CISA

Entity category: organization

Cybersecurity

D-Link DIR-878 routers have critical RCE flaws

D-Link has issued a critical alert for its unsupported DIR-878 router, revealing three severe vulnerabilities that allow unauthenticated remote command…

Read More »
Business

CISA Warns of Rising Bulletproof Hosting Threat

CISA and global partners have released a guide to help combat bulletproof hosting, which enables ransomware, phishing, and other cybercrimes…

Read More »
Business

CISA Orders Agencies to Patch Critical Fortinet Flaw in 7 Days

CISA has mandated a 7-day deadline for U.S. government agencies to patch CVE-2025-58034, a critical Fortinet FortiWeb vulnerability being actively…

Read More »
Cybersecurity

Urgent: Actively Exploited FortiWeb Flaw Patched (CVE-2025-58034)

A critical OS command injection vulnerability (CVE-2025-58034) in FortiWeb firewalls is being actively exploited, allowing attackers to execute arbitrary commands…

Read More »
Cybersecurity

RondoDox Botnet Exploits Critical XWiki Server Flaw

The RondoDox botnet malware is actively exploiting a critical remote code execution vulnerability (CVE-2025-24893) in XWiki Platform, as confirmed by…

Read More »
Artificial Intelligence

Windows Kernel Flaw Fixed, Fortinet Zero-Day Exploited

Cybersecurity demands constant vigilance against evolving threats like zero-day exploits and requires organizations to adopt layered defense strategies that combine…

Read More »
BigTech Companies

Urgent ASUS Router Security Flaw Exposed

ASUS has released an urgent firmware update (version 1.1.2.3_1010) to fix a critical security flaw (CVE-2025-59367) that allows unauthorized remote…

Read More »
BigTech Companies

US Agencies Still Vulnerable to Critical Cisco Flaws

CISA issued an emergency directive for U.S. federal agencies to patch two actively exploited Cisco vulnerabilities (CVE-2025-20333 and CVE-2025-20362), as…

Read More »
Cybersecurity

CISA Alerts: Akira Ransomware Now Targets Linux, Nutanix VMs

The Akira ransomware group has expanded to target Linux systems and Nutanix AHV virtual machines, exploiting vulnerabilities like CVE-2024-40766 and…

Read More »
Business

CISA: Hackers Actively Exploiting WatchGuard Firewall Flaw

A critical security flaw (CVE-2025-9242) in WatchGuard Firebox firewalls is being actively exploited, prompting CISA to issue an urgent patch…

Read More »
Business

US agencies urged to patch Cisco firewalls amid active attacks

U.S. federal agencies must immediately patch vulnerable Cisco firewalls due to active exploitation of security flaws in Cisco ASA software…

Read More »
Cybersecurity

Urgent Samsung Patch Stops Spyware Exploit

Samsung has released a critical security update for a vulnerability (CVE-2025-21042) in its image processing library, which was actively exploited…

Read More »
Cybersecurity

CISA Urges Immediate Patch for Samsung Spyware Zero-Day

A critical vulnerability (CVE-2025-21042) in Samsung smartphones allows attackers to install LandFall spyware via manipulated DNG images sent through WhatsApp,…

Read More »
Artificial Intelligence

Critical RCE Flaw Found in Popular expr-eval JavaScript Library

A critical remote code execution vulnerability (CVE-2025-12735) has been found in the widely used expr-eval JavaScript library, affecting over 800,000…

Read More »
Cybersecurity

Urgent: Critical Web Panel Flaw Actively Exploited (CVE-2025-48703)

A critical security vulnerability (CVE-2025-48703) in Control Web Panel (CWP) is being actively exploited, posing a severe threat to web…

Read More »
Business

Government Shutdown: A Cybersecurity Crisis in the Making

A cybersecurity breach at the Congressional Budget Office, suspected to involve a foreign actor, highlights increased vulnerabilities during the government…

Read More »
Business

Urgent CISA Alert: Active Attacks Exploit Critical CentOS Bug

A critical security flaw (CVE-2025-48703) in CentOS Web Panel allows unauthenticated attackers to execute arbitrary commands, prompting CISA to issue…

Read More »
Business

Secure Your Exchange Server: CISA & NSA Best Practices

A new cybersecurity framework from CISA and the NSA provides detailed steps to protect Microsoft Exchange Server installations from sophisticated…

Read More »
Business

CISA Alerts: 2 New Dassault Flaws Under Active Attack

CISA warns that two new security flaws in Dassault Systèmes' DELMIA Apriso platform are being actively exploited, posing risks to…

Read More »
BigTech Companies

CISA Urges Immediate VMware Patch for Chinese Hacker Exploit

CISA has issued an urgent directive for U.S. government agencies to patch a critical VMware vulnerability (CVE-2025-41244) that allows privilege…

Read More »