Secure Bulletin Navigating the cyber sea with knowledge
Home > Tag > cve
#cve

Fog’s dubious GitLab claims: investigation on instances

6 March 2025  |  securebulletin.com  |  Ransomware

One name that has been gaining traction since late January is Fog, a ransomware operation that has been particularly vocal about targeting GitLab instances. Fog has claimed responsibility...

>> read more

A critical race condition vulnerability (CVE-2025-24118) in Apple’s macOS kernel has been discovered

3 February 2025  |  securebulletin.com  |  Vulnerability

A critical vulnerability has been identified in the macOS kernel (XNU), designated as CVE-2025-24118, which poses significant risks for users of Apple’s operating systems. With a CVSS score...

>> read more

Critical vulnerability in the 7-Zip file archiver allows attackers to bypass MotW

21 January 2025  |  dark6  |  Vulnerability

A significant security vulnerability has been identified in the popular file archiver 7-Zip, allowing attackers to bypass the Windows Mark of the Web (MotW) security feature. This flaw,...

>> read more

Murdoc_Botnet: researchers have identified a campaign exploiting vulnerabilities in AVTECH IP cameras, in a variant of Mirai

21 January 2025  |  dark6  |  Cybercrime

Cybersecurity researchers have raised alarms over the emergence of the Murdoc_Botnet, a new variant of the infamous Mirai botnet that exploits vulnerabilities in AVTECH IP cameras and Huawei...

>> read more

Vulnerability in the Aviatrix Controller used to deploy backdoors

13 January 2025  |  securebulletin.com  |  Vulnerability

A critical security vulnerability in the Aviatrix Controller cloud networking platform, identified as CVE-2024-50603, is currently being exploited by cybercriminals to deploy backdoors and cryptocurrency mining operations. This...

>> read more

Hackers are exploiting new vulnerability on Ivanti

8 January 2025  |  securebulletin.com  |  Vulnerability

Ivanti has issued a critical warning regarding the exploitation of a newly discovered vulnerability in its Connect Secure product, identified as CVE-2025-0282. This remote code execution flaw has...

>> read more

Curl vulnerability exposes user credentials in redirects

16 December 2024  |  securebulletin.com  |  Vulnerability

A recently discovered vulnerability in cURL, identified as CVE-2024-11053, poses a significant risk by potentially exposing user credentials during HTTP redirects. This flaw affects various applications that utilize...

>> read more

Critical vulnerabilities in Skoda and Volkswagen infotainment systems

12 December 2024  |  securebulletin.com  |  Vulnerability

Cybersecurity researchers from PCAutomotive have uncovered 12 significant vulnerabilities in the infotainment systems of certain Skoda and Volkswagen vehicles, exposing over 1.4 million cars to potential exploitation. These...

>> read more