12 Dec Uncategorized MITRE Releases 2025 List of Top 25 Most Dangerous Software Vulnerabilities Posted by walter December 12, 2025 0 XSS remains the top software weakness, followed by SQL injection and CSRF. Buffer overflow issues and improper access control make it t... Continue reading
12 Dec Uncategorized NEWS ROUNDUP – 12th December 2025 Posted by walter December 12, 2025 0 This 48-hour DFM roundup tracks global cyber risk across DFIR, investigations, major incidents, exploitation and governance. Highlights... Continue reading
12 Dec Uncategorized Microsoft Bug Bounty Program Expanded to Third-Party Code Posted by walter December 12, 2025 0 All critical vulnerabilities in Microsoft, third-party, and open source code are eligible for rewards if they impact Microsoft services... Continue reading
12 Dec Uncategorized Notepad++ Patches Updater Flaw After Reports of Traffic Hijacking Posted by walter December 12, 2025 0 Notepad++ found a vulnerability in the way the software updater authenticates update files. The post Notepad++ Patches Updater Flaw Af... Continue reading
12 Dec Uncategorized Securing GenAI in the Browser: Policy, Isolation, and Data Controls That Actually Work Posted by walter December 12, 2025 0 The browser has become the main interface to GenAI for most enterprises: from web-based LLMs and copilots, to GenAI‑powered extensions ... Continue reading
12 Dec Uncategorized New React RSC Vulnerabilities Enable DoS and Source Code Exposure Posted by walter December 12, 2025 0 The React team has released fixes for two new types of flaws in React Server Components (RSC) that, if successfully exploited, could re... Continue reading
12 Dec Uncategorized React2Shell Exploitation Escalates into Large-Scale Global Attacks, Forcing Emergency Mitigation Posted by walter December 12, 2025 0 The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has urged federal agencies to patch the recent React2Shell vulnerabili... Continue reading
12 Dec Uncategorized $320,000 Paid Out at Zeroday.Cloud for Open Source Software Exploits Posted by walter December 12, 2025 0 Participants earned rewards at the hacking competition for Grafana, Linux Kernel, Redis, MariaDB, and PostgreSQL vulnerabilities. The p... Continue reading
12 Dec Uncategorized CISA Flags Actively Exploited GeoServer XXE Flaw in Updated KEV Catalog Posted by walter December 12, 2025 0 The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added a high-severity security flaw impacting OSGeo GeoSer... Continue reading
11 Dec Uncategorized Trump Signs Executive Order to Block State AI Regulations Posted by walter December 11, 2025 0 Members of Congress from both parties have pushed for more regulations on AI, saying there is not enough oversight for the powerful tec... Continue reading