of the infamous DanaBot malware provided security analysts with an unprecedented…

11 months ago

Salesforce Exposed to 0-Day SOQL Injection Vulnerability Affecting Global Installations

A critical security flaw has recently been uncovered in Salesforce’s widely deployed platform exposing thousands of organizations to potential data…

11 months ago