Secure Bulletin Navigating the cyber sea with knowledge
Home > Tag > cve
#cve

Critical Roundcube vulnerability (CVE-2025-49113): exploit sold in Darknet as “Email Armageddon” looms

6 June 2025  |  securebulletin.com  |  Vulnerability

A decade-old Remote Code Execution (RCE) flaw in Roundcube, the widely used open-source email client, has escalated into a global cybersecurity emergency. Designated CVE-2025-49113 with a near-maximum CVSS...

>> read more

China-Linked APTs exploit critical SAP NetWeaver vulnerability to breach over 580 systems globally

13 May 2025  |  securebulletin.com  |  Cybercrime

In a significant escalation of cyber-espionage activities, multiple China-affiliated advanced persistent threat (APT) groups have been found actively exploiting a recently disclosed critical vulnerability in SAP NetWeaver, identified...

>> read more

MITRE Signals Critical Risk to CVE Program as Federal Funding Expires

15 April 2025  |  securebulletin.com  |  Vulnerability

The cybersecurity world faces a significant challenge as the Common Vulnerabilities and Exposures (CVE) program, a cornerstone of global vulnerability management, risks disruption due to expiring federal funding....

>> read more

The Ballista Botnet: a new IoT threat with italian roots

11 March 2025  |  securebulletin.com  |  Malware

Cato Networks has uncovered a sophisticated IoT botnet, dubbed Ballista, targeting TP-Link Archer routers by exploiting a two-year-old vulnerability (CVE-2023-1389). This threat, linked to an Italian threat actor,...

>> read more

Fog’s dubious GitLab claims: investigation on instances

6 March 2025  |  securebulletin.com  |  Ransomware

One name that has been gaining traction since late January is Fog, a ransomware operation that has been particularly vocal about targeting GitLab instances. Fog has claimed responsibility...

>> read more

A critical race condition vulnerability (CVE-2025-24118) in Apple’s macOS kernel has been discovered

3 February 2025  |  securebulletin.com  |  Vulnerability

A critical vulnerability has been identified in the macOS kernel (XNU), designated as CVE-2025-24118, which poses significant risks for users of Apple’s operating systems. With a CVSS score...

>> read more

Critical vulnerability in the 7-Zip file archiver allows attackers to bypass MotW

21 January 2025  |  dark6  |  Vulnerability

A significant security vulnerability has been identified in the popular file archiver 7-Zip, allowing attackers to bypass the Windows Mark of the Web (MotW) security feature. This flaw,...

>> read more

Murdoc_Botnet: researchers have identified a campaign exploiting vulnerabilities in AVTECH IP cameras, in a variant of Mirai

21 January 2025  |  dark6  |  Cybercrime

Cybersecurity researchers have raised alarms over the emergence of the Murdoc_Botnet, a new variant of the infamous Mirai botnet that exploits vulnerabilities in AVTECH IP cameras and Huawei...

>> read more