
Archive
Latest coverage, page 7
Everything we've published, newest first, across threats, news, research, analysis and guides.
324 articles
ThreatsCloud & SaaSHighDaniel Okafor
ThreatsCloud & SaaSHighAzure Kubernetes Service Container Path Traversal Flaw Enables Node Escape and Code Execution
Priya Raman
ThreatsIndustrial & OTCriticalJohnson Controls C-CURE 9000 Vulnerabilities Allow Attackers to Hijack Physical Facility Access Gateways
Mei-Lin Chen
ThreatsCloud & SaaSCriticalMicrosoft Entra ID Critical Deserialization Vulnerability Enables Unauthenticated Remote Code Execution
Daniel Okafor
ThreatsCloud & SaaSCriticalCritical Cisco Secure Firewall Flaw Weaponized to Compromise Enterprise Perimeter Gateways
Priya Raman
ThreatsIndustrial & OTCriticalMitsubishi Electric GX Works3 Authentication Bypass Exposes Industrial PLCs to Memory Manipulation Attacks
Mei-Lin Chen
ThreatsCloud & SaaSHighAWS Discloses Security Policy Bypass in API Model Context Protocol Server Enabling Unauthorized Agent Tool Execution
Daniel Okafor
ThreatsCloud & SaaSHighAWS Discloses Command Injection Flaw in projen Tooling Enabling CI/CD Runner Takeover
Daniel Okafor
ThreatsCloud & SaaSCriticalSiemens Mendix SAML Single Sign-On Flaw Exposes Enterprise Cloud Portals to Account Takeover
Priya Raman
ThreatsIndustrial & OTCriticalSchneider Electric NetBotz Command Injection Flaw Allows Root System Compromise via Malicious Backups
CST Newsroom
ThreatsCloud & SaaSHighAWS Patches Hostname Validation Bypass in IoT Device SDK Exposing Core Endpoints to AiTM Attacks
Daniel Okafor
ThreatsIndustrial & OTCriticalSchneider Electric PowerChute Authentication Flaw Leaves Enterprise UPS Systems Vulnerable to Remote Shutdown
Priya Raman
ThreatsCloud & SaaSHighLinux Kernel In-Kernel TLS Receive Path Flaw Weaponized in Active Multi-Tenant Cloud Attacks
CST Newsroom
ThreatsCloud & SaaSCriticalPublic Exploits Released for Four Linux Kernel Flaws Enabling Local Root and Container Compromise
CST Newsroom
ThreatsCloud & SaaSCriticalAmazon EKS Network Policy Agent Flaw Allows Pod Isolation Bypass Across Kubernetes Clusters
Daniel Okafor
InsightsCloud & SaaSAWS Resolves Privilege Escalation Flaw in IAM Identity Center Temporary Elevated Access
Aisha Noor
ThreatsIndustrial & OTHighABB Ability Edgenius Industrial Edge Controllers Exposed to Container Root Escalation Flaw
Mei-Lin Chen
InsightsCloud & SaaSMicrosoft Resolves CVSS 10.0 Azure AI Foundry Authentication Bypass and Privilege Escalation Flaw
Aisha Noor
ThreatsCloud & SaaSCriticalPTC Windchill & FlexPLM Critical RCE Flaw Weaponized in Active Espionage Attacks
Priya Raman
ThreatsCloud & SaaSHighLinux Kernel Crypto AF_ALG Socket Race Condition Flaw Weaponized for Root Escalation
CST Newsroom
ThreatsCloud & SaaSHighLinux Kernel ebtables SNAT Out-of-Bounds Write Flaw Exploited in Active Attacks
Mei-Lin Chen
ThreatsCloud & SaaSHighCritical Ubiquiti UniFi OS Path Traversal Flaw Exploited to Hijack Enterprise Gateways
Priya Raman
ThreatsCloud & SaaSHighCloud Container Escape: Linux Kernel cgroups Flaw CVE-2022-0492 Weaponized in Cloud Attacks
CST Newsroom
InsightsCloud & SaaSGoogle Cloud Security Advisory: GCP Guest OS Login Privilege Escalation Flaw Dissected
Mei-Lin Chen