Tag: security

Microsoft issues emergency Windows server security patch – update now or risk attack

Microsoft issues emergency patch for a critical WSUS flaw enabling remote code execution CVE-2025-59287 allows unauthenticated attackers to gain SYSTEM privileges without user interaction An out-of-band update was released after public exploit code surfaced online Microsoft has issued an emergency Windows server security patch to fix a critical severity flaw…

Read More

CISA warns Motex Landscope Endpoint Manager has a worrying security flaw, so patch now

CISA adds critical Motex Lanscope flaw to its Known Exploited Vulnerabilities catalog The CVE-2025-61932 bug enables remote code execution and was exploited as a zero-day Agencies must patch within three weeks; private firms are strongly urged to follow suit The US Cybersecurity and Infrastructure Security Agency (CISA) has added a…

Read More

Hidden debug code returns from the dead as TP-Link routers face a wave of new critical root access flaws

CVE-2025-7851 stems from residual debug code left in patched firmware CVE-2025-7850 enables command injection through the WireGuard VPN interface Exploiting one vulnerability made the other easier to trigger successfully Two newly disclosed flaws in TP-Link’s Omada and Festa VPN routers have exposed deep-seated weaknesses in the company’s firmware security. The…

Read More

Scammers are targeting cloud systems to make off with hauls of gift cards

Atlas Lion used phishing to infiltrate gift card systems and impersonate authorized employees Attackers mapped infrastructure, avoided malware, and exploited internal workflows to steal gift cards Gift cards are fast, untraceable, and easily resold; access lasted nearly a year A Moroccan hacking collective has been targeting companies issuing gift cards…

Read More

Every Formula 1 driver on the grid just had their passport and license details leaked – but it could have been so much worse

Security researchers recently discovered a serious bug in the FIA website The flaw gave them access to personally identifiable information of drivers So far, there’s no suggestion criminals have accessed the data Millions of dollars is spent on cybersecurity in Formula 1, but that hasn’t protected the sprots’ drivers from…

Read More

One in five security breaches now thought to be caused by AI-written code

Vibe coding is widespread, but so are vulnerabilities in AI-generated code No one really knows who’s ultimately responsible for AI code AI and humans both have roles in development New research has claimed more than two-thirds (69%) of organizations have found vulnerabilities in AI-generated code, even though 24% of production…

Read More