Home Cyber Threat Intelligence Mobile Version
Alert Details

Google  New - Monthly Patches

Monthly Patches for Pixel are out, with 3 new vulnerabilities plus Android updates.

More...

Dell  New

Dell has published a Critical bulletin for Networker Management Console..

More...

GitLab  New

GitLab has published an update that includes 5 security fixes, 4 rated Medium and 1 rated Low. Highest CVSSv3 score of 6.5

More...

Jenkins  New

Jenkins has published a security advisory addressing 2 vulnerabilities. It is rated Medium.

More...

HPE  New

Security vulnerabilities have been identified in HPE Cray XD670 Server using SSH that could allow remote attackers to bypass integrity checks and/or unauthenticated code execution. Highest CVSSv3 score of 8.1

More...

IBM  New

IBM has published Critical bulletins for Spectrum Protect Plus, AIX, and Integration Bus for z/OS.

More...

Linux  New

Updates for SUSE and OpenSUSE.

More...

Juniper  Monthly Patches

Monthly Patches are out with 24 new bulletins, 1 rated Critical, 13 rated High, and 10 rated Medium. Products updated include CTP View, Junos Space, Junos OS, and Junos OS Evolved. Highest CVSSv3 score of 10

More...

Dell  

Dell has published a Critical bulletin for PowerProtect Cyber Recovery.

More...

Splunk  

Splunk has published 15 new bulletins identifying vulnerabilities in third-party packages included in their products. Two are rated Critical, 12 rated High, and 1 rated Medium.

More...

MedDream  

Multiple RCE vulnerabilities in parsing DICOM files affect MedDream PACS Server.

More...

Spring  

Spring Cloud Config Server may not use Vault token sent by clients using a X-CONFIG-TOKEN header when making requests to Vault. CVSSv3 score of 7.5

More...

Palo Alto  Monthly Patches

Monthly Patches include 11 bulletins, affecting GlobalProtect App, Cortex XDR Agent, Prisma SD_WAN, PAN-OS, Cortex XDR Broker, and Prisma Access Browser. Highest CVSSv3 score of 7.6

More...

Linux  

Updates for SUSE, OpenSUSE, Oracle Linux, and Ubuntu.

More...

Fortinet  Monthly Patches

Monthly Patches are out with 10 new bulletins, 1 rated Critical, 2 rated High, 5 rated Medium, and 2 rated Low. Highest CVSSv3 score of 9.3

More...

Fortinet  Monthly Patches

An unverified password change vulnerability in FortiSwitch GUI may allow a remote attacker to modify admin passwords via a specially crafted request. CVSSv3 score of 9.3

More...

Microsoft  Monthly Patches

Microsoft Monthly Patches include 126 fixes, one currently being exploited in the wild. Highest CVSSv3 score of 8.8

More...

Adobe  Monthly Patches

Adobe Monthly Patches include security fixes for ColdFusion, After Effects, Media Encoder, Bridge, Commerce, AEM Forms, Premiere Pro, Photoshop, Animate, AEM Screens, FrameMaker, and XMP Toolkit SDK. Highest CVSSv3 score of 9.1

More...

Alert State
Google Dell GitLab
Patch Patch Patch
Jenkins HPE IBM
Patch Patch Patch
Click for vulnerability details
Alert State
Juniper Dell Splunk
+24hr +24hr +24hr
MedDream Spring PaloAlto
+24hr +24hr +24hr
Click for vulnerability details
Virus News

Troj/PHP-BU   More...

Troj/Phish-APQ   More...

Troj/PDFUri-BUS   More...

Troj/PDFUri-BUB   More...

Troj/PDFUri-BUA   More...

Troj/PDFUri-BTQ   More...

JS/DwnLdr-TTB   More...

JS/DwnLdr-TRR   More...

JS/DwnLdr-TRQ   More...

JS/DwnLdr-TQB   More...

Computer Network Defence Alert Level
Overall
Security News

Fortinet Warns Attackers Retain FortiGate Access Post-Patching via SSL-VPN Symlink Exploit

More...

Paper Werewolf Deploys PowerModul Implant in Targeted Cyberattacks on Russian Sectors

More...

Initial Access Brokers Shift Tactics, Selling More for Less

More...

Palo Alto Networks Warns of Brute-Force Attempts Targeting PAN-OS GlobalProtect Gateways

More...

SpyNote, BadBazaar, MOONSHINE Malware Target Android and iOS Users via Fake Apps

More...

OttoKit WordPress Plugin Admin Creation Vulnerability Under Active Exploitation

More...

Incomplete Patch in NVIDIA Toolkit Leaves CVE-2024-0132 Open to Container Escapes

More...

Malicious npm Package Targets Atomic Wallet, Exodus Users by Swapping Crypto Addresses

More...

PlayPraetor Reloaded: CTM360 Uncovers a Play Masquerading Party

More...

The Identities Behind AI Agents: A Deep Dive Into AI & NHI

More...

