Иранская группа Handala попыталась похвастаться взломом израильского аэропорта — и случайно засветила доступ к системам безопасности крупнейшего хаба Таиланда.
A vulnerability classified as critical has been found in CSV to SortTable Plugin up to 4.2 on WordPress. The impacted element is an unknown function of the component Shortcode Handler. Performing manipulation results in path traversal.
This vulnerability is known as CVE-2025-13070. Remote exploitation of the attack is possible. No exploit is available.
A vulnerability classified as problematic has been found in Custom Admin Menu Plugin up to 1.0.0 on WordPress. This affects an unknown part. This manipulation causes cross site scripting.
This vulnerability appears as CVE-2025-13071. The attack may be initiated remotely. There is no available exploit.
A vulnerability, which was classified as critical, has been found in LINE up to 13.15.x. This affects an unknown function of the component TLS Handler. Performing manipulation results in improper certificate validation.
This vulnerability is cataloged as CVE-2023-5554. The attack must originate from the local network. There is no exploit available.
It is advisable to upgrade the affected component.
A vulnerability labeled as critical has been found in Google Cloud SecOps SOAR up to 6.3.64. The impacted element is an unknown function of the file setup.py. Such manipulation leads to improper input validation.
This vulnerability is documented as CVE-2025-13428. The attack can be executed remotely. There is not any exploit available.
The affected component should be upgraded.
Explore emerging blue team needs shaping enterprise security, including continuous readiness, real SOC simulations, improved defensive skills training, and modern performance measurement.
Canadian organizations have emerged as the focus of a targeted cyber campaign orchestrated by a threat activity cluster known as STAC6565.
Cybersecurity company Sophos said it investigated almost 40 intrusions linked to the threat actor between February 2024 and August 2025. The campaign is assessed with high confidence to share overlaps with a hacking group known as Gold Blade, which is also