-
How Hackers Help NASA Stay Secure: Inside the NASA VDP
How Hackers Help NASA Stay Secure: Inside the NASA VDP NASA, the world’s leading space agency, is no stranger to cyber threats. But instead of locking out hackers, NASA invites them in—ethically.🛰️ What Is NASA’s Vulnerability Disclosure Policy?NASA’s VDP … Read more Published Date: Jun 05, 2025 (8 hours, 4 minutes ago) Vulnerabilities has been mentioned in…
-
Critical Cisco ISE Auth Bypass Flaw Impacts Cloud Deployments on AWS, Azure, and OCI
Critical Cisco ISE Auth Bypass Flaw Impacts Cloud Deployments on AWS, Azure, and OCI Network Security / Vulnerability Cisco has released security patches to address a critical security flaw impacting the Identity Services Engine (ISE) that, if successfully exploited, could allow unaut … Read more Published Date: Jun 05, 2025 (8 hours, 21 minutes ago) Vulnerabilities has…
-
CVE-2025-49113: Roundcube RCE Exploit Unveiled—The Swiss Army Knife of Webmail Just Got a Weaponized Blade
CVE-2025-49113: Roundcube RCE Exploit Unveiled—The Swiss Army Knife of Webmail Just Got a Weaponized Blade In a stunningly fast-moving sequence of events, a serious vulnerability in the widely-used Roundcube webmail client—CVE-2025-49113—has been disclosed early by security researcher Kirill Firsov, founde … Read more Published Date: Jun 05, 2025 (10 hours, 16 minutes ago) Vulnerabilities has been mentioned…
-
May 2025 Patch Tuesday: Five Zero-Days and Five Critical Vulnerabilities Among 72 CVEs
May 2025 Patch Tuesday: Five Zero-Days and Five Critical Vulnerabilities Among 72 CVEs Microsoft has addressed 72 vulnerabilities in its May 2025 security update release. This month’s patches include fixes for five actively exploited zero-day vulnerabilities, including a zero-day vulner … Read more Published Date: Jun 05, 2025 (10 hours, 21 minutes ago) Vulnerabilities has been mentioned…
-
A New Kali Linux Archive Signing Key
TL;DR Bad news for Kali Linux users! In the coming day(s), apt update is going to fail for pretty much everyone out there: Missing key 827C8569F2518CC677FECA1AED65462EC8D5E4C5, which is needed to verify signature. Reason is, we had to roll a new signing key for the Kali repository. You need to download and install the new key…
-
Kali Linux 2025.1a Release (2025 Theme, & Raspberry Pi)
We are kicking off 2025 with Kali Linux 2025.1a! This update builds on existing features, bringing enhancements and improvements to streamline your experience. It is now available to download or upgrade if you’re already running Kali Linux. Kali Linux 2025.1a? What happened to 2025.1? There was a last minute bug discovered in a package after…
-
CVE-2025-1072 – GitLab DoS Vulnerability in Fogbugz Importer
CVE ID : CVE-2025-1072 Published : Feb. 7, 2025, 4:15 a.m. | 1 hour, 27 minutes ago Description : A Denial of Service (DoS) issue has been discovered in GitLab CE/EE affecting all versions starting from 7.14.1 prior to 17.3.7, 17.4 prior to 17.4.4, and 17.5 prior to 17.5.2. A denial of service could occur upon importing…
-
CVE-2025-1086 – Safetytest Cloud-Master Server Remote Path Traversal Vulnerability
CVE ID : CVE-2025-1086 Published : Feb. 7, 2025, 2:15 a.m. | 3 hours, 26 minutes ago Description : A vulnerability has been found in Safetytest Cloud-Master Server up to 1.1.1 and classified as critical. This vulnerability affects unknown code of the file /static/. The manipulation leads to path traversal: ‘../filedir’. The attack can be initiated remotely.…
-
CVE-2025-22402 – Dell Update Manager Plugin Basic Cross-Site Scripting Vulnerability
CVE ID : CVE-2025-22402 Published : Feb. 7, 2025, 3:15 a.m. | 2 hours, 27 minutes ago Description : Dell Update Manager Plugin, version(s) 1.5.0 through 1.6.0, contain(s) an Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Information…
-
CVE-2025-1061 – Nextend Social Login Pro WordPress Authentication Bypass
CVE ID : CVE-2025-1061 Published : Feb. 7, 2025, 2:15 a.m. | 1 hour, 50 minutes ago Description : The Nextend Social Login Pro plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 3.1.16. This is due to insufficient verification on the user being supplied during the Apple OAuth authenticate request through…