Tag

Exploitation

All articles tagged with #exploitation

WatchGuard Fireware OS VPN and Firewall Vulnerabilities Under Active Exploitation

Originally Published 23 days ago — by The Hacker News

Featured image for WatchGuard Fireware OS VPN and Firewall Vulnerabilities Under Active Exploitation
Source: The Hacker News

WatchGuard has issued patches for a critical VPN security flaw in Fireware OS (CVE-2025-14733) that is actively being exploited in the wild, affecting multiple versions and configurations. Threat actors are targeting affected devices, with indicators of compromise provided. Users are urged to update their systems immediately and follow mitigation steps to prevent exploitation.

Few Farms Join Program to Prevent Farmworker Exploitation

Originally Published 26 days ago — by ProPublica

Featured image for Few Farms Join Program to Prevent Farmworker Exploitation
Source: ProPublica

The article discusses the persistent exploitation of farmworkers in the U.S. and highlights the potential of the Fair Food Program, which has improved conditions for workers on participating farms like Pacific Tomato Growers. Despite its success, most farms resist joining due to costs and industry opposition, limiting the program's reach and impact on farmworker rights.

CISA Adds OpenPLC ScadaBR XSS Vulnerability to KEV Amid Exploits

Originally Published 1 month ago — by The Hacker News

Featured image for CISA Adds OpenPLC ScadaBR XSS Vulnerability to KEV Amid Exploits
Source: The Hacker News

CISA has added the actively exploited CVE-2021-26829 XSS vulnerability in OpenPLC ScadaBR to its KEV catalog, highlighting ongoing threats from hacktivist groups like TwoNet, which exploited this flaw in a honeypot to deface a system. The attack involved using default credentials and web application layer exploits, with federal agencies required to patch by December 19, 2025. Additionally, a long-running exploit operation targeting Brazil has been observed, utilizing legitimate cloud infrastructure to evade detection.

Microsoft WSUS Vulnerability Under Active Attack, Urgent Updates Issued

Originally Published 2 months ago — by theregister.com

Featured image for Microsoft WSUS Vulnerability Under Active Attack, Urgent Updates Issued
Source: theregister.com

A critical vulnerability in Windows Server Update Services (WSUS), tracked as CVE-2025-59287, is actively exploited by threat actors across multiple organizations, despite Microsoft releasing an emergency patch. The flaw allows unauthenticated remote code execution, and attackers are conducting reconnaissance and data exfiltration, posing a significant risk to affected servers. Experts warn that the vulnerability's ease of exploitation and the patch's incomplete fix increase the threat landscape, urging organizations to apply updates promptly.

Active Exploitation of Critical Windows Server WSUS Vulnerability Prompts Urgent Patch

Originally Published 2 months ago — by theregister.com

Featured image for Active Exploitation of Critical Windows Server WSUS Vulnerability Prompts Urgent Patch
Source: theregister.com

A critical vulnerability in Microsoft Windows Server Update Services (WSUS), tracked as CVE-2025-59287, has been exploited by attackers shortly after an emergency patch was issued. The flaw allows remote code execution and affects Windows Server versions 2012-2025. Despite Microsoft releasing a fix, security researchers warn that the patch may not fully mitigate the risk, and exploitation activity has been observed, especially targeting exposed WSUS instances. Experts advise organizations to ensure their systems are properly patched and not exposed to the internet to prevent compromise.

Microsoft Warns of Ransomware Attacks Exploiting Critical GoAnywhere Bug

Originally Published 3 months ago — by BleepingComputer

Featured image for Microsoft Warns of Ransomware Attacks Exploiting Critical GoAnywhere Bug
Source: BleepingComputer

A critical vulnerability in Fortra's GoAnywhere MFT (CVE-2025-10035) has been exploited by the cybercrime group Storm-1175 in Medusa ransomware attacks since September 2025, leading to widespread compromises and urging organizations to update their systems to prevent further damage.

