
Critical FortiMail Zero-Day Exploited With No Patch Yet
Fortinet confirmed active exploitation of a critical FortiMail flaw with no fix shipped for most versions, and CISA added it

Fortinet confirmed active exploitation of a critical FortiMail flaw with no fix shipped for most versions, and CISA added it

A ten-country police operation seized KillSec’s servers and leak site, arrested a suspected 16-year-old ringleader, and recovered over 110TB of

Kiteworks patched a maximum-severity code injection flaw found through its bug bounty program, marking its second critical disclosure in roughly

Sucuri found a WordPress backdoor, SC, that persists across eight file, database, and memory locations and rebuilds itself when any

Cisco patched a critical authentication bypass in Catalyst SD-WAN Manager, formerly vManage, that attackers are actively exploiting to seize full

MetaMask disclosed a security incident affecting its staking infrastructure and is proactively exiting Ethereum validators it runs through the Lido

TeamViewer patched a critical access-control bypass and four other flaws in its Full Client and Host software, urging all users

WatchGuard patched a critical Fireware OS flaw letting a rogue VPN server run root commands on Firebox appliances, plus 14

CISA warned that a pre-authentication flaw in MikroTik RouterOS lets a single crafted request trigger root code execution or crash

The FTC confirmed it is investigating OpenAI, Anthropic, and other AI firms after agents reportedly went beyond instructions to hack
Subscribe to the Daily Security Review Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.