Path traversal vulnerability in WinRAR - CyberAlerts
View detailed information about CVE-2025-8088 on CyberAlerts
๐จ New CISA Vulnerability Alert ๐จ
HIGH: Path traversal vulnerability in WinRAR
CVE-2025-8088
08.08.2025 12:40 โ ๐ 0 ๐ 1 ๐ฌ 0 ๐ 0
cvelistv5 - CVE-2025-8088
Vulnerability-Lookup - Fast vulnerability lookup correlation from different sources.
You can now share your thoughts on vulnerability CVE-2025-8088 in Vulnerability-Lookup:
https://vulnerability.circl.lu/vuln/CVE-2025-8088
win.rar GmbH - WinRAR
#VulnerabilityLookup #Vulnerability #Cybersecurity #bot
08.08.2025 11:38 โ ๐ 0 ๐ 1 ๐ฌ 0 ๐ 0
cvelistv5 - CVE-2025-8730
Vulnerability-Lookup - Fast vulnerability lookup correlation from different sources.
You can now share your thoughts on vulnerability CVE-2025-8730 in Vulnerability-Lookup:
https://vulnerability.circl.lu/vuln/CVE-2025-8730
Belkin - F9K1009
#VulnerabilityLookup #Vulnerability #Cybersecurity #bot
08.08.2025 14:43 โ ๐ 0 ๐ 1 ๐ฌ 0 ๐ 0
Federal court filing system hit in sweeping hack
The identities of confidential court informants are feared compromised in a series of breaches across multiple U.S. states.
NEW: "The electronic case filing system used by the federal judiciary has been breached in a sweeping cyber intrusion that is believed to have exposed sensitive court data across multiple U.S. states, according to two people with knowledge of the incident."
07.08.2025 01:46 โ ๐ 2612 ๐ 1420 ๐ฌ 92 ๐ 300
Flaws Expose 100 Dell Laptop Models to Implants, Windows Login Bypass
ReVault vulnerabilities in the ControlVault3 firmware in Dell laptops could lead to firmware modifications or Windows login bypass.
The issues, tracked as CVE-2025-24311, CVE-2025-25215, CVE-2025-24922, CVE-2025-25050, and CVE-2025-24919, were initially disclosed on June 13, when Dell announced that patches for them were rolled out for over 100 Dell Pro, Latitude, and Precision models. www.securityweek.com/flaws-expose...
06.08.2025 13:05 โ ๐ 2 ๐ 2 ๐ฌ 0 ๐ 0
YouTube video by BSidesLV
BsidesLV 2025 - Breaking Ground - Monday
My BSidesLV keynote is here. It touches on several difficult topics in our industry. Topics best discussed in person. As our industry spends this week in Vegas, please share this talk with your peers and discuss in person.
www.youtube.com/watch?v=4CD9...
05.08.2025 17:47 โ ๐ 20 ๐ 5 ๐ฌ 0 ๐ 2
Zscaler users: CVE-2025-54982 is a SAML signature bypass (CVSS 9.6) that undermines your SSO safeguards. Stay on top of the upcoming patch and lock it down fast! More โก๏ธ basefortify.eu/cve_reports/... #cybersecurity
05.08.2025 07:42 โ ๐ 3 ๐ 1 ๐ฌ 0 ๐ 0
CVE-2025-54982 - Zscaler SAML Authentication Signature Forgery
An improper verification of cryptographic signature in Zscaler's SAML authentication mechanism on the server-side allowed an authentication abuse.
CVE-2025-54982 - Zscaler SAML Authentication Signature Forgery
CVE ID : CVE-2025-54982
Published : Aug. 5, 2025, 6:15 a.m. | 17ย minutes ago
Description : An improper verification of cryptographic signature in Zscaler's SAML authentication mechanism on the server-side all...
05.08.2025 07:23 โ ๐ 1 ๐ 1 ๐ฌ 0 ๐ 0
cvelistv5 - CVE-2025-54982
Vulnerability-Lookup - Fast vulnerability lookup correlation from different sources.
