Wednesday , March 26 2025

Recent Posts

(CVE-2024-540385)
CVSS 10 Alert! HPE Cray Vulnerability Authentication Bypass Threat

HPE

A critical vulnerability, CVE-2024-540385, has been found in HPE Cray XD670 servers using the AMI BMC Redfish API, allowing remote authentication bypass. Administrators must act quickly to prevent the exploitation. According to HPE’s security bulletin, “This vulnerability could be remotely exploited to allow authentication bypass.” An attacker could gain unauthorized …

Read More »

CVE-2025-24813
Apache Tomcat Flaw Exploited In The Wild

Apache Tomcat

CVE-2025-24813, a critical remote code execution vulnerability, is actively exploited, enabling attackers to control vulnerable Apache Tomcat servers with a single PUT API request, reports Wallarm. The exploit, shared by a user on a Chinese forum, takes advantage of Tomcat’s default session persistence and its ability to handle partial PUT …

Read More »

B1nary_Band1ts secure first for “MIST CyberTron 2025”

MIST CyberTron 2025

MIST Cyber Security Club hosted an exciting MIST CyberTron 2025, featuring a CTF competition, hacking sessions, live demonstrations, and real-world security challenges, creating an unforgettable experience for everyone involved. Here are the winners of CTF event: CTF Champions: B1nary_Band1ts (Reefah Tasnia, Sumaiya Kabir)  MIST_Mega_Minds (Sheikh Rafsan Jain, Tahsina Rahman Mayome) …

Read More »