Aggregator
[webapps] Exclusive Addons for Elementor 2.6.9 - Stored Cross-Site Scripting (XSS)
[webapps] Royal Elementor Addons and Templates 1.3.78 - Unauthenticated Arbitrary File Upload
[remote] Microchip TimeProvider 4100 Grandmaster (Data plot modules) 2.4.6 - SQL Injection
[webapps] IBM Security Verify Access 10.0.0 - Open Redirect during OAuth Flow
CVE-2025-3083
CVE-2025-30095
CVE-2025-0676
CVE-2025-0401
Daily Dose of Dark Web Informer - 4th of April 2025
Threat Attack Daily - 4th of April 2025
NightSpire
NightSpire
NightSpire
CISA Adds Actively Exploits Ivanti Connect Secure Vulnerability in Known Exploited Catalog
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added CVE-2025-22457, a critical vulnerability in Ivanti Connect Secure, Policy Secure, and ZTA Gateways, to its Known Exploited Vulnerabilities (KEV) Catalog. This stack-based buffer overflow, actively exploited since mid-March 2025, allows remote unauthenticated attackers to achieve remote code execution (RCE), threatening organizations using these VPN and […]
The post CISA Adds Actively Exploits Ivanti Connect Secure Vulnerability in Known Exploited Catalog appeared first on Cyber Security News.
LeakedData
Ransomware Attack Update for the 4th of April 2025
Black Suit
Microsoft Celebrates 50th Anniversary!
Microsoft celebrated its 50th anniversary on April 4, 2025, reflecting on its journey since Bill Gates and Paul Allen founded the company in 1975. The milestone event, held at Microsoft’s Redmond, Washington headquarters, blended nostalgia with cutting-edge AI advancements, particularly through its Copilot platform, while highlighting the transformative role of technology in gaming, education, and […]
The post Microsoft Celebrates 50th Anniversary! appeared first on Cyber Security News.
UK Home Office Ransom Ban Proposal Needs More Clarity
A collection of British cybersecurity policy wonks poured cold water over a British government proposal to outlaw ransom payments by government agencies and from regulated operators of critical infrastructure. A ban wouldn't likely represent a significant blow to ransomware profits.