Topic: exploit chain
-
SonicWall Zero-Day Exploit Patched (CVE-2025-40602)
SonicWall has released a critical update for a new, actively exploited local privilege escalation flaw (CVE-2025-40602) in its SMA 1000 series appliances, urging immediate patching. This vulnerability is especially dangerous when chained with a previously patched flaw (CVE-2025-23006), allowing a...
Read More » -
Hackers Still Exploit WinRAR Flaw, Mandiant Reports
A critical WinRAR vulnerability (CVE-2025-8088) is being actively exploited by state-sponsored and criminal hackers, despite a patch being available for over six months. The exploit hides malicious payloads within archive files to execute automatically upon user login, with attacks linked to a si...
Read More » -
Critical Windows 0-Day Fixed: CISA Issues Urgent Alert
A critical Windows zero-day vulnerability (CVE-2026-20805) is being actively exploited, prompting urgent patching and a CISA mandate for federal agencies to apply the fix by February 3. The flaw undermines the ASLR security mechanism by leaking a memory address, which can be chained with other bu...
Read More »