Topic: mitigation steps

  • Urgent: Active Attacks Target Unpatched Gladinet Flaw (CVE-2025-11371)

    Urgent: Active Attacks Target Unpatched Gladinet Flaw (CVE-2025-11371)

    A critical unauthenticated Local File Inclusion vulnerability (CVE-2025-11371) is actively being exploited, allowing attackers to remotely access any file on systems using Gladinet's CentreStack and Triofox platforms without credentials. Security researchers at Huntress confirmed real-world attac...

    Read More »
  • SonicWall Zero-Day Exploit Patched (CVE-2025-40602)

    SonicWall Zero-Day Exploit Patched (CVE-2025-40602)

    SonicWall has released a critical update for a new, actively exploited local privilege escalation flaw (CVE-2025-40602) in its SMA 1000 series appliances, urging immediate patching. This vulnerability is especially dangerous when chained with a previously patched flaw (CVE-2025-23006), allowing a...

    Read More »
  • Fortinet Firewalls Hacked: Critical Configs Stolen

    Fortinet Firewalls Hacked: Critical Configs Stolen

    An automated campaign is exploiting an unknown vulnerability in Fortinet FortiGate firewalls' SSO functionality, creating unauthorized admin accounts and stealing configuration data within seconds. The attacks resemble a previous campaign exploiting a critical authentication bypass flaw (CVE-2025...

    Read More »
  • Patched FortiGate Firewalls Still Vulnerable to Hacks

    Patched FortiGate Firewalls Still Vulnerable to Hacks

    A critical Fortinet firewall vulnerability (CVE-2025-59718) persists despite patches, allowing unauthorized admin access via the FortiCloud SSO feature even on the latest software versions. Fortinet is preparing new updates, but the immediate recommendation is to disable the "Allow administrative...

    Read More »
  • Microsoft Issues Critical Windows Update Amid Active Attacks

    Microsoft Issues Critical Windows Update Amid Active Attacks

    Microsoft has issued an urgent security update for Windows Server to patch a critical vulnerability (CVE-2025-59287) that is actively being exploited, allowing remote code execution with system privileges. Only servers with the WSUS Server Role enabled are vulnerable, and CISA has mandated federa...

    Read More »
  • Critical NetScaler Flaw Poses Imminent Exploit Risk (CVE-2026-3055)

    Critical NetScaler Flaw Poses Imminent Exploit Risk (CVE-2026-3055)

    Organizations must urgently patch Citrix NetScaler ADC and Gateway due to two new vulnerabilities, with the critical CVE-2026-3055 allowing attackers to steal user session tokens from systems configured as a SAML Identity Provider. The secondary vulnerability, CVE-2026-4368, is a race condition t...

    Read More »
  • Critical WatchGuard VPN Flaw Actively Exploited

    Critical WatchGuard VPN Flaw Actively Exploited

    A critical, actively exploited vulnerability (CVE-2025-14733) in WatchGuard's Fireware OS allows unauthenticated remote attackers to execute arbitrary code on affected systems. The flaw impacts systems using specific IKEv2 VPN configurations, and patches are available for most supported versions,...

    Read More »
  • Check Point VPN Flaw Exploited: PoC and Details Released

    Check Point VPN Flaw Exploited: PoC and Details Released

    WatchTowr researchers have published a technical deep dive and detection tool for CVE-2026-50751, a critical authentication bypass in Check Point’s Remote Access VPN and Mobile Access that is being actively exploited. The vulnerability, patched on June 8, 2026, allows unauthenticated attackers to...

    Read More »
  • ReVault Flaws Expose Dell Laptops to Windows Login Bypass

    ReVault Flaws Expose Dell Laptops to Windows Login Bypass

    Security researchers discovered critical vulnerabilities in Dell's ControlVault3 firmware, allowing attackers to bypass Windows authentication and install persistent malware on over 100 business-focused Latitude and Precision laptop models. The flaws, named **ReVault**, include five distinct issu...

    Read More »
  • Critical RCE in WordPress Alone Theme Actively Exploited by Hackers

    Critical RCE in WordPress Alone Theme Actively Exploited by Hackers

    A critical security flaw (CVE-2025-5394) in the WordPress Alone theme is being exploited, allowing hackers to execute malicious code and take control of vulnerable websites, with over 120,000 attack attempts detected. The vulnerability stems from an insecure file upload function (`alone_import_pa...

    Read More »