Leavar Michel

All posts by Leavar Michel

Leavar is a Cybersecurity Analyst at Barracuda. He's a security expert, working on our Blue Team within our Security Operations Center. Leavar supports our XDR service delivery and is highly skilled at analyzing security events to detect cyber threats, helping keep our partners and their customers protected.

Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: RCE vulnerability in SolarWinds WHD

Cybersecurity Threat Advisory: RCE vulnerability in SolarWinds WHD

A critical remote code execution (RCE) vulnerability, CVE-2025-26399, has been identified in SolarWinds Web Help Desk (WHD) and remains exploitable despite previous fixes. The flaw allows unauthenticated attackers to execute arbitrary code on vulnerable servers, leading to a full system...

/ September 24, 2025
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: WinRAR zero-day exploited

Cybersecurity Threat Advisory: WinRAR zero-day exploited

A critical path traversal zero-day vulnerability — tracked as CVE‑2025‑8088 — has been identified in WinRAR and related components (Windows RAR, UnRAR.dll, and the portable UnRAR source code), and is currently being actively exploited. Review the details in this Cybersecurity...

/ August 12, 2025
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Microsoft SharePoint zero-day vulnerability

Cybersecurity Threat Advisory: Microsoft SharePoint zero-day vulnerability

Attackers are actively exploiting CVE-2025-53770, a critical zero-day vulnerability in Microsoft SharePoint, to execute remote code without authentication. This flaw allows attackers to deploy persistent malware and potentially exfiltrate sensitive data from unpatched on-premises environments. Review the full details in...

/ July 22, 2025
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Zero-day Chrome vulnerability

Cybersecurity Threat Advisory: Zero-day Chrome vulnerability

Google has patched a high-severity zero-day vulnerability, tracked as CVE-2025-6554 with a CVSS score of 8.1, in Chrome’s V8 engine that allows attackers to execute arbitrary code via a crafted HTML page. Review the details of this Cybersecurity Threat Advisory...

/ July 2, 2025
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Wazuh servers targeted to launch Mirai attacks

Cybersecurity Threat Advisory: Wazuh servers targeted to launch Mirai attacks

Threat actors are actively targeting Wazuh servers running software version 4.4.0 by exploiting a vulnerability that enables them to install Mirai botnets. These botnets facilitate distributed denial of service (DDoS) attacks against victims and execute malicious payloads on the compromised...

/ June 12, 2025