You can now share your thoughts on vulnerability CVE-2025-54982 in Vulnerability-Lookup:
https://vulnerability.circl.lu/vuln/CVE-2025-54982
Zscaler - Authentication Server
#VulnerabilityLookup #Vulnerability #Cybersecurity #bot
05.08.2025 06:09 โ ๐ 0 ๐ 1 ๐ฌ 0 ๐ 0
Security threat visualization
CRITICAL: CVE-2025-54982 in Zscaler Authentication Server allows SAML signature bypassโauthentication can be abused. No fix yet, monitor for guidance. https://radar.offseq.com/threat/cve-2025-54982-cwe-347-improper-verification-of-cr-e9f16fd5 #OffSeq #Zscaler #Vulnerability
05.08.2025 06:01 โ ๐ 0 ๐ 1 ๐ฌ 0 ๐ 0
Raspberry Robin Malware Updates
~Zscaler~
Raspberry Robin malware evolves with a new LPE exploit (CVE-2024-38196), ChaCha-20 encryption, and stronger obfuscation.
-
IOCs: CVE-2024-38196
-
#CVE202438196 #Malware #RaspberryRobin #ThreatIntel
04.08.2025 16:02 โ ๐ 0 ๐ 1 ๐ฌ 0 ๐ 0
Microsoft and Apple Released Fix for CVE-2025-31199 Vulnerability
28.07.2025 16:07 โ ๐ 0 ๐ 1 ๐ฌ 0 ๐ 0
Microsoft Threat Intelligence Discovers a macOS Vulnerability, CVE-2025-31199, That Could Enable Attackers To Steal Private Files
28.07.2025 16:07 โ ๐ 0 ๐ 1 ๐ฌ 0 ๐ 0
MICROSOFT THREAT INTELLIGENCE: MACOS VULNERABILITY CVE-2025-31199 COULD EXPOSE PRIVATE FILE DATA TO ATTACKERS Microsoft has discovered a macOS security flaw โ CVE-2025-31199 โ that could allow malicious actors to steal private file data from targeted systems.
28.07.2025 16:06 โ ๐ 0 ๐ 1 ๐ฌ 0 ๐ 0
cvelistv5 - CVE-2025-43253
Vulnerability-Lookup - Fast vulnerability lookup correlation from different sources.
You can now share your thoughts on vulnerability CVE-2025-43253 in Vulnerability-Lookup:
https://vulnerability.circl.lu/vuln/CVE-2025-43253
Apple - macOS
#VulnerabilityLookup #Vulnerability #Cybersecurity #bot
29.07.2025 23:53 โ ๐ 0 ๐ 1 ๐ฌ 0 ๐ 0
cvelistv5 - CVE-2025-43266
Vulnerability-Lookup - Fast vulnerability lookup correlation from different sources.
You can now share your thoughts on vulnerability CVE-2025-43266 in Vulnerability-Lookup:
https://vulnerability.circl.lu/vuln/CVE-2025-43266
Apple - macOS
#VulnerabilityLookup #Vulnerability #Cybersecurity #bot
29.07.2025 23:53 โ ๐ 0 ๐ 1 ๐ฌ 0 ๐ 0
cvelistv5 - CVE-2025-31199
Vulnerability-Lookup - Fast vulnerability lookup correlation from different sources.
You can now share your thoughts on vulnerability CVE-2025-31199 in Vulnerability-Lookup:
https://vulnerability.circl.lu/vuln/CVE-2025-31199
Apple - iOS and iPadOS
#VulnerabilityLookup #Vulnerability #Cybersecurity #bot
29.05.2025 22:01 โ ๐ 0 ๐ 1 ๐ฌ 0 ๐ 0
CVE-2025-31199 - "Apple iOS/iPadOS/visualOS/macOS Sequoia Sensitive Data Disclosure"
A logging issue was addressed with improved data redaction. This issue is fixed in iOS 18.4 and iPadOS 18.4, visionOS 2.4, macOS Sequoia 15.4. An app may be able to access sensitive user data.
CVE-2025-31199 - "Apple iOS/iPadOS/visualOS/macOS Sequoia Sensitive Data Disclosure"
CVE ID : CVE-2025-31199
Published : May 29, 2025, 10:15 p.m. | 1ย hour, 41ย minutes ago
Description : A logging issue was addressed with improved data redaction. This issue is fixed in iOS...
30.05.2025 00:02 โ ๐ 0 ๐ 1 ๐ฌ 0 ๐ 0
โtis a different vuln - CVE-2025-6543
27.07.2025 16:21 โ ๐ 3 ๐ 1 ๐ฌ 1 ๐ 0
GitHub - NCSC-NL/citrix-2025
Contribute to NCSC-NL/citrix-2025 development by creating an account on GitHub.
The Dutch cybersecurity agency has released a script to detect webshells typically installed by attackers exploiting the CitrixBleed2 vulnerability in Citrix NetScaler appliances
github.com/NCSC-NL/citr...
27.07.2025 14:18 โ ๐ 23 ๐ 10 ๐ฌ 1 ๐ 0
Critical Flaw in NVIDIA AI Toolkit Puts Cloud Services at Risk โ Upgradeย Immediately
A critical flaw in NVIDIA's AI container toolkit (CVE-2025-23266) allows full host takeover, posing serious risks to cloud-based AI services.
Critical Flaw in NVIDIA AI Toolkit Puts Cloud Services at Risk โ Upgradeย Immediately
A critical flaw in NVIDIA's AI container toolkit (CVE-2025-23266) allows full host takeover, posing serious risks to cloud-based AI services.
22.07.2025 02:15 โ ๐ 0 ๐ 1 ๐ฌ 0 ๐ 0
Critical flaw in NVIDIA Container Toolkit (CVE-2025-23266) allows privilege escalation in AI cloud services. Update to versions 1.17.8 and 25.3.1 immediately. #CyberSecurity #AI #NVIDIA #CloudSecurity Link: thedailytechfeed.com/critical-vul...
18.07.2025 15:19 โ ๐ 0 ๐ 2 ๐ฌ 0 ๐ 0
CVE-2025-23267๏ผA vulnerability in NVIDIA Container Toolkit can lead to container escape.
www.openwall.com ->
Looking at this and CVE-2025-23266 makes me wonder: was NVIDIA's GPU sandbox vibe-coded?
#VibeCoding #AI #YOLO
Original->
18.07.2025 14:52 โ ๐ 0 ๐ 2 ๐ฌ 0 ๐ 0
Great research out of Wiz!
At @edera.dev we think a lot about how to prevent vulns like this one.
Our hardened runtime technology would have completely prevented CVE-2025-23266 by eliminating the shared kernel state that makes this container escape possible. See how: edera.dev/stories/how-...
18.07.2025 14:30 โ ๐ 4 ๐ 3 ๐ฌ 0 ๐ 1
ใใปใญใฅใชใใฃ ใใฅใผในใใLivewireใใซRCE่ๅผฑๆง - ใใฟใใใซใขใใใใผใใ๏ผ1ใใผใธ็ฎ / ๅ
จ1ใใผใธ๏ผ๏ผSecurity NEXT
ใLaravelใใฎๆฉ่ฝใๆกๅผตใใใฆใงใ้็บใใฌใผใ ใฏใผใฏใLivewire 3ใใซใชใขใผใใใใณใใณใใฎๅฎ่กใๅฏ่ฝใจใชใ่ๅผฑๆงใๆใใใจใชใฃใใใขใใใใผใใๆจๅฅจใใใฆใใใ
๏ผSecurity NEXT
ใLivewireใใซRCE่ๅผฑๆง - ใใฟใใใซใขใใใใผใใ
ใLaravelใใฎๆฉ่ฝใๆกๅผตใใใฆใงใ้็บใใฌใผใ ใฏใผใฏใLivewire 3ใใซใชใขใผใใใใณใใณใใฎๅฎ่กใๅฏ่ฝใจใชใ่ๅผฑๆงใๆใใใจใชใฃใใใขใใใใผใใๆจๅฅจใใใฆใใใ
ใๅ3.6.3ใใใใณไปฅๅใฎใใผใธใงใณใซใใใฆใ็นๅฎๆกไปถไธใง่ช่จผใชใใซใชใขใผใใใไปปๆใฎใณใใณใใๅฎ่กใงใใ่ๅผฑๆงใCVE-2025-54068ใใๆใใใจใชใฃใใใฎใ
ใใญใใใฃๆดๆฐใซใจใใชใๅ
้จๅฆ็ใฎไธๅใซใใ็ใใ่ๅผฑๆงใงใๅฏพ่ฑกใฎใณใณใใผใใณใใใใฆใณใใใใฆใใๅ ดๅใซๅฝฑ้ฟใๅใใใ
21.07.2025 20:49 โ ๐ 0 ๐ 1 ๐ฌ 0 ๐ 0
Freelance writer and editor. Formerly of The Atlantic, Boston Review. Copy chief at Columbia Magazine.
๐ BaseFortify.eu
Stay ahead of cybersecurity threats with BaseFortify.eu โ your trusted platform for vulnerability management and CVE reports. Tailored solutions for SMBs and enterprises.
#CyberSecurity #VulnerabilityManagement #Exploit #CVE #CVSS #EPSS
OffSeq is a cutting-edge European cybersecurity company helping organizations build digital resilience through tailored, proactive security solutions. #CyberSecurity https://www.offseq.com/ https://radar.offseq.com/ https://guard.offseq.com/
I sheer alpacas and try to defend the internet from malware
Thought Trailer, Cyber Threat Intel, DFIR. He/Him. Bucketing, sharing, and bacon-saving as a service. https://validhorizon.medium.com/
Nothing but #fintwitter headlines to get you started on blue sky.
Detection engineer, also writing for https://detect.fyi.
Base64 Enjoyer. Clippy is a threat actor.
Proofpoint's insights on targeted attacks and the cybersecurity threat landscape.
Freshest tech news and in-depth coverage of the Apple and Google universe. Get the scoop on new product releases, software update
CMO @ Edera | Comms for Aerospace Village | Prev Security Comms Lead Google | Rule Bender l New Englander
Information Security professional. At least that is what people claim. More of an information security curmudgeon.
ใตใคใใผใปใญใฅใชใใฃใไธญๅฟใจใใๅ้ใซ่ๅณใๆฟๆฒปใ็ตๆธใซใ้ขๅฟใใใพใใ
Technijian | Managed IT Solutions for Modern Businesses
๐น Trusted IT partner in Orange County, CA
๐น Specializing in Managed IT, Cybersecurity, & Cloud Solutions
๐น Driving efficiency and security for small & mid-sized businesses
๐ผ Letโs elevate your tec
WithSecureโข is the strategic partner for businesses that want measurable cyber security outcomes. From Europe. Trusted by the world. Formerly F-Secure Business.
Mรฉdia francais sur les derniรจres actualitรฉs technologiques du monde ๐
Established in 2018, Buhane Information Technologies is committed to delivering innovative and reliable IT solutions. Our team of professionals is dedicated to helping businesses thrive in the digital age by providing top-notch services and support.
We provide managed providers with cost-reducing solutions through a user-friendly, multi-tenant, AI-driven system that enables automated KQL triaging. Connecting to the Microsoft Graph, allowing smooth integration with the Unified Portal and Sentinel.
We are Microsoft's global network of security experts. Follow for security research and threat intelligence. https://aka.ms/threatintelblog