Secure Bulletin Navigating the cyber sea with knowledge
Home > Tag > vulnerability
#vulnerability

NVIDIA NeMo Framework: a critical cascade of vulnerabilities

14 November 2025  |  dark6  |  Vulnerability

The NVIDIA NeMo Framework, a cornerstone of conversational AI development, has recently revealed a significant and frankly concerning weakness. The disclosure, detailed in a critical security update, centers...

>> read more

China-Linked APTs exploit critical SAP NetWeaver vulnerability to breach over 580 systems globally

13 May 2025  |  securebulletin.com  |  Cybercrime

In a significant escalation of cyber-espionage activities, multiple China-affiliated advanced persistent threat (APT) groups have been found actively exploiting a recently disclosed critical vulnerability in SAP NetWeaver, identified...

>> read more

MITRE Signals Critical Risk to CVE Program as Federal Funding Expires

15 April 2025  |  securebulletin.com  |  Vulnerability

The cybersecurity world faces a significant challenge as the Common Vulnerabilities and Exposures (CVE) program, a cornerstone of global vulnerability management, risks disruption due to expiring federal funding....

>> read more

Malicious NPM packages targeting PayPal users: a recap analysis

12 April 2025  |  securebulletin.com  |  Malware

FortiGuard Labs recently uncovered a series of malicious NPM packages designed to steal sensitive information from compromised systems. These packages, created between March 5 and March 14, were...

>> read more

Surge in Palo Alto Networks scanner activity

1 April 2025  |  securebulletin.com  |  Vulnerability

GreyNoise has detected a significant surge in login scanning activity aimed at Palo Alto Networks PAN-OS GlobalProtect portals. In the last month, nearly 24,000 unique IP addresses have...

>> read more

Critical Remote Code Execution vulnerability discovered in GiveWP WordPress Plugin (CVE-2025-0912)

5 March 2025  |  securebulletin.com  |  Vulnerability

A critical security vulnerability, identified as CVE-2025-0912, has been discovered in the GiveWP WordPress donation plugin. This flaw potentially exposes over 100,000 WordPress websites to remote code execution...

>> read more

The rising threat of ADFS spoofing attacks

5 February 2025  |  securebulletin.com  |  Vulnerability

In a recent alarming development, hackers have launched a sophisticated phishing campaign targeting Microsoft Active Directory Federation Services (ADFS) to steal user credentials and bypass multi-factor authentication (MFA)....

>> read more

Critical vulnerabilities in Netgear routers demand immediate attention

4 February 2025  |  securebulletin.com  |  Vulnerability

On February 4, 2025, Netgear issued a crucial alert regarding two significant vulnerabilities impacting several of its WiFi router models. These security flaws, which allow unauthenticated attackers to...

>> read more