Aggregator
Rokarolla Android Trojan Levels Up to Full Device Control, Persistence
CVE-2022-36133 | Epson TM-C3500/TM-C7500 WAM31500 improper authentication (EUVD-2022-38854)
CVE-2022-36122 | Automox Agent 31/33/37 on Windows Key File permission (EUVD-2022-38846)
CVE-2022-36063 | Azure RTOS USBX prior 6.1.12 _ux_host_class_cdc_ecm_mac_address_get integer underflow (GHSA-chpp-5fv9-6368 / EUVD-2022-38825)
CVE-2022-36044 | Rizin up to 0.4.0 Luac File out-of-bounds write (GHSA-mqcj-82c6-gh5q / EUVD-2022-38817)
CVE-2026-48854 | elixir-grpc 0.x Request Body handler.ex allocation of resources (GHSA-q8gf-9rvj-gmgj / EUVD-2026-37012)
CVE-2026-48599 | elixir-grpc 0.x Any transcode.ex authorization (GHSA-mwr4-5g34-j5cq / EUVD-2026-37013)
CVE-2025-68045 | Arraytics WP Event SOlution Plugin up to 4.1.12 on WordPress authorization (EUVD-2025-210166)
CVE-2026-5064 | HP One Agent Software prior 1.3.214.7339 Software Update uncontrolled search path (EUVD-2026-37011)
CVE-2026-48714 | i18next i18next-http-middleware up to 3.9.6 setPath prototype pollution (GHSA-f49m-vf83-692w / EUVD-2026-37006)
CVE-2026-54190 | Awesomemotive Envira Photo Gallery Plugin up to 1.12.5 on WordPress authorization (EUVD-2026-37052)
CVE-2026-12398 | Red Hat Ansible Automation Platform 2 Legacy Role Import API do_git_checkout os command injection (EUVD-2026-37124)
CVE-2026-12323 | Mozilla Firefox up to 151 HTML ui layer (EUVD-2026-37069)
CVE-2026-52715 | Eyal Fitoussi GEO my WordPress Plugin up to 4.5.5 on WordPress sql injection (EUVD-2026-37051)
The Half-Life of Threat Intelligence: When Does an IOC Stop Being Useful?
The concept of the IOC — the Indicator of Compromise — sits at the operational heart of modern threat detection. Block the IP. Flag the domain. Quarantine the hash. The logic is clean and satisfying. But embedded in every IOC is an invisible timestamp that most detection pipelines never read. Intelligence ages. It decays. And […]
The post The Half-Life of Threat Intelligence: When Does an IOC Stop Being Useful? appeared first on Cyber Security News.
Critical Fortinet FortiSandbox Vulnerabilities Actively Exploited in Attacks
Threat actors are actively exploiting multiple critical vulnerabilities in Fortinet’s FortiSandbox platform, with live attack telemetry confirming exploitation attempts over the past 24 hours. Defused has flagged three CVEs under active targeting — including one, CVE-2026-39813, with no previously recorded exploitation history. Honeypot sensors and deception infrastructure disguised as Fortinet FortiSandbox instances have captured exploitation […]
The post Critical Fortinet FortiSandbox Vulnerabilities Actively Exploited in Attacks appeared first on Cyber Security News.