Tag: Cybersecurity Threat Advisory

Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Critical Windows Kernel zero-day vulnerability

Cybersecurity Threat Advisory: Critical Windows Kernel zero-day vulnerability

CVE-2025-62215 is a Windows Kernel flaw that lets attackers escalate to SYSTEM privileges, persist, access data, and move laterally. Attackers are actively exploiting this zero-day in the wild. Review this Cybersecurity Threat Advisory for best practices and recommendations to mitigate...

/ November 14, 2025
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Critical WatchGuard Fireware vulnerability

Cybersecurity Threat Advisory: Critical WatchGuard Fireware vulnerability

CISA has added CVE-2025-9242 to its Known Exploited Vulnerabilities (KEV) catalog following confirmed exploitation in the wild. This critical flaw allows unauthenticated remote code execution (RCE) via malformed IKEv2 VPN packets in WatchGuard Fireware. Continue reading this Cybersecurity Threat Advisory...

/ November 14, 2025
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Critical vulnerability in Motex Lanscope

Cybersecurity Threat Advisory: Critical vulnerability in Motex Lanscope

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added CVE-2025-61932, a critical vulnerability in Motex Lanscope Endpoint Manager, to its Known Exploited Vulnerabilities (KEV) catalog after confirming active exploitation in the wild. The flaw, rated CVSS 9.8, allows unauthenticated remote...

/ October 28, 2025
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Critical WSUS RCE vulnerability

Cybersecurity Threat Advisory: Critical WSUS RCE vulnerability

Microsoft has released out-of-band (OOB) security updates to address a critical remote code execution (RCE) vulnerability in Windows Server Update Services (WSUS). Servers with the WSUS Server Role enabled are affected. Successful exploitation allows attackers to execute code with SYSTEM-level...

/ October 27, 2025
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Critical Windows SMB vulernability

Cybersecurity Threat Advisory: Critical Windows SMB vulernability

Attackers are actively exploiting a critical Windows SMB client vulnerability (CVE-2025-33073) in the wild. To help safeguard your environment and your customers’, please review and apply the best practices outlined in this Cybersecurity Threat Advisory. What is the threat? CVE-2025-33073...

/ October 24, 2025
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Critical WatchGuard firewall vulnerability

Cybersecurity Threat Advisory: Critical WatchGuard firewall vulnerability

A critical vulnerability, CVE-2025-9242, has been identified in WatchGuard Firebox Network Security Appliances. This flaw exposes affected devices to the public internet and allows unauthenticated remote code execution. Review the details in this Cybersecurity Threat Advisory to understand the potential...

/ October 22, 2025
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Critical Veeam backup flaws

Cybersecurity Threat Advisory: Critical Veeam backup flaws

Veeam has released Patch 12.3.2.4165 for Backup & Replication and Version 6.3.2.1302 for Veeam Agent for Microsoft Windows, addressing three serious vulnerabilities. These include two critical remote code execution (RCE) flaws (CVE-2025-48983, CVE-2025-48984) and one high-severity local privilege escalation (LPE)...

/ October 20, 2025
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: FortiOS CLI command bypass vulnerability

Cybersecurity Threat Advisory: FortiOS CLI command bypass vulnerability

Fortinet has disclosed a high-severity vulnerability in FortiOS, identified as CVE-2025-58325, which has a CVSS score of 7.8. This flaw could allow local authenticated attackers to execute arbitrary system commands. The vulnerability stems from improper input validation in the FortiOS...

/ October 20, 2025
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: ChaosBot malware exploits Discord

Cybersecurity Threat Advisory: ChaosBot malware exploits Discord

A recently discovered Rust-based malware called ChaosBot is being used compromise computers via Discord channels. Review the details within this Cybersecurity Threat Advisory to learn more and see how to protect your system. What is the threat? ChaosBot is a...

/ October 16, 2025
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Oracle E-Business Suite vulnerability

Cybersecurity Threat Advisory: Oracle E-Business Suite vulnerability

Oracle has issued a warning about a new security flaw in its E-Business Suite (EBS), tracked as CVE-2025-61884, with a CVSS score of 7.5. This vulnerability is remotely exploitable without authentication via HTTP and targets Oracle Configurator, a module used...

/ October 16, 2025