
Fortinet Data Breach: What We Know So Far
Fortinet Data Breach: What We Know So Far On September 12, Fortinet, a prominent cybersecurity company, acknowledged a security incident involving unauthorized access to a third-party cloud-based file...

Microsoft’s September 2024 Patch Tuesday Addresses 79 CVEs, 4 Zero-Day...
Microsoft’s September 2024 Patch Tuesday Addresses 79 CVEs, 4 Zero-Days; Critical Ivanti EPM Updates [Update] September 17, 2024: “PoC Exploit Released for Critical Ivanti EPM Vulnerability (CVE...

Akira Ransomware Targets SonicWall Vulnerability (CVE-2024-40766) – Im...
Akira Ransomware Targets SonicWall Vulnerability (CVE-2024-40766) – Immediate Patching Required [Update] October 4, 2024: “Majority of SonicWall Devices Remain Unpatched for CVE-2024-40766, Patc...

Critical Security Updates for Cisco Smart Licensing Utility & Veea...
Critical Security Updates for Cisco Smart Licensing Utility & Veeam Products [Update] March 21, 2025: “Confirmed Exploitation Activity Surfaces: CVE-2024-20439 and CVE-2024-20440” [Update] Octobe...

Telegram’s Uncertain Future: Hacktivist Reactions and the Potential Sh...
Telegram’s Uncertain Future: Hacktivist Reactions and the Potential Shift to New Platforms [Update] January 8, 2025: “Telegram’s Latest Transparency Report Highlights Increased Data Sharing” [Up...

VMware Fusion Receives Fix for a Severe Code Execution Vulnerability, ...
VMware Fusion Receives Fix for a Severe Code Execution Vulnerability, CVE-2024-38811 Recently, Broadcom has addressed a significant security vulnerability in VMware Fusion. Tracked as CVE-2024-38811, ...

Exploits Released for Critical Flaws in WhatsUp Gold and Jenkins, Patc...
Exploits Released for Critical Flaws in WhatsUp Gold and Jenkins, Patch Now (CVE-2024-6670, CVE-2024-43044) [Update] September 13, 2024: “Exploitation Activity on Progress WhatsUp Gold Vulnerabilities...

Pre-Auth RCE Vulnerability in Apache OFBiz (CVE-2024-38856) Is Under A...
Pre-Auth RCE Vulnerability in Apache OFBiz (CVE-2024-38856) Is Under Active Exploitation, CISA Warns [Update] September 6, 2024: “New RCE Vulnerability (CVE-2024-45195) Discovered in Apache OFBi...

Vulnerability in Python's pandas Library (CVE-2024-42992)
Vulnerability in Python’s pandas Library (CVE-2024-42992) [Update] August 27, 2024: CVE has been marked “REJECT” in the CVE List. Find more information in the blog post. Python’s popular data analysis...

August 2024 Patch Tuesday Highlights: 89 CVEs, 6 Zero-Day Vulnerabilit...
August 2024 Patch Tuesday Highlights: 89 CVEs, 6 Zero-Day Vulnerabilities Under Exploitation [Update] September 4, 2024: “Details of CVE-2024-38106 and PoC Exploit” [Update] August 20, 2024: “Lazarus ...

Critical Vulnerabilities in Progress WhatsUp Gold, Jenkins Could Lead ...
Critical Vulnerabilities in Progress WhatsUp Gold, Jenkins Could Lead to RCE Attacks (CVE-2024-4885, CVE-2024-43044) A critical vulnerability in Progress WhatsUp Gold, recently patched, has been activ...

Unlocking the Future of Cybersecurity: SOCRadar’s Advanced AI Training...
Unlocking the Future of Cybersecurity: SOCRadar’s Advanced AI Training Returns The cybersecurity landscape constantly evolves, and staying ahead of emerging threats with complicated risks is more cruc...

SOCRadar Recognized in Gartner Report on Digital Risk Protection Servi...
SOCRadar Recognized in Gartner Report on Digital Risk Protection Services and External Attack Surface Management Again In a report published by Gartner on its website on July 29, 2024, SOCRadar was hi...

Major Cyber Attacks in Review: July 2024
Major Cyber Attacks in Review: July 2024 July 2024 has been marked by a series of high-impact cyber attacks, affecting millions of individuals and numerous organizations. Amidst numerous threat activi...

SOCRadar's Response to the USDoD’s Claim of Scraping 330 Million Email...
SOCRadar’s Response to the USDoD’s Claim of Scraping 330 Million Emails TL;DR The claim that the threat actor extracted the data from the SOCRadar platform is inaccurate and does not reflect the t...

Critical Bitdefender Patch for GravityZone Update Server: CVE-2024-698...
Critical Bitdefender Patch for GravityZone Update Server: CVE-2024-6980 Could Lead to SSRF Attacks Bitdefender, a provider of cybersecurity solutions, has recently patched a critical vulnerability (CV...

VMware ESXi Hypervisor Vulnerability (CVE-2024-37085) Exploited by Ran...
VMware ESXi Hypervisor Vulnerability (CVE-2024-37085) Exploited by Ransomware Groups, Microsoft Warns [Update] July 31, 2024: “CISA Adds VMware ESXi Hypervisor Vulnerability (CVE-2024-37085) to ...

ShadowRoot Ransomware Campaign
ShadowRoot Ransomware Campaign The ShadowRoot ransomware campaign represents a significant cybersecurity threat targeting Turkish businesses. This campaign, identified by the X-Labs research team, uti...

Docker Fixed an AuthZ Bypass Flaw Leading to Privilege Escalation: CVE...
Docker Fixed an AuthZ Bypass Flaw Leading to Privilege Escalation: CVE-2024-41110 On July 23, 2024, Docker issued an advisory regarding a security vulnerability in the authorization plugins (AuthZ), u...

Laravel Framework Affected by a New Critical Vulnerability (CVE-2024-4...
Laravel Framework Affected by a New Critical Vulnerability (CVE-2024-40075): Patch Now A very critical vulnerability, designated as CVE-2024-40075, has emerged in the Laravel PHP framework. This flaw ...