CISA KEV Catalog Update Part I – March 2025

CISA KEV Catalog Update Part I – March 2025

On March 3, 2025, the Cybersecurity and Infrastructure Security Agency (CISA) updated its Known Exploited Vulnerabilities (KEV) catalog by adding several new vulnerabilities, including those affecting Hitachi Vantara and other…
CVE-2025-21293 PoC Exploit Code Released

CVE-2025-21293 PoC Exploit Code Released

Vulnerability Overview CVE-2025-21293 is an elevation of privilege vulnerability in Active Directory Domain Services. The vulnerability arises from excessive permissions granted to the Network Configuration Operators group, which can be…
CVE-2025-21298 Exploit Code Released

CVE-2025-21298 Exploit Code Released

CVE-2025-21298 is a critical use-after-free vulnerability in Microsoft Outlook. This vulnerability can be exploited to achieve remote code execution by leveraging the OLE feature, which allows embedding and linking to…
Microsoft Patch Tuesday- January 2025

Microsoft Patch Tuesday- January 2025

Microsoft released the January 2025 Patch Tuesday updates on January 14, 2025, focusing on addressing critical security vulnerabilities across various Microsoft products. This update cycle includes security patches, improvements, and…