Security Bulletin

17 Jun 2025
Biztonsági szemle
Windows privilege escalation possible with ASUS Armoury Crate flaw
Attackers could achieve escalated SYSTEM privileges on Windows machines through the exploitation of a high-severity ASUS Armoury Crate system management software vulnerability, tracked as CVE-2025-3464, BleepingComputer reports.

17 Jun 2025
Biztonsági szemle
High-severity Tenable vulnerability scanner bugs fixed
Updates have been issued by Tenable to address a trio of high-severity security issues impacting its Nessus vulnerability scanner for Windows, reports Infosecurity Magazine.

17 Jun 2025
Biztonsági szemle
Meaningful progress in cyberattack recovery reported by UNFI
TechCrunch reports that leading North American grocery wholesaler United Natural Foods, Inc., has disclosed significant progress in restoring its electronic ordering systems following a cyberattack nearly two weeks ago, which has led to food...

17 Jun 2025
Biztonsági szemle
WestJet Airlines App, Website Suffer After Cyber Incident
Though its operations are running smoothly, the airline warned customers and employees to exercise caution when sharing personal information online.

17 Jun 2025
Biztonsági szemle
Alerts for flaws in industrial control systems include Siemens, Aveva
CISA issued a handful of alerts to address vulnerabilities in 10 industrial control appliances.

17 Jun 2025
Biztonsági szemle
FIN7-linked threat group impersonates 7-Zip, software updates
GrayAlpha uses custom loaders to deploy the NetSupport RAT backdoor.

16 Jun 2025
Biztonsági szemle
Malicious Chimera Turns Larcenous on Python Package Index
Unlike typical data-stealing malware, this attack tool targets data specific to corporate and cloud infrastructures in order to execute supply chain attacks.

16 Jun 2025
Biztonsági szemle
How to Break the Security Theater Illusion
When security becomes a performance, the fallout isn’t just technical, it’s organizational.

16 Jun 2025
Biztonsági szemle
Anubis Ransomware-as-a-Service Kit Adds Data Wiper
The threat of wiping files and servers clean gives Anubis affiliates yet another way to leverage ransomware victims who may be hesitant to pay to get their data back, Trend Micro said.

16 Jun 2025
Biztonsági szemle
PyPI repositories targeted by malicious 'Chimera-Sandbox Extensions'
Bad package takes aim at AI apps that contain MacOS data, CI/CD pipelines, and AWS tokens.

16 Jun 2025
Biztonsági szemle
Washington Post Staffer Emails Targeted in Cyber Breach
Journalists' Microsoft accounts were breached, which would have given attackers access to emails of staff reporters covering national security, economic policy, and China.

16 Jun 2025
Biztonsági szemle
'Water Curse' Targets Infosec Pros Via Poisoned GitHub Repositories
The emerging threat group attacks the supply chain via weaponized repositories posing as legitimate pen-testing suites and other tools that are poisoned with malware.
Pagination
- Previous page ‹‹
- Page 23
- Next page ››