Active Exploitation of Cisco IOS Zero-Day Vulnerability Affects Up to 2 Million Devices

Originally Published 3 months ago — by Cyber Security News

Featured image for Active Exploitation of Cisco IOS Zero-Day Vulnerability Affects Up to 2 Million Devices
Source: Cyber Security News

Cisco has disclosed a actively exploited zero-day vulnerability (CVE-2025-20352) in its IOS and IOS XE software, affecting SNMP protocols and allowing remote code execution or DoS attacks. The flaw, rooted in a stack overflow, impacts all versions with SNMP enabled and has been exploited in the wild after attackers compromised administrator credentials. Cisco recommends immediate software updates and offers mitigation strategies, emphasizing the importance of strong credential management and restricted SNMP access.

Meta Faces Backlash Over Use of Schoolgirl Photos in Ads

Originally Published 3 months ago — by The Guardian

Featured image for Meta Faces Backlash Over Use of Schoolgirl Photos in Ads
Source: The Guardian

Meta used publicly posted photos of schoolgirls in their teens to promote its platform Threads, targeting adult users, which has sparked outrage among parents and privacy advocates due to concerns over exploitation and inappropriate targeting. Meta claims the images did not violate policies and were used as part of recommendation tools, but critics argue this practice is highly inappropriate and risky for children's safety.

Dubai 'Porta Potty Parties' Uncover Sex Trafficking and Exploitation Scandal

Originally Published 3 months ago — by The Tab

Featured image for Dubai 'Porta Potty Parties' Uncover Sex Trafficking and Exploitation Scandal
Source: The Tab

A young woman revealed her traumatic experience of being forced to attend 'porta-potty' parties in Dubai, where she was pressured into performing humiliating and disturbing acts involving bodily fluids, with allegations of exploitation, poor living conditions, and police indifference. The case has garnered attention amid broader concerns about abuse and trafficking in the region, though many details remain unverified.

Willem Dafoe Stars in Eerie Psychological Thriller 'The Man in My Basement'

Originally Published 4 months ago — by The Guardian

Featured image for Willem Dafoe Stars in Eerie Psychological Thriller 'The Man in My Basement'
Source: The Guardian

The Man in My Basement is an eerie psychodrama featuring Willem Dafoe as a sinister guest, exploring themes of racism, capitalism, and exploitation through a labyrinthine narrative set in 1990s Sag Harbor, where a black man rents his basement to a mysterious white businessman, leading to a nightmarish psychological confrontation.

Controversies Surrounding Epstein’s Birthday Book and Trump’s Involvement

Originally Published 4 months ago — by The New York Times

Featured image for Controversies Surrounding Epstein’s Birthday Book and Trump’s Involvement
Source: The New York Times

The House Oversight Committee released a 238-page book containing tributes to Jeffrey Epstein on his 50th birthday, revealing disturbing details and comments about his sexual exploits and attitude towards women, highlighting his predatory behavior.

CISA Alerts on Exploited WhatsApp and TP-Link Vulnerabilities in Active Attacks

Originally Published 4 months ago — by The Hacker News

Featured image for CISA Alerts on Exploited WhatsApp and TP-Link Vulnerabilities in Active Attacks
Source: The Hacker News

CISA has added a high-severity flaw in TP-Link Wi-Fi extenders and a WhatsApp vulnerability to its KEV catalog due to active exploitation, with the TP-Link issue being fixed but the product now EoL, and the WhatsApp flaw linked to targeted spyware campaigns. FCEB agencies are advised to apply mitigations by September 23, 2025.

CISA Alerts on Active Exploits in Citrix and Git Vulnerabilities

Originally Published 4 months ago — by The Hacker News

Featured image for CISA Alerts on Active Exploits in Citrix and Git Vulnerabilities
Source: The Hacker News

CISA has added three actively exploited vulnerabilities affecting Citrix Session Recording and Git to its KEV catalog, with patches already available for two of the Citrix flaws and a proof-of-concept exploit released for the Git vulnerability. Federal agencies are required to implement mitigations by September 15, 2025.