Security Bulletin

22 May 2025
Biztonsági szemle
Ignite Innovation Across Industries at Cisco Live 2025
Get ready to explore the future of innovation and collaboration at Cisco Live 2025! From June 8-12 in San Diego—or virtually from anywhere—this premier event brings together thought leaders and for… Read more on Cisco Blogs

22 May 2025
Biztonsági szemle
Legitimate tools spoofed by infostealing Chrome extensions
More than 100 Chrome browser extensions masquerading as legitimate tools, including YouTube, Fortinet VPN, Calendly, and DeepSeek AI, have been utilized to enable browser data compromise and remote script execution as part of a new attack campaign...
22 May 2025
Biztonsági szemle
Lantronix Device Installer
View CSAF 1. EXECUTIVE SUMMARY CVSS v4 6.9 ATTENTION: Low attack complexity Vendor: Lantronix Equipment: Device Installer Vulnerability: Improper Restriction of XML External Entity Reference 2. RISK EVALUATION Successful exploitation of this...
22 May 2025
Biztonsági szemle
CISA Releases Two Industrial Control Systems Advisories
CISA released two Industrial Control Systems (ICS) advisories on May 22, 2025. These advisories provide timely information about current security issues, vulnerabilities, and exploits surrounding ICS. ICSA-25-142-01 Lantronix Device Installer ICSA-25...
22 May 2025
Biztonsági szemle
CISA Adds One Known Exploited Vulnerability to Catalog
CISA has added one new vulnerability to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. CVE-2025-4632 Samsung MagicINFO 9 Server Path Traversal Vulnerability These types of vulnerabilities are frequent attack...
22 May 2025
Biztonsági szemle
Rockwell Automation FactoryTalk Historian ThingWorx
View CSAF 1. EXECUTIVE SUMMARY CVSS v4 9.3 ATTENTION: Exploitable remotely/low attack complexity Vendor: Rockwell Automation Equipment: 95057C-FTHTWXCT11 Vulnerability: Improper Restriction of XML External Entity Reference 2. RISK EVALUATION...
22 May 2025
Biztonsági szemle
New Best Practices Guide for Securing AI Data Released
Today, CISA, the National Security Agency, the Federal Bureau of Investigation, and international partners released a joint Cybersecurity Information Sheet on AI Data Security: Best Practices for Securing Data Used to Train & Operate AI Systems. This...
22 May 2025
Biztonsági szemle
Advisory Update on Cyber Threat Activity Targeting Commvault’s SaaS Cloud Application (Metallic)
Commvault is monitoring cyber threat activity targeting their applications hosted in their Microsoft Azure cloud environment. Threat actors may have accessed client secrets for Commvault’s (Metallic) Microsoft 365 (M365) backup software-as-a-service...

22 May 2025
Biztonsági szemle
GitLab's AI Assistant Opened Devs to Code Theft
Prompt injection risks in GitLab's AI assistant could have allowed attackers to steal source code, or indirectly deliver developers malware, dirty links, and more.

22 May 2025
Biztonsági szemle
SideWinder APT Caught Spying on India's Neighbor Gov'ts
A recent spear-phishing campaign against countries in South Asia aligns with broader political tensions in the region.

22 May 2025
Biztonsági szemle
ISC Stormcast For Thursday, May 22nd, 2025 https://isc.sans.edu/podcastdetail/9462, (Thu, May 22nd)
(c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.

22 May 2025
Biztonsági szemle
Russian hackers targeting Western logistics, tech support of Ukraine
APT28 aims to infiltrate the networks of military groups and private contractors.
Pagination
- Previous page ‹‹
- Page 71
- Next page ››