Home Vulnerabilities

Vulnerabilities

Explore the Vulnerabilities category on our cybersecurity news blog for up-to-date coverage of critical software flaws and security gaps. From zero-day exploits to newly discovered bugs, we bring you expert insights on how these vulnerabilities impact businesses and individuals.

Learn about affected systems, potential risks, and mitigation strategies to safeguard your data and infrastructure. Stay informed with real-time updates, technical analyses, and actionable advice for addressing emerging threats.

SHARP Routers Vulnerabilities

Critical SHARP Routers Vulnerabilities Lets Attacker Trigger RCE to Gain Root Access

SHARP has issued an urgent security advisory regarding multiple vulnerabilities discovered in several of its router products. Customers using the affected devices are strongly urged to update their firmware immediately to secure their networks...
CISA Warns of 4 New Vulnerabilities Exploited in the Wild

CISA Warns of 4 New Vulnerabilities Exploited in the Wild

 The Cybersecurity and Infrastructure Security Agency (CISA) has added four new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog, highlighting significant security risks for various devices used worldwide. These vulnerabilities, which have been actively...
Microsoft Azure MFA Vulnerability Allows Unauthorized User Account Access

Microsoft Azure MFA Vulnerability Allows Unauthorized User Account Access

A critical vulnerability in Microsoft's Multi-Factor Authentication (MFA) implementation has been uncovered by Oasis Security's research team, potentially exposing over 400 million Office 365 accounts to unauthorized access. The flaw, dubbed "AuthQuake," allowed attackers...
Mauri Ransomware Exploiting Apache ActiveMQ

Mauri Ransomware Exploiting Apache ActiveMQ Vulnerability

The Apache ActiveMQ Vulnerability, identified as CVE-2023-46604, was exploited by Mauri Ransomware threat actors to install CoinMiners. Threat actors were detected continuously launching attacks on unpatched, vulnerable Apache ActiveMQ services. Once the compromised machine has...
Critical Windows Zero-Day Vulnerability Exploited in the Wild – PoC Released

Critical Windows Zero-Day Vulnerability Exploited in the Wild – PoC Released

Microsoft has patched a critical zero-day vulnerability (CVE-2024-38193) that the notorious North Korean hacker group Lazarus APT actively exploited. Gen Threat Labs discovered and reported the flaw, which posed a severe threat to Windows...
Deloitte Hacked

Deloitte Hacked – Brain Cipher Ransomware Group Allegedly Stolen 1 TB of Data

Notorious ransomware group Brain Cipher has claimed to have breached Deloitte UK, allegedly exfiltrating over 1 terabyte of sensitive data from the professional services giant. Brain Cipher is a ransomware group that emerged in June...
Thinkware Cloud APK Vulnerability Let Attackers Execute Arbitrary Code

Thinkware Cloud APK Vulnerability Let Attackers Execute Arbitrary Code

A critical security flaw has been uncovered recently in the Thinkware Cloud APK version 4.3.46, Thinkware's cloud-based dashcam services. The vulnerability, identified as CVE-2024-53614, allows malicious actors to access sensitive data and execute arbitrary commands...
Windows Server 2012 0-day Vulnerability

Windows Server 2012 0-day Vulnerability Let Attackers Bypass Security Checks

A critical security vulnerability in Windows Server 2012 and Server 2012 R2 has been uncovered, allowing attackers to bypass essential security checks enforced by the Mark of the Web (MotW) feature. This zero-day flaw, which...

Recent Posts

CyTwist Launches Advanced Security Solution to identify AI-Driven Cyber Threats in...

CyTwist, a leader in advanced next-generation threat detection solutions, has launched its patented detection engine to combat the insidious rise of AI-generated malware. The cybersecurity...