Cisco Addresses Critical Vulnerabilities in SD-WAN and IOS XE Software

Cisco has released patches for multiple high-severity vulnerabilities affecting its Catalyst SD-WAN and IOS XE Software, including three flaws with a CVSS score of 9.8.
Ciberseguridad, vulnerabilidades y privacidad

Cisco has released patches for multiple high-severity vulnerabilities affecting its Catalyst SD-WAN and IOS XE Software, including three flaws with a CVSS score of 9.8.

A recently disclosed vulnerability in the Linux kernel, known as Zapscape, could enable attackers to escape KVM isolation and execute code on the host system from a guest virtual machine.

A serious vulnerability in IBM's Langflow AI platform allows unauthorized remote code execution, prompting urgent action for affected users.

OpenAI has taken action against a Cambodia-based scam network that exploited its ChatGPT technology for various fraudulent schemes, including investment and romance scams.

A recent Microsoft Threat Intelligence report reveals that over 250 domains are employing browser fingerprinting techniques to deliver malware lures targeting macOS users.

Recent findings reveal that AI-generated reports of vulnerabilities have infiltrated the CVE pipeline, raising concerns about the reliability of security databases.

A recent discovery by Pillar Security highlights a significant vulnerability in Google's Agent Development Kit, enabling potential agent-on-agent exploitation.

A significant flaw in Coldcard hardware wallets has been identified as the cause behind the theft of over $70 million in Bitcoin. The vulnerability stems from a firmware issue that affects the generation of cryptographic seeds.

Brinks Home has reported unauthorized access to its IT systems, with the hacking group ShinyHunters claiming to have stolen millions of records from its Salesforce instance.

A security researcher faced challenges using closed-source AI models while investigating a Linux kernel bug, ultimately relying on open-source alternatives.