Best Automated Patch Management Software in 2025
Keeping systems and applications up to date is critical for security and performance in today’s rapidly evolving digital landscape. Automated patch management solutions have become essential for organizations to ensure [...]
Helldown Ransomware Exploits Zyxel Zero-Day Vulnerability
A new ransomware, "Helldown," is exploiting vulnerabilities in Zyxel firewalls to breach corporate networks. Researchers have linked the group to attacks targeting Zyxel devices, especially those using IPSec VPN for [...]
Windows File Explorer Privilege Escalation (CVE-2024-38100) Exploited
A critical Windows File Explorer flaw, CVE-2024-38100, has been exploited, allowing attackers to gain admin-level access through an Elevation of Privilege (EoP) vulnerability. CVE-2024-38100 The flaw in the ShellWindows DCOM [...]
SQL Injection Vulnerability in Microsoft DevBlogs Enables Malicious SQL
A security researcher recently discovered a critical SQL injection vulnerability on Microsoft's DevBlogs site (https://devblogs.microsoft.com), allowing attackers to manipulate the database with malicious SQL queries, threatening platform security and data [...]
FunkSec Ransomware Leads December Attacks, Compromising 85 Victims
FunkSec, a RaaS operator, utilizes artificial intelligence to evolve threat actor strategies. While AI aids in scaling operations and generating ransomware, its sophistication remains limited. FunkSec Ransomware Recycled or fabricated [...]