CISA Issues Urgent Alert on CVE-2025-53690 Affecting Multiple Sitecore’s Products
CISA has issued an urgent alert regarding CVE-2025-53690, a critical vulnerability impacting Sitecore Experience Manager (XM) and Sitecore Experience Platform (XP) — widely used, cloud-based [more…]
CVE-2025-48543 Exposes Android ART’s Weakness
You know, sometimes you hear about new security flaws popping up. Well, there’s something serious involving Android right now – they called it CVE-2025-48543. This [more…]
xAI’s Insider Threat: Trade Secrets Stolen in AI Talent War
xAI, the artificial intelligence startup led by Elon Musk, filed a lawsuit in California federal court against former engineer Xuechen Li. The complaint alleges that [more…]
Dell ThinOS 10: Multiple High-Severity Vulnerabilities Expose Thin Clients to Remote Exploitation and Privilege Escalation
A security advisory released by Dell, DSA-2025-331, warrants immediate attention from any organization deploying Dell thin clients. It details a collection of four distinct vulnerabilities [more…]
CVE-2025-50989: Authenticated Command Injection in OPNsense
A new authenticated command injection vulnerability CVE-2025-50989 has been disclosed for OPNsense 25.1, a popular open source, FreeBSD-based firewall and routing software developed by Deciso. [more…]
Ex-Eaton Developer Jailed 4 Years for Network Sabotage
Houston, TX – Davis Lu, a 55-year-old former senior programmer at Eaton Corporation, was sentenced to four years in prison on August 21, 2025, for [more…]
Nova Ransomware Exposes 500,000 Dutch Women’s Health Data
The breach occurred at Clinical Diagnostics NMDL, a processing lab in Rijswijk, during the first week of July. The national research agency that organizes the [more…]
Canadian Parliament Data Breach: House of Commons Staff Data Compromised
Canada’s House of Commons is currently investigating a major data breach. An unknown attacker gained access to a database holding sensitive employee information. The Canadian [more…]
WarLock Hits Colt via CVE‑2025‑53770 SharePoint Exploit
A single, Remote Code Execution (RCE) exploit on Microsoft SharePoint — CVE‑2025‑53770, also referred to as the ToolShell zero‑day, was used to gain footholds in Colt [more…]
Critical WordPress Vulnerability Affects 70,000+ Sites: Update Now!
A new security vulnerability has been found in a popular WordPress plugin called “Database for Contact Form 7, WPForms, Elementor Forms.” This new security vulnerability [more…]