Aggregator
Cisco Confirms Active Exploits Targeting ISE Flaws Enabling Unauthenticated Root Access
Critical Sophos Firewall Vulnerabilities Enables pre-auth Remote Code Execution
Multiple security vulnerabilities affecting Sophos firewall products, with two enabling pre-authentication remote code execution that could allow attackers to compromise systems without valid credentials. The vulnerabilities, tracked as CVE-2025-6704, CVE-2025-7624, CVE-2025-7382, CVE-2024-13974, and CVE-2024-13973, impact various configurations of Sophos Firewall versions 21.5 GA and older, with automatic hotfixes already deployed to address the most severe […]
The post Critical Sophos Firewall Vulnerabilities Enables pre-auth Remote Code Execution appeared first on Cyber Security News.
Weekly Threat Landscape Digest – Week 29
This week’s cyber threat landscape is marked by the active exploitation of critical vulnerabilities and the rise of stealthy, socially […]
The post Weekly Threat Landscape Digest – Week 29 appeared first on HawkEye.
G.O.S.S.I.P 阅读推荐 2025-07-22 AI安全的日与夜
BitRaser secures data erasure on macOS devices
BitRaser launched its Integrated Mac Eraser and Diagnostics Tool, a software designed to streamline IT asset disposition (ITAD) processes. The tool allows ITAD providers to simultaneously perform secure data erasure and comprehensive hardware diagnostics on macOS devices, including both Apple M-series and Intel-based Macs. This integrated solution eliminates the inefficiencies of sequential processing for ITADs refurbishing Mac devices with Apple Silicon & Intel chips by enabling simultaneous data erasure and diagnostics. This parallel workflow significantly … More →
The post BitRaser secures data erasure on macOS devices appeared first on Help Net Security.
UK to ban public sector orgs from paying ransomware gangs
Disrupting active exploitation of on-premises SharePoint vulnerabilities
Microsoft has observed two named Chinese nation-state actors, Linen Typhoon and Violet Typhoon, exploiting vulnerabilities targeting internet-facing SharePoint servers. In addition, we have observed another China-based threat actor, tracked as Storm-2603, exploiting these vulnerabilities. Microsoft has released new comprehensive security updates for all supported versions of SharePoint Server (Subscription Edition, 2019, and 2016) that protect customers against these new vulnerabilities. Customers should apply these updates immediately to ensure they are protected.
The post Disrupting active exploitation of on-premises SharePoint vulnerabilities appeared first on Microsoft Security Blog.
Coyote in the Wild: First-Ever Malware That Abuses UI Automation
Disrupting active exploitation of on-premises SharePoint vulnerabilities
Microsoft has observed two named Chinese nation-state actors, Linen Typhoon and Violet Typhoon, exploiting vulnerabilities targeting internet-facing SharePoint servers. In addition, we have observed another China-based threat actor, tracked as Storm-2603, exploiting these vulnerabilities. Microsoft has released new comprehensive security updates for all supported versions of SharePoint Server (Subscription Edition, 2019, and 2016) that protect customers against these new vulnerabilities. Customers should apply these updates immediately to ensure they are protected.
The post Disrupting active exploitation of on-premises SharePoint vulnerabilities appeared first on Microsoft Security Blog.
Coast Guard Issues Cybersecurity Rule for Maritime Transport Safety
Shutdown season: the Q2 2025 Internet disruption summary
Credential Theft and Remote Access Surge as AllaKore, PureRAT, and Hijack Loader Proliferate
20-й алюминий: как один изотоп за секунды обрушил уверенность в ядерной симметрии
AI带你 SQL 注入
Microsoft SharePoint security advisory (AV25-433) – Update 1
UK Confirms Ransomware Payment Ban for Public Sector and CNI
UK moves forward with plans for mandatory reporting of ransomware attacks
НАСА отремонтировала камеру на Юпитере простым нагревом — и спасла миссию за день до Ио
Cisco Alerts on ISE RCE Vulnerability Actively Exploited
Cisco has issued an urgent security advisory warning that a set of critical remote code execution (RCE) vulnerabilities affecting its Identity Services Engine (ISE) and Passive Identity Connector (ISE-PIC) products are being actively exploited in the wild. The flaws, tracked as CVE-2025-20281, CVE-2025-20282, and CVE-2025-20337, carry the highest possible severity rating, with a CVSS base […]
The post Cisco Alerts on ISE RCE Vulnerability Actively Exploited appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.