Category: Vulnerabilities

  • SonicWall SMA 1000: Exposing Security Vulnerabilities

    SonicWall SMA 1000: Exposing Security Vulnerabilities

    The SonicWall SMA 1000 series, crucial for secure remote access, has been compromised by two severe zero-day vulnerabilities, CVE-2026-15409 and CVE-2026-15410. Exploiting these flaws allows attackers to bypass security and gain administrative access. Organizations must act quickly to investigate breaches and reconsider their remote access architecture to prevent future risks.

  • FortiBleed: The Cyber Crisis Endangering National Security

    FortiBleed: The Cyber Crisis Endangering National Security

    The “FortiBleed” crisis reveals vulnerabilities in national security infrastructure, exposing over 80,000 firewalls due to compromised Fortinet systems. High-value government credentials are being sold, posing risks to critical services like healthcare. With state-supported hackers, this crisis necessitates immediate defenses and highlights systemic flaws in cybersecurity strategies.

  • The Tiny Library in Millions of Devices: Unpacking the FatFs Security Crisis

    The Tiny Library in Millions of Devices: Unpacking the FatFs Security Crisis

    RunZero discovered seven unpatched vulnerabilities in the FatFs filesystem library, a crucial yet overlooked component in modern technology, affecting various devices. Without centralized updates, security falls on developers. The findings highlight a significant supply chain risk, exposing devices to severe attacks, particularly through physical access, as AI advances in vulnerability detection.

  • Microsoft Fixes 80 Bugs in March 2023: Better Late Than Never!

    Microsoft Fixes 80 Bugs in March 2023: Better Late Than Never!

    Microsoft fixes 80 bugs in its March 2023 security update, including two zero-day flaws that hackers have been exploiting to steal passwords and run malicious code.😱

  • Cisco Releases Security Update for Cisco IOS XE

    Original release date: June 12, 2019 Cisco has released a security update to address a vulnerability in Cisco IOS XE. A remote attacker could exploit this vulnerability to take control of an affected system. The Cybersecurity and Infrastructure Security Agency (CISA) encourages users and administrators to review the Cisco Security Advisory and apply the necessary…

  • SSHowDowN Proxy attacks – A 12-Year-Old SSH bug exposes more than 2M IoT Devices

    SSHowDowN Proxy attacks – A 12-Year-Old SSH bug exposes more than 2M IoT Devices http://ift.tt/2eyO4F0 Akamai Technologies revealed that hackers are exploiting a 12-year-old bug in OpenSSH to hack into millions of IoT devices with SSHowDowN Proxy attacks. IoT devices are a privileged target for hackers, design flaws and wrong configurations open to the attackers.…