Tag

Vulnerability

All articles tagged with #vulnerability

Broadcom Slumps as VMware Flaw Exploitation Spreads Globally
markets10 days ago

Broadcom Slumps as VMware Flaw Exploitation Spreads Globally

Broadcom shares slipped about 6% after reports that attackers are exploiting a recently patched VMware vCenter Syslog Server vulnerability; the flaw, deemed critical and patched July 29, could let remote attackers run unauthorized code. A Digital forensics firm linked 361 affected IP addresses across 47 countries, with Germany, the United States, Turkey, Iran and France accounting for over half. Affected systems reportedly began contacting attacker infrastructure on Aug. 3, and researchers say the exploitation includes a reverse SSH tool for persistent remote access.

Microsoft fixes LegacyHive Windows zero-day after Nightmare Eclipse PoC disclosure
security11 days ago

Microsoft fixes LegacyHive Windows zero-day after Nightmare Eclipse PoC disclosure

Microsoft issued August Patch Tuesday updates to fix CVE-2026-62832, a Windows User Profile Service zero-day nicknamed LegacyHive that could let an authenticated local attacker load another user's registry hive and gain administrator privileges. The Nightmare Eclipse PoC reportedly required credentials, limiting weaponization, and defenders published Defender detection queries while 0Patch released unofficial patches; several related zero-days remain unpatched.

AI-assisted Zoom screen-sharing bug allows remote device takeover, patched
technology13 days ago

AI-assisted Zoom screen-sharing bug allows remote device takeover, patched

Cybersecurity researchers found a flaw in Zoom's Workspace screen-sharing that could let attackers remotely execute code and take control of a victim's device without any action from the user; the issue affects Windows, macOS, iOS, Android, and Linux and was AI-assisted to develop the exploit in under a day. Zoom has issued fixes across affected versions, and users should update to the latest build to mitigate the risk. The story also notes a separate macOS Screen Sharing vulnerability prompting additional updates.

Flaws in Zoom Annotation Could Let Attendees Take Over Others’ Clients
technology13 days ago

Flaws in Zoom Annotation Could Let Attendees Take Over Others’ Clients

Security researchers disclosed three Zoom annotation flaws that could let a meeting participant hijack another attendee’s or the presenter’s Zoom client via crafted screen drawings. Patches were released in June–July before the disclosure, and there are no known exploits in the wild. The vulnerabilities span a buffer over-write, a buffer over-read, and a use-after-free (CVE-2026-53413, -53414, -53415) with disputed CVSS scores between researchers and Zoom, and conflicting claims about whether user interaction is required. Zoom lists its own CVEs with different scoring and credits, while the research firm claims a rapid exploit path using public AI models.

AI-Enabled Bug Lets Zoom Callers Hijack Devices, Now Patched
technology14 days ago

AI-Enabled Bug Lets Zoom Callers Hijack Devices, Now Patched

Researchers used publicly available AI tools to uncover a vulnerability in Zoom's real-time screen-sharing annotation protocol that could allow any caller on a Zoom call to silently hijack another participant's device. Zoom deployed server and client fixes across all supported platforms (Windows, macOS, Linux, iOS, Android). The finding highlights how AI-assisted bug hunