Friday , May 9 2025

Samsung Smartphone Users at Risk of Hacking, Update Now to Protect Yourself

Samsung smartphone users have been warned by the vendor and the US Cyber security and Infrastructure Security Agency (CISA) about a vulnerability that is being actively exploited in attacks. The vulnerability, which is tracked as CVE-2023-21492, is a kernel pointer exposure issue related to log files. It can allow a privileged local attacker to bypass the ASLR exploit mitigation technique, which indicates that it has likely been chained with other bugs.

Samsung patched CVE-2023-21492 with its May 2023 security updates. The company said it learned about the flaw in mid-January and that certain Android 11, 12, and 13 devices are impacted.

Microsoft Patches Four Critical Azure and Power Apps Vulns

Microsoft has fixed critical vulnerabilities in its core cloud services, including Azure Automation, Azure Storage, Azure DevOps, and Microsoft Power...
Read More
Microsoft Patches Four Critical Azure and Power Apps Vulns

Qilin Ransomware topped April 2025 with 45+ data leak disclosures

The cyber threat landscape is rapidly changing, with a notable increase in ransomware activity in April 2025, driven by the...
Read More
Qilin Ransomware topped April 2025 with 45+ data leak disclosures

SonicWall Patches 3 Flaws in SMA 100 Devices

SonicWall has released patches for three security flaws in SMA 100 Secure Mobile Access appliances that could allow remote code...
Read More
SonicWall Patches 3 Flaws in SMA 100 Devices

Top Ransomware Actively Attacking Financial Sector: 406 Incidents Disclosed

From April 2024 to April 2025, Flashpoint analysts noted that the financial sector was a major target for threat actors,...
Read More
Top Ransomware Actively Attacking Financial Sector: 406 Incidents Disclosed

Critical (CVSS 10) Flaw in Cisco IOS XE WLCs Allows RRA

Cisco has issued a security advisory for a critical vulnerability in its IOS XE Software for Wireless LAN Controllers (WLCs)....
Read More
Critical (CVSS 10) Flaw in Cisco IOS XE WLCs Allows RRA

CVE-2025-29824
Play Ransomware Exploited Windows CVE-2025-29824 as Zero-Day

Attackers linked to the Play ransomware operation deployed a zero-day privilege escalation exploit during an attempted attack against an organization...
Read More
CVE-2025-29824  Play Ransomware Exploited Windows CVE-2025-29824 as Zero-Day

Hacker exploited Samsung MagicINFO 9 Server RCE flaw

Hackers are exploiting an unauthenticated remote code execution vulnerability in the Samsung MagicINFO 9 Server to take control of devices...
Read More
Hacker exploited Samsung MagicINFO 9 Server RCE flaw

CISA adds Langflow flaw to its KEV catalog

CISA added the Langflow vulnerability, CVE-2025-3248 (CVSS score 9.8), to its Known Exploited Vulnerabilities catalog. Langflow is a popular tool...
Read More
CISA adds Langflow flaw to its KEV catalog

Google Fixes Android Flaw (CVE-2025-27363) Exploited by Attackers

Google has released its monthly Android security updates, addressing 46 vulnerabilities, including one that has been actively exploited. CVE-2025-27363 (CVSS...
Read More
Google Fixes Android Flaw (CVE-2025-27363) Exploited by Attackers

UAP hosted “UAP Cyber Siege 2025”, A national level cybersecurity competition

The Cyber Security Club, representing the Department of Computer Science and Engineering at the University of Asia Pacific (UAP), has...
Read More
UAP hosted “UAP Cyber Siege 2025”, A national level cybersecurity competition

CISA added the bug to its Known Exploited Vulnerabilities (KEV) catalog on Friday, instructing government agencies to patch it by June 9.

The vulnerability was discovered by Google’s Threat Analysis Group, which suggests that it has likely been exploited by a commercial spyware vendor. Google noted in its zero-day exploitation database that CVE-2023-21492 was discovered in 2021.

Reports published by Google in recent months describe campaigns in which threat actors linked to spyware vendors attempted to hack Samsung smartphones through various zero-day and n-day vulnerabilities.

In one such campaign, discovered in December 2022, attackers attempted to deliver Android spyware to users in the United Arab Emirates through the Samsung Internet Browser. The attacks were linked by the internet giant to Variston, a Spanish commercial spyware vendor.

Google has also disclosed the details of several Samsung phone vulnerabilities with a 2021 CVE identifier that had been exploited by a spyware vendor while they still had a zero-day status. The company is aware of nine Samsung vulnerabilities discovered in 2021 that have been exploited in attacks.

In addition to CVE-2023-21492, CISA also added two Cisco IOS vulnerabilities to its KEV catalog on Friday. One of them is CVE-2016-6415, whose existence came to light in 2016 as a result of the Shadow Brokers leaks. The second is a very old DoS vulnerability tracked as CVE-2004-1464. Cisco warned customers about its exploitation back in 2004 when it released patches.

Users of Samsung smartphones are advised to install the May 2023 security updates as soon as possible to protect themselves from this vulnerability. They are also advised to be aware of the signs of a cyberattack, such as unusual pop-ups, redirects, or changes in the behavior of their device. If they suspect that they have been infected with malware, they should contact their IT support or a cybersecurity professional.

Check Also

Quantum Computing Village

India Launches First Quantum Computing Village in Amaravati

India has taken a monumental stride toward next-generation technology by initiating its first Quantum Computing …

Leave a Reply

Your email address will not be published. Required fields are marked *