A high-severity cross-site scripting (XSS) vulnerability in Grafana could allow attackers to redirect users to malicious websites. The vulnerability, tracked…
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) officially added two critical zero-day vulnerabilities affecting Ivanti Endpoint Manager Mobile (EPMM)…
Mozilla has released an emergency security update to address two critical vulnerabilities in Firefox that could allow attackers to execute…
SAP's May 2025 Security Patch Day includes an urgent update to the previously released emergency patch for a critical zero-day…
CISA has added a critical SAP NetWeaver vulnerability to its Known Exploited Vulnerabilities (KEV) catalog on April 29, 2025. The…
RedGolf, a sophisticated threat actor with ties to APT41, provided a rare insight into its operational toolbox after a directory…
Apple has released iOS 18.4.1 and iPadOS 18.4.1 to address two critical zero-day vulnerabilities that were actively exploited in highly…
A detailed technical analysis has been published regarding CVE-2025-22457, an unauthenticated remote code execution (RCE) vulnerability impacting several Ivanti products.…
A critical zero-day vulnerability in the Windows Common Log File System (CLFS) has been uncovered and is being actively exploited…
Google has released its April 2025 Android Security Bulletin, addressing numerous critical vulnerabilities including two zero-day flaws actively exploited in…