Aggregator
CVE-2025-48469 | Advantech Wireless Sensing and Equipment A2.01 B00 Public Update Page improper authentication
CVE-2025-6534 | xxyopen/201206030 novel-plus up to 5.1.3 File FileController.java remove resource injection (EUVD-2025-18972)
Fortanix PQC Central boosts post-quantum readiness
Fortanix announced PQC Central, a new feature in the Fortanix Key Insight that reframes how enterprises approach the post-quantum cryptography (PQC) challenge. As quantum computing advances, enterprises face security challenges that threaten current cryptographic standards and demand proactive adaptation—organizations must act now to protect their data and infrastructure. Embedded in Key Insight, which handles cryptographic discovery and risk assessment within the Fortanix Armor platform, PQC Central helps organizations turn PQC migration complexity into actionable insights … More →
The post Fortanix PQC Central boosts post-quantum readiness appeared first on Help Net Security.
Firefox 140 Launches with Critical Code Execution Bug Fix – Update Now
Mozilla has officially released Firefox 140, marking a significant update that addresses multiple security vulnerabilities, including a critical code execution flaw. Users are strongly urged to update their browsers immediately to protect against potential exploits targeting these newly patched weaknesses. Critical Security Fixes in Firefox 140 The highlight of Firefox 140 is the resolution of […]
The post Firefox 140 Launches with Critical Code Execution Bug Fix – Update Now appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Windows 11 Configuration Bug Freezes Update Scanning Process
A recently discovered bug in Windows 11 has caused significant frustration among users, as the operating system’s update scanning process can freeze unexpectedly, leaving systems unable to check for or install critical updates. Microsoft has officially acknowledged the issue and is rolling out fixes to affected devices worldwide. The problem, which primarily impacts users running […]
The post Windows 11 Configuration Bug Freezes Update Scanning Process appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Кажется, мы случайно научили машины жить без нас
CVE-2025-21893分析与复现
CVE-2025-25012 | Elastic Kibana up to 8.17.2 File Upload prototype pollution (EUVD-2025-19084 / Nessus ID 232287)
Mitiga Helios AI accelerates alert triage and incident response for SecOps teams
Mitiga launched Helios AI, an AI powered SOC assistant that supercharges SecOps teams with automated triage, augmented investigation, and accelerated threat remediation across complex multi-cloud environments. The first Helios AI feature available to customers is AI Insights. This automated SOC assistant cuts through alert noise to deliver 90% faster triage and 70x faster alert close rates. Designed specifically for today’s modern, dynamic cloud environment, Helios AI delivers vastly improved operational efficiency, optimizes security team resources, … More →
The post Mitiga Helios AI accelerates alert triage and incident response for SecOps teams appeared first on Help Net Security.
CVE-2025-6543 | Citrix NetScaler ADC/NetScaler Gateway prior 13.1-37.236-FIPS/13.1-59.19/14.1-47.46 memory corruption (CTX694788 / EUVD-2025-19085)
Stellar Cyber updates MITRE ATT&CK Aligned Coverage Analyzer
Stellar Cyber announced its next-generation MITRE ATT&CK Aligned Coverage Analyzer, expanding the capabilities first introduced in the original Coverage Analyzer. This new version transforms visibility into strategy, providing security teams, CISOs, MSSPs, compliance officers, and insurance underwriters with precision in evaluating, optimizing, and communicating their threat detection posture. “Risk managers, enterprise security leaders, and Insurers need modern, dynamic assessment tools to help them understand how certain technology decisions may impact their cyber defense posture and … More →
The post Stellar Cyber updates MITRE ATT&CK Aligned Coverage Analyzer appeared first on Help Net Security.
CVE-2025-0966 | IBM InfoSphere Information Server 11.7 sql injection (EUVD-2025-19079)
CVE-2025-36004 | IBM i 7.2/7.3/7.4/7.5 uncontrolled search path (EUVD-2025-19080)
CVE-2025-43880 | GROWI up to 7.1.5 redos (EUVD-2025-19081)
CVE-2025-5585 | SiteOrigin Widgets Bundle Plugin up to 1.68.5 on WordPress data-url cross site scripting
SAP GUI Input History Found Vulnerable to Weak Encryption
XOR Marks the Flaw in SAP GUI
Iranian Educated Manticore Targets Leading Tech Academics
Key findings Introduction For the last few years, Check Point Research has been monitoring the activity of the Iranian APT group, Educated Manticore. This group aligns with activity tracked by the wider security community as APT42, Charming Kitten, or Mint Sandstorm, and is believed to operate on behalf of the Islamic Revolutionary Guard Corps’ Intelligence […]
The post Iranian Educated Manticore Targets Leading Tech Academics appeared first on Check Point Research.