Gamaredon Uses Infected Removable Drives to Breach Western Military Mission in Ukraine

More...

Europol Arrests Five SmokeLoader Clients Linked by Seized Database Evidence

More...

AkiraBot Targets 420,000 Sites with OpenAI-Generated Spam, Bypassing CAPTCHA Protections

More...

Lovable AI Found Most Vulnerable to VibeScamming — Enabling Anyone to Build Live Scam Pages

More...

New TCESB Malware Found in Active Attacks Exploiting ESET Security Scanner

More...

Explosive Growth of Non-Human Identities Creating Massive Security Blind Spots

More...

PipeMagic Trojan Exploits Windows Zero-Day Vulnerability to Deploy Ransomware

More...

CISA Warns of CentreStack's Hard-Coded MachineKey Vulnerability Enabling RCE Attacks

More...

Microsoft Patches 125 Flaws Including Actively Exploited Windows CLFS Vulnerability

More...

Adobe Patches 11 Critical ColdFusion Flaws Amid 30 Total Vulnerabilities Discovered

More...

Fortinet Urges FortiSwitch Upgrades to Patch Critical Admin Password Change Flaw

More...

Amazon EC2 SSM Agent Flaw Patched After Privilege Escalation via Path Traversal

More...

Cryptocurrency Miner and Clipper Malware Spread via SourceForge Cracked Software Listings

More...

Agentic AI in the SOC - Dawn of Autonomous Alert Triage

More...

UAC-0226 Deploys GIFTEDCROOK Stealer via Malicious Excel Files Targeting Ukraine

More...

CISA Adds CrushFTP Vulnerability to KEV Catalog Following Confirmed Active Exploitation

More...

Google Releases Android Update to Patch Two Actively Exploited Vulnerabilities

More...

CISA and FBI Warn Fast Flux is Powering Resilient Malware, C2, and Phishing Networks

More...

⚡ Weekly Recap: VPN Exploits, Oracle's Silent Breach, ClickFix Surge and More

More...

Security Theater: Vanity Metrics Keep You Busy - and Exposed

More...

PoisonSeed Exploits CRM Accounts to Launch Cryptocurrency Seed Phrase Poisoning Attacks

More...

Microsoft Credits EncryptHub, Hacker Behind 618+ Breaches, for Disclosing Windows Flaws

More...

North Korean Hackers Deploy BeaverTail Malware via 11 Malicious npm Packages

More...

Malicious Python Packages on PyPI Downloaded 39,000+ Times, Steal Sensitive Data

More...

SpotBugs Access Token Theft Identified as Root Cause of GitHub Supply Chain Attack

More...

Have We Reached a Distroless Tipping Point?

More...

Critical Ivanti Flaw Actively Exploited to Deploy TRAILBLAZE and BRUSHFIRE Malware

More...

OPSEC Failure Exposes Coquettte’s Malware Campaigns on Bulletproof Hosting Servers

More...

CERT-UA Reports Cyberattacks Targeting Ukrainian State Systems with WRECKSTEEL Malware

More...

Critical Flaw in Apache Parquet Allows Remote Attackers to Execute Arbitrary Code

More...

Microsoft Warns of Tax-Themed Email Attacks Using PDFs and QR Codes to Deliver Malware

More...

Lazarus Group Targets Job Seekers With ClickFix Tactic to Deploy GolangGhost Malware

More...

AI Threats Are Evolving Fast — Learn Practical Defense Tactics in this Expert Webinar

More...

AI Adoption in the Enterprise: Breaking Through the Security and Compliance Gridlock

More...

Google Patches Quick Share Vulnerability Enabling Silent File Transfers Without Consent

More...

Triada Malware Preloaded on Counterfeit Android Phones Infects 2,600+ Devices

More...

Legacy Stripe API Exploited to Validate Stolen Payment Cards in Web Skimmer Campaign

More...

Europol Dismantles Kidflix With 72,000 CSAM Videos Seized in Major Operation

More...

Google Fixed Cloud Run Vulnerability Allowing Unauthorized Image Access via IAM Misuse

More...

Helping Your Clients Achieve NIST Compliance: A Step by Step Guide for Service Providers

More...

World Map
Team Cymru Malicious Activity Map
Latest Tool Versions
Burp Suite   07Apr25 2025.2.4
Kali-Linux  19Mar25 2025.1a
Metasploit  11Apr25 6.4.57
Nessus  11Sep24 10.8.3
NetworkMiner  04Apr25 3.0
Nmap  12Mar25 7.95
Snort  30Mar25 3.7.2.0
Wireshark  24Feb25 4.4.5
Latest IDS Signatures
Cisco Sourcefire  10Apr25 04-09-001
Talos  08Apr25 2025-04-08
Proofpoint ET  10Apr25 10902
Santa Clara CA Ft Belvoir (VA) UTC/Zulu London Central Europe Kyiv Moscow Shanghai Sydney Wellington NZ