A medium-severity vulnerability in the Iconics Suite SCADA system that could allow attackers to trigger denial-of-service conditions on critical industrial control systems.
The flaw, tracked as CVE-2025-0921, affects supervisory control and data acquisition infrastructure widely deployed across automotive, energy,...
Multiple critical security vulnerabilities have recently been disclosed in React Server Components, enabling threat actors to launch Denial-of-Service (DoS) attacks against vulnerable servers.
The flaws, tracked as CVE-2026-23864 with a CVSS score of 7.5, are due to incomplete patches from...
A critical alert issued on January 19, 2026, warned of rising cyber-attacks by Russian-aligned hacktivist groups targeting UK organisations.
These state-aligned threat actors are conducting disruptive denial-of-service (DoS) operations against local government authorities.
Critical national infrastructure operators are aiming to cripple...
Patches released by Jenkins address a significant denial-of-service (DoS) vulnerability affecting millions of organizations.
That rely on the popular automation server for continuous integration and deployment pipelines. A high-severity vulnerability in Jenkins versions 2.540 and earlier (LTS 2.528.2 and earlier).
Enables...
An urgent security update for its DGX Spark AI workstation after discovering 14 vulnerabilities in the system's firmware that could allow attackers to execute malicious code and launch denial-of-service attacks.
The most severe flaw has a CVSS score of 9.3...
F5 Networks has disclosed a new HTTP/2 vulnerability affecting multiple BIG-IP products that could allow remote attackers to launch denial-of-service attacks against corporate networks.
The security flaw, designated CVE-2025-54500 and dubbed the "HTTP/2 MadeYouReset Attack," was published on August...
Two critical vulnerabilities in the BIND 9 DNS resolver software are affecting organizations worldwide, with potential cache poisoning and denial-of-service attacks.
The vulnerabilities, identified as CVE-2025-40776 and CVE-2025-40777, pose significant security risks to DNS infrastructure, particularly for resolvers configured with...
Researchers have uncovered critical security vulnerabilities affecting millions of computer servers and routers worldwide, stemming from the insecure implementation of fundamental internet tunneling protocols.
The flaws could allow attackers to bypass security controls, spoof their identity, access private networks, and...
Key Takeaways1. Next.js versions 15.1.0-15.1.8 have a cache poisoning bug causing DoS attacks through blank page delivery.2. Needs affected Next.js version + ISR with cache revalidation + SSR with CDN caching 204 responses.3. Race condition allows HTTP 204 responses...
Critical security vulnerabilities have been discovered in PHP that could allow attackers to execute SQL injection attacks and cause denial of service (DoS) conditions.
Two distinct vulnerabilities, assigned CVE-2025-1735 and CVE-2025-6491, affect multiple PHP versions and require immediate patching.
Key Takeaways1....