Thursday , August 6 2026

Recent Posts

Texas-based Tax Credit Consultancy agency exposed PII, ID Numbers, & SSNs

Consultancy agency

Cybersecurity researcher Jeremiah Fowler found an unsecured database with 245,949 records, reported to vpnMentor. It likely belonged to a tax credit consulting agency and contained personal information such as PII, driver’s licenses, military discharge forms, Social Security numbers, and other sensitive documents. The database was unprotected and held 245,949 records …

Read More »

CVE-2025-25257
Fortinet Addresses Major SQL Injection Flaw in FortiWeb

FortiWeb

Fortinet has issued a critical patch for a critical vulnerability in its FortiWeb product, a web application firewall commonly used in enterprises. Identified as CVE-2025-25257, this high-severity issue is an unauthenticated SQL injection flaw that lets remote attackers run unauthorized SQL commands through specially crafted HTTP or HTTPS requests. “An …

Read More »

Microsoft July 2025 Patch Tuesday: One zero-day, 137 flaws

July

Microsoft’s Patch Tuesday in July 2025 is critical, featuring updates for 137 vulnerabilities, including a zero-day in Microsoft SQL Server. The extensive nature of these updates brings relief to defenders and anxiety to users needing to secure their operations. This analysis emphasizes key points, the associated risks, and the implications …

Read More »