Tuesday , September 16 2025

Recent Posts

CVE-2025-24016
Critical Wazuh RCE Actively Exploited by Mirai Botnets

Mirai Botnets

The Security Intelligence and Response Team (SIRT) at Akamai has found that multiple Mirai-based botnets are exploiting CVE-2025-24016, a critical RCE vulnerability in Wazuh servers. This flaw, which has a CVSS score of 9.9, allows remote attackers to execute arbitrary Python code through unsanitized JSON inputs in the Wazuh Distributed …

Read More »

CISA Issues Seven Advisories for Industrial Control Systems (ICS)

ICS

On June 5, 2025, CISA released seven advisories regarding Industrial Control Systems (ICS) that highlight current security issues, vulnerabilities, and exploits. ICSA-25-155-01 CyberData 011209 SIP Emergency Intercom ICSA-25-155-02 Hitachi Energy Relion 670, 650 series and SAM600-IO Product ICSA-21-049-02 Mitsubishi Electric FA Engineering Software Products (Update H) ICSA-25-133-02 Hitachi Energy Relion …

Read More »

ClickFix Attack Exploits Fake Cloudflare Human Check to Install Malware

fake Cloudflare

A new social engineering attack uses familiar security checks to trick users into downloading malware via fake Cloudflare verification pages. The ClickFix attack technique marks a worrying shift in phishing methods, moving away from traditional file downloads to tricking users into running harmful commands on their own devices. The attack …

Read More »