Aggregator
CVE-2025-25250 | Fortinet FortiOS up to 6.4.16/7.0.17/7.2.11/7.4.7/7.6.0 SSL-VPN information disclosure (FG-IR-24-257 / Nessus ID 238104)
Cursor AI’s “YOLO Mode” Exposed: Security Firm Warns of Easy Bypasses, Data Deletion, and RCE Risks
AI-powered programming tools are rapidly gaining popularity, and one of the most prominent—Cursor—has introduced a new YOLO mode (short for “you only live once”) that enables its agent to execute complex sequences of actions...
The post Cursor AI’s “YOLO Mode” Exposed: Security Firm Warns of Easy Bypasses, Data Deletion, and RCE Risks appeared first on Penetration Testing Tools.
Microsoft Integrates Data Lake With Sentinel SIEM
Microsoft Halts China-Based Support for US DoD Cloud After ProPublica Expose & Pentagon Backlash
Following a wave of criticism sparked by a recent ProPublica report alleging that Microsoft had engaged engineers based in China to support cloud systems tied to the U.S. Department of Defense, the company has...
The post Microsoft Halts China-Based Support for US DoD Cloud After ProPublica Expose & Pentagon Backlash appeared first on Penetration Testing Tools.
Daily Dose of Dark Web Informer - 22nd of July 2025
CVE-2023-40723 | Fortinet FortiSIEM up to 6.7.4 API Request information disclosure (FG-IR-23-117)
CVE-2023-48790 | Fortinet FortiNDR up to 1.5.3/7.0.5/7.1.1/7.2.1/7.4.0 HTTP GET Request cross-site request forgery (FG-IR-23-353)
CVE-2023-37933 | Fortinet FortiADC up to 7.4.0 HTTPS Request cross site scripting (FG-IR-23-216)
CVE-2023-42784 | Fortinet FortiWeb up to 7.0.10/7.2.10/7.4.7 HTTPS Request syntactically invalid structure (FG-IR-23-115 / Nessus ID 232624)
Apple Wallet Now Supports Tmoney: South Korea Commuters Tap to Pay with iPhone & Apple Watch
Apple has announced that, effective immediately, users in South Korea can add the widely used Tmoney transit card to their Apple Wallet. With this integration, commuters can effortlessly ride subways, buses, and other public...
The post Apple Wallet Now Supports Tmoney: South Korea Commuters Tap to Pay with iPhone & Apple Watch appeared first on Penetration Testing Tools.
Threat Attack Daily - 22nd of July 2025
Ransomware Attack Update for the 22nd of July 2025
Coyote Trojan First to Use Microsoft UI Automation in Bank Attacks
Lumma infostealer malware returns after law enforcement disruption
3 China Nation-State Actors Target SharePoint Bugs
Contract lapse leaves critical infrastructure cybersecurity sensor data unanalyzed at national lab
A program manager at Lawrence Livermore National Laboratory told lawmakers Tuesday that the recent contract expiration puts OT security at risk.
The post Contract lapse leaves critical infrastructure cybersecurity sensor data unanalyzed at national lab appeared first on CyberScoop.