Topic: exploit chain

  • SonicWall Zero-Day Exploit Patched (CVE-2025-40602)

    SonicWall Zero-Day Exploit Patched (CVE-2025-40602)

    SonicWall has released a critical update for a new, actively exploited local privilege escalation flaw (CVE-2025-40602) in its SMA 1000 series appliances, urging immediate patching. This vulnerability is especially dangerous when chained with a previously patched flaw (CVE-2025-23006), allowing a...

    Read More »
  • Hackers Still Exploit WinRAR Flaw, Mandiant Reports

    Hackers Still Exploit WinRAR Flaw, Mandiant Reports

    A critical WinRAR vulnerability (CVE-2025-8088) is being actively exploited by state-sponsored and criminal hackers, despite a patch being available for over six months. The exploit hides malicious payloads within archive files to execute automatically upon user login, with attacks linked to a si...

    Read More »
  • Critical Windows 0-Day Fixed: CISA Issues Urgent Alert

    Critical Windows 0-Day Fixed: CISA Issues Urgent Alert

    A critical Windows zero-day vulnerability (CVE-2026-20805) is being actively exploited, prompting urgent patching and a CISA mandate for federal agencies to apply the fix by February 3. The flaw undermines the ASLR security mechanism by leaking a memory address, which can be chained with other bu...

    Read More »