Enterprises on High Alert as Attackers Zero In on Active Directory’s Most Critical Assets
In modern enterprise environments, Active Directory (AD) is far more than a directory service — it is…
continue reading..
CrossCurve Bridge Hit by $3 Million Cyberattack After Smart Contract Validation Flaw Exploited
In a stark demonstration of the persistent risks facing decentralized finance (DeFi) infrastructure, the CrossCurve bridge —…
continue reading..
Medium-Severity SCADA Flaw Exposes Iconics Suite to Disruptive File System Attacks (CVE-2025-0921)
In late January 2026, the cybersecurity research team at Palo Alto Networks Unit 42 disclosed a medium-severity…
continue reading..
CVE-2020-37032: Wing FTP Server Admin Console Flaw Allows Authenticated Attackers to Execute System-Level Commands Remotely
CVE-2020-37032 — Wing FTP Server — Authenticated Remote Command Execution via Lua Console CVE Name: CVE-2020-37032Product: Wing…
continue reading..
CVE-2026-25141: Silent Code Injection in Orval Turns API Specs Into a Supply-Chain Attack Vector
CVE-2026-25141 — Orval JavaScript Code Injection (Arbitrary JS Execution) CVE Identifier: CVE-2026-25141Title: Orval JavaScript Code Injection VulnerabilitySeverity:…
continue reading..
Multiple Linux Kernel Flaws Expose Systems to Crashes and Memory Exhaustion — Hypervisors and Network Stacks at Risk
Linux Kernel – Multiple Memory Leak, Resource Exhaustion & Stability Vulnerabilities Product Details Executive Summary Multiple vulnerabilities…
continue reading..
CVE-2026-23896: Immich API Keys Could Quietly Promote Themselves to Full Admin Access
CVE-2026-23896 – Immich API Privilege Escalation CVE ID: CVE-2026-23896Product: ImmichVulnerability Type: API Authorization Bypass / Privilege EscalationCVSS…
continue reading..
CVE-2026-24054: Malformed Container Image Can Corrupt Host Filesystem in Kata Containers, Triggering Node-Level Outage
CVE-2026-24054 — Kata Containers Host Filesystem Corruption via Block Device Hotplug CVE: CVE-2026-24054Severity: HighCVSS v3.1 Base Score:…
continue reading..
CVE-2026-24897: Critical Erugo File Upload Flaw Allows Full Server Takeover
Erugo – Arbitrary File Upload Leading to Remote Code Execution Vulnerability Overview CVE ID: CVE-2026-24897Product: Erugo (self-hosted…
continue reading..
