Saturday , June 20 2026

Alert

CVE-2023-28760
TP-Link Router Flaw Allows Root RCE via LAN, PoC Available

Rocco Calvi, a security researcher, discovered a serious flaw in the TP-Link AX1800 WiFi 6 Router (Archer AX21/AX20) that enables local network attackers to execute code remotely as the root user. CVE-2023-28760 is a high-severity vulnerability (CVSS 7.5) in the MiniDLNA service of the router’s media-sharing feature. As described in …

Read More »

New Android spyware ClayRat mimics WhatsApp, TikTok, YouTube

Android spyware

Zimperium’s zLabs has discovered a fast-spreading Android spyware called ClayRat, which targets users by posing as trusted apps like WhatsApp, Google Photos, TikTok, and YouTube. Attackers use social engineering to install malware by creating fake websites that resemble official pages. For instance, a fake GdeDPS site was used in one …

Read More »

CrowdStrike Releases Fixes for Two Falcon Sensor for Windows Vulns

Falcon Sensor

CrowdStrike has issued security updates for two vulnerabilities in its Falcon Sensor for Windows, CVE-2025-42701 and CVE-2025-42706. These flaws require local code execution and may let attackers delete files, which could affect system stability and security monitoring. Vulnerabilities found through CrowdStrike’s Bug Bounty program reflect their proactive security efforts. There’s …

Read More »

SonicWall Confirms Hackers Access All Cloud Firewall Backups

cloud backup

After its investigation in collaboration with leading IR Firm, Mandiant into the scope of a recent cloud backup security incident, SonicWall confirm that an unauthorized party accessed firewall configuration backup files for all customers who have used SonicWall’s cloud backup service. The files contain encrypted credentials and configuration data; while …

Read More »

IBM fixed multiple vulns in its products, including critical one

IBM has issued fixes for three security vulnerabilities in its IBM Security Verify Access and IBM Verify Identity Access products. These issues could permit privilege escalation, command execution, and script injection. Customers are urged to install these patches right away to avoid exploitation in production environments. CVE-2025-36355 lets authenticated users …

Read More »

Oracle released patch for E business suite (CVE-2025-61882) after Cl0p attack

Oracle has issued an emergency update to fix a serious security issue in its E-Business Suite, which has been targeted in recent Cl0p data theft attacks. The critical vulnerability, CVE-2025-61882 (CVSS score: 9.8), could let an unauthenticated attacker with HTTP access compromise the Oracle Concurrent Processing component. “This vulnerability is …

Read More »

Hackers exploited Zimbra flaw as zero-day using iCalendar files

Zimbra

Researchers monitoring for larger .ICS calendar attachments found that a flaw in Zimbra Collaboration Suite (ZCS) was used in zero-day attacks at the beginning of the year. ICS files, or iCalendar files, store plain text calendar information, like meetings and events, and allow exchange between different calendar apps. Threat actors …

Read More »