Overview
Description
Statistics
- 1 Post
Fediverse
🚨 CVE-2025-36096 (CRITICAL): IBM AIX 7.2/7.3 & VIOS 3.1/4.1 store NIM private keys insecurely, exposing systems to MitM attacks. Harden NIM access, segment networks, monitor for threats, and prep for urgent patching. https://radar.offseq.com/threat/cve-2025-36096-cwe-522-insufficiently-protected-cr-b2685315 #OffSeq #IBMAIX #Vuln
Overview
- Entr'ouvert
- Lasso
Description
Statistics
- 1 Post
Overview
- Sony Network Communications Inc.
- NCP-HG100/Cellular model
Description
Statistics
- 1 Post
Fediverse
🚨 CVE-2025-64444 (HIGH): OS command injection in Sony NCP-HG100 Cellular (≤1.4.48.16). Attackers with credentials can run root commands. Restrict mgmt access, enforce strong auth, monitor logs. Patch pending. More: https://radar.offseq.com/threat/cve-2025-64444-improper-neutralization-of-special--595d7110 #OffSeq #CVE202564444 #Sony #Security
Overview
- Dell
- Display and Peripheral Manager
Description
Statistics
- 1 Post
Overview
- SAP_SE
- SAP Solution Manager
Description
Statistics
- 1 Post
Overview
- otacke
- SNORDIAN's H5PxAPIkatchu
Description
Statistics
- 1 Post
Fediverse
🔎 New HIGH severity XSS vuln (CVE-2025-12904, CVSS 7.2) in SNORDIAN's H5PxAPIkatchu WordPress plugin (≤0.4.17). Unauthenticated attackers can inject persistent scripts via 'insert_data' AJAX. Remove or mitigate now! https://radar.offseq.com/threat/cve-2025-12904-cwe-79-improper-neutralization-of-i-6488aea7 #OffSeq #WordPress #XSS #infosec
Overview
Description
Statistics
- 1 Post
Fediverse
⚠️ CRITICAL: IBM AIX 7.2/7.3 & VIOS 3.1/4.1 vulnerable (CVE-2025-36251, CVSS 9.6). Remote code execution via nimsh SSL/TLS. Restrict service, monitor IBM advisories, patch ASAP. https://radar.offseq.com/threat/cve-2025-36251-cwe-114-process-control-in-ibm-aix-9533e607 #OffSeq #IBM #AIX #Vuln
Overview
Description
Statistics
- 2 Posts
Fediverse
A Russian national has pleaded guilty to acting as an initial access broker for Yanluowang ransomware attacks, while an international effort called Operation Endgame dismantled over 1000 servers linked to infostealers and botnets. Additionally, a critical vulnerability in Gladinet Triofox (CVE-2025-12480) allowed for remote code execution, and The Washington Post is notifying nearly 10,000 individuals about a data breach involving Oracle software (CVE-2025-61884), suspected to be carried out by the Cl0p ransomware operation.
https://www.sentinelone.com/blog/the-good-the-bad-and-the-ugly-in-cybersecurity-week-46-7/
Overview
Description
Statistics
- 1 Post
Fediverse
Samsung mobile security advisory AV25-757 addresses vulnerabilities in Samsung mobile devices prior to SMR-NOV-2025, with a security update released on November 4, 2025. The Canadian Centre for Cyber Security urges users to apply the update to maintain protection against emerging threats, especially as CVE-2025-21042 was added to CISA's Known Exploited Vulnerabilities Catalog.
https://www.cyber.gc.ca/en/alerts-advisories/samsung-mobile-security-advisory-av25-757
Overview
- milvus-io
- milvus
Description
Statistics
- 2 Posts