Saturday, May 10, 2025
Tag:

Exploited

Samsung MagicINFO RCE Exploit (CVE-2024-7399) – Patch Now to Stop Attacks

Introduction: In the fast-evolving world of digital signage, security remains paramount. The recent discovery of the Samsung MagicINFO RCE vulnerability (CVE-2024-7399) has set off...

Google Patches Actively Exploited Android Flaw in May 2025 Security Update

Is your Android device at risk? In the fast-paced world of mobile security, staying updated is not just a choice—it’s a necessity. The latest...

159 CVEs Exploited in Q1 2025 — 28.3% Within 24 Hours of Disclosure

î ‚Apr 24, 2025î „Ravie LakshmananVulnerability / Threat Intelligence As many as 159 CVE identifiers have been flagged as exploited in the wild in the first quarter...

New Critical SAP NetWeaver Flaw Exploited to Drop Web Shell, Brute Ratel Framework

Threat actors are likely exploiting a new vulnerability in SAP NetWeaver to upload JSP web shells with the goal of facilitating unauthorized file uploads...

CISA Adds Actively Exploited Broadcom and Commvault Flaws to KEV Database

î ‚Apr 29, 2025î „Ravie LakshmananVulnerability / Web Security The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday added two high-severity security flaws impacting Broadcom Brocade...

Google Reports 75 Zero-Days Exploited in 2024 — 44% Targeted Enterprise Security Products

î ‚Apr 29, 2025î „Ravie LakshmananEnterprise Security / Vulnerability Google has revealed that it observed 75 zero-day vulnerabilities exploited in the wild in 2024, down from 98...

Commvault Confirms Hackers Exploited CVE-2025-3928 as Zero-Day in Azure Breach

î ‚May 01, 2025î „Ravie LakshmananZero-Day / Threat Intelligence Enterprise data backup platform Commvault has revealed that an unknown nation-state threat actor breached its Microsoft Azure environment...

Claude AI Exploited to Operate 100+ Fake Political Personas in Global Influence Campaign

î ‚May 01, 2025î „Ravie LakshmananArtificial Intelligence / Disinformation Artificial intelligence (AI) company Anthropic has revealed that unknown threat actors leveraged its Claude chatbot for an "influence-as-a-service"...