CIS

ClickFix: An Adaptive Social Engineering Technique

Between January and October 2025, two major ClickFix campaigns were tracked, including an Interlock ransomware incident in August targeting a U.S. SLTT entity. It has been used to deliver malware such as Lumma Stealer, NetSupport RAT, and SocGholish.

Strings in the maze: Finding hidden strengths and gaps in your team

The cybersecurity landscape has seen a significant shift in threat actor behavior, with a marked increase in the exploitation of public-facing applications, evolving ransomware tactics, and targeted cyber-espionage campaigns.

Known Exploited Vulnerabilities Catalog

A critical bug, CVE-2025-61932, has been identified in Motex LANSCOPE Endpoint Manager. It allows remote attackers to execute arbitrary code by sending specially crafted packets due to improper verification of the source of communication channels.

Oxford Nanopore Technologies MinKNOW

Multiple vulnerabilities have been identified in Oxford Nanopore Technologies' MinKNOW software, a DNA and RNA sequencing platform. These flaws could allow attackers to gain unauthorized access, exfiltrate data, and disrupt sequencing operations.

Known Exploited Vulnerabilities Catalog

A critical vulnerability affects Adobe Experience Manager Forms JEE. This flaw allows attackers to execute arbitrary code on affected systems. The vulnerability has been added to CISA’s KEV catalog, indicating confirmed exploitation in the wild.

Known Exploited Vulnerabilities Catalog

A high-severity vulnerability, CVE-2025-6264, was spotted in Rapid7's Velociraptor tool. This flaw stems from incorrect default permissions that allow users with specific roles to execute arbitrary commands and potentially take over endpoints.

CISA Releases One Industrial Control Systems Advisory

CISA has released a new Industrial Control Systems (ICS) advisory, ICSA-25-287-01, addressing a vulnerability in Rockwell Automation's 1715 EtherNet/IP Comms Module. This is part of a regular release of Industrial Control Systems (ICS) advisories.

Privilege Escalation Vulnerability in Microsoft Windows Agere Modem Driver (CVE-2025-24990)

A critical vulnerability identified as CVE-2025-24990 affects the Agere Modem Driver in Microsoft Windows. This untrusted pointer dereference flaw enables local attackers to escalate privileges and gain administrator access.

Known Exploited Vulnerabilities Catalog

A critical RCE bug affects multiple Mozilla products including Firefox, Thunderbird, and SeaMonkey. This flaw, which occurs when JavaScript is enabled, allows remote attackers to execute arbitrary code by exploiting memory corruption.

Known Exploited Vulnerabilities Catalog

A critical heap out-of-bounds write vulnerability, tracked as CVE-2021-22555, has been identified in the Linux Kernel. This flaw allows attackers to escalate privileges or cause a DoS condition via heap memory corruption through user namespaces.

Defend Against Threats with Cyber Fusion

Cyware is the leading provider of cyber fusion solutions that power threat intelligence sharing , end-to-end automation and 360-degree threat response.

Trending Tags