CISA Adds ThreeVulnerabilities to KEV Catalog

CISA Adds ThreeVulnerabilities to KEV Catalog

The Cybersecurity and Infrastructure Security Agency (CISA) has updated its Known Exploited Vulnerabilities (KEV) Catalog with new additions, highlighting active exploitation of critical vulnerabilities in Commvault Web Server, Broadcom Brocade…
CVE-2025-32818 impacts SonicOS SSLVPN

CVE-2025-32818 impacts SonicOS SSLVPN

CVE-2025-32818 is a critical vulnerability affecting the SonicOS SSLVPN Virtual Office interface. This flaw allows remote, unauthenticated attackers to exploit a Null Pointer Dereference, causing the firewall to crash and…
Yale New Haven Health Data Breach

Yale New Haven Health Data Breach

The Yale New Haven Health System (YNHHS), one of the leading healthcare networks in the United States, experienced a significant data breach impacting over 5.5 million individuals. The breach, which…
ELENOR-corp Ransomware Dissection

ELENOR-corp Ransomware Dissection

The ELENOR-corp ransomware, identified as an advanced iteration of the Mimic ransomware family (version 7.5), represents one of the most disruptive and aggressive ransomware campaigns to date. It primarily targets…
Operation SyncHole from Lazarus

Operation SyncHole from Lazarus

Operation SyncHole is a cyber espionage campaign orchestrated by the Lazarus Group, a North Korean Advanced Persistent Threat (APT) actor. This operation targets South Korean supply chains across industries such…
CVE-2025-34028 impacts Commvault Command Center

CVE-2025-34028 impacts Commvault Command Center

CVE-2025-34028 is a critical path traversal vulnerability affecting the Commvault Command Center Innovation Release. This flaw allows unauthenticated remote attackers to upload malicious ZIP files, which, when extracted by the…
CVE-2025-1021 impacts Synology DiskStation Manager

CVE-2025-1021 impacts Synology DiskStation Manager

CVE-2025-1021 is a critical vulnerability affecting Synology DiskStation Manager (DSM), specifically its Network File System (NFS) service. This flaw allows unauthenticated remote attackers to read arbitrary files on vulnerable devices,…