Sunday , April 20 2025

Recent Posts

CVE-2025-24813
Apache Tomcat Flaw Exploited In The Wild

Apache Tomcat

CVE-2025-24813, a critical remote code execution vulnerability, is actively exploited, enabling attackers to control vulnerable Apache Tomcat servers with a single PUT API request, reports Wallarm. The exploit, shared by a user on a Chinese forum, takes advantage of Tomcat’s default session persistence and its ability to handle partial PUT …

Read More »

B1nary_Band1ts secure first for “MIST CyberTron 2025”

MIST CyberTron 2025

MIST Cyber Security Club hosted an exciting MIST CyberTron 2025, featuring a CTF competition, hacking sessions, live demonstrations, and real-world security challenges, creating an unforgettable experience for everyone involved. Here are the winners of CTF event: CTF Champions: B1nary_Band1ts (Reefah Tasnia, Sumaiya Kabir)  MIST_Mega_Minds (Sheikh Rafsan Jain, Tahsina Rahman Mayome) …

Read More »

CVE-2025-24016
Critical RCE vulnerability affects Wazuh

Wazuh

Cybersecurity researchers unveil a critical remote code execution vulnerability (CVE-2025-24016) in Wazuh, a popular open-source SIEM platform. The vulnerability has a CVSS score of 9.9 affects Wazuh versions 4.4.0 to 4.9.0, enabling attackers with API access to run arbitrary Python code on the servers. The flaw is due to unsafe …

Read More »