Cisco AsyncOS Zero-day

What is the Attack? Cisco has confirmed the active exploitation of...

ArcaneDoor Attack (Cisco ASA Zero-Day)

What is the Attack? Cisco has disclosed a state-sponsored espionage campaign...

React2Shell Remote Code Execution (RCE) Vulnerability

What is the Vulnerability? React2Shell is a critical unauthenticated RCE vulnerability...

React2Shell Remote Code Execution

React2Shell is a critical unauthenticated remote code execution (RCE) vulnerability affecting React Server Components (RSC) and frameworks that implement the Flight protocol, including specific...

Oracle Identity Manager Pre-Auth RCE

What is the Vulnerability? CVE-2025-61757 is a critical pre-authentication remote code...

UNC1549 Critical Infrastructure Espionage Attack

A suspected Iran-linked espionage group tracked as UNC1549 is actively targeting aerospace, defense, and telecommunications organizations across Europe and other regions. The threat actor...

npm (Shai-Hulud) Supply Chain Attack

What is the Attack? On November 24, 2025, Shai Hulud launches...

Akira Ransomware

FortiGuard Labs continue to observe detections in the wild related to the Akira ransomware group. According to the new report by CISA it has...

Oracle E-Business Suite RCE Zero-day

Actively exploited as a zero-day in data theft and extortion campaigns, with activity linked to the Cl0p ransomware group. Successful exploitation enables complete takeover...

Fortra GoAnywhere MFT Attack

A critical deserialization vulnerability in GoAnywhere MFT’s License Servlet (CVSS 10.0) is actively being exploited in the wild. The flaw allows attackers with a...

Latest article

Amazon Cognito unlocks advanced capabilities with next-generation infrastructure

Amazon Cognito recently introduced high-throughput performance for demanding workloads, customer-managed keys for full control over data encryption at rest, and multi- Region replication for...

Gartner SRM 2026 Signals a Cybersecurity Shift From Prevention to Resilience

Gartner SRM 2026 put resilience, identity, and AI agent governance at the center of cybersecurity strategy as prevention loses ground. The post Gartner SRM 2026...

Everest Forms Pro Vulnerability Allows Remote Code Execution on WordPress Sites

Critical Everest Forms Pro RCE flaw exploited to create rogue WordPress admin accounts - Read more

CVE-2026-48567 Azure HorizonDB Elevation of Privilege Vulnerability

Authentication bypass by spoofing in Azure HorizonDB allows an unauthorized attacker to elevate privileges over a network. - Read more