Copilot Studio Wasn’t Hacked — It Was Trusted Too Much
What’s actually happening with Copilot Studio The issue isn’t that Microsoft Copilot Studio itself was “hacked” in…
continue reading..
CVE-2025-69217: coturn TURN/STUN Server Predictable Random Number Generation Vulnerability
Vulnerability Overview CVE Identifier: CVE-2025-69217Affected Software: coturn (TURN / STUN Server Implementation)Vulnerable Versions: 4.6.2-r5 through 4.7.0-r4Fixed Version:…
continue reading..
EDR Goes Blind: ToneShell Protected by a Kernel-Mode Rootkit
A China-linked advanced persistent threat (APT) — associated with Mustang Panda and also tracked as Hive0154 —…
continue reading..
CVE-2025-15068 – Missing Authorization in Gmission Web Fax
Title: Missing Authorization in Gmission Web Fax (privilege abuse / session credential falsification)Published: 29 Dec 2025Severity: High…
continue reading..
Apple Patches Two Zero-Day Vulnerabilities Actively Exploited in Targeted Attacks
Apple has released urgent security updates to address two zero-day vulnerabilities that were actively exploited in targeted…
continue reading..
Security Advisory: Multiple High-Severity Vulnerabilities in Tenda WH450 Router
Multiple critical and high-severity vulnerabilities have been published affecting the Tenda WH450 router firmware (version 1.0.0.18) —…
continue reading..
Unseen but Persistent: Active Exploitation of Internet-Exposed IoT and Edge Devices
Low Noise, High Utility Activity Observed Observation window: 27–29 DecemberThreat category: Infrastructure abuse / botnet enablementImpact profile:…
continue reading..
CVE-2025-15162: Deep Dive into a High-Risk Tenda WH450 Router Vulnerability
CVE-2025-15162 is a high-severity stack-based buffer overflow vulnerability affecting the Tenda WH450 router running firmware v1.0.0.18. The…
continue reading..
Dumped MacBook Exposed Coupang’s Massive Data Breach
South Korean authorities are investigating a major data breach at Coupang, after a former employee allegedly accessed…
continue reading..
