Vulnerability

ChatGPT Crawler Vulnerability Abused to Trigger Reflexive DDoS AttacksChatGPT Crawler Vulnerability Abused to Trigger Reflexive DDoS Attacks

ChatGPT Crawler Vulnerability Abused to Trigger Reflexive DDoS Attacks

Security researchers have uncovered a severe vulnerability in OpenAI's ChatGPT API, allowing attackers to exploit its architecture for launching Reflective…

4 months ago
Massive NBI Data Breach Exposes Millions of Users Records OnlineMassive NBI Data Breach Exposes Millions of Users Records Online

Massive NBI Data Breach Exposes Millions of Users Records Online

The National Bureau of Investigation (NBI), the Philippines' top investigative agency, has reportedly been compromised, exposing the sensitive data of…

4 months ago
PoC Exploit Released for QNAP RCE VulnerabilityPoC Exploit Released for QNAP RCE Vulnerability

PoC Exploit Released for QNAP RCE Vulnerability

A critical remote code execution (RCE) vulnerability, tracked as CVE-2024-53691, has recently come to light, affecting users of QNAP's QTS…

4 months ago
Multiple HPE Aruba Network Vulnerabilities Allows Remote Arbitrary Code ExecutionMultiple HPE Aruba Network Vulnerabilities Allows Remote Arbitrary Code Execution

Multiple HPE Aruba Network Vulnerabilities Allows Remote Arbitrary Code Execution

 Hewlett Packard Enterprise (HPE) has confirmed multiple vulnerabilities in its Aruba Networking products that could allow remote arbitrary code execution.…

4 months ago
AWS Warns of Multiple Vulnerabilities in Amazon WorkSpaces, Amazon AppStream 2.0, & Amazon DCVAWS Warns of Multiple Vulnerabilities in Amazon WorkSpaces, Amazon AppStream 2.0, & Amazon DCV

AWS Warns of Multiple Vulnerabilities in Amazon WorkSpaces, Amazon AppStream 2.0, & Amazon DCV

Amazon Web Services (AWS) has issued a critical security advisory highlighting vulnerabilities in specific versions of its native clients for…

4 months ago
PoC Exploit Released for Ivanti Connect Secure RCE VulnerabilityPoC Exploit Released for Ivanti Connect Secure RCE Vulnerability

PoC Exploit Released for Ivanti Connect Secure RCE Vulnerability

A serious security flaw has been identified in Ivanti Connect Secure, designated as CVE-2025-0282, which enables remote unauthenticated attackers to execute…

4 months ago
CISA Warns of Aviatrix Controllers OS Command Injection Vulnerability Exploited in WildCISA Warns of Aviatrix Controllers OS Command Injection Vulnerability Exploited in Wild

CISA Warns of Aviatrix Controllers OS Command Injection Vulnerability Exploited in Wild

The Cybersecurity and Infrastructure Security Agency (CISA) has issued a critical alert regarding a significant OS command injection vulnerability in…

4 months ago
W3 Total Cache Plugin Vulnerability Let Attackers Gain Unauthorized Access to Sensitive DataW3 Total Cache Plugin Vulnerability Let Attackers Gain Unauthorized Access to Sensitive Data

W3 Total Cache Plugin Vulnerability Let Attackers Gain Unauthorized Access to Sensitive Data

A significant security vulnerability has been identified in the W3 Total Cache plugin for WordPress, affecting all versions up to…

4 months ago
Veeam Azure Backup Vulnerability Allows Attackers to Utilize SSRF & Send Unauthorized RequestsVeeam Azure Backup Vulnerability Allows Attackers to Utilize SSRF & Send Unauthorized Requests

Veeam Azure Backup Vulnerability Allows Attackers to Utilize SSRF & Send Unauthorized Requests

A critical vulnerability has been identified in Veeam Backup for Microsoft Azure, specifically referenced as CVE-2025-23082. Discovered during internal testing,…

4 months ago
Microsoft Patches Outlook Zero-Click RCE Vulnerability Exploited Via EmailMicrosoft Patches Outlook Zero-Click RCE Vulnerability Exploited Via Email

Microsoft Patches Outlook Zero-Click RCE Vulnerability Exploited Via Email

Microsoft issued a critical security patch addressing a newly discovered vulnerability in Outlook, designated as CVE-2025-21298. This flaw, characterized as…

4 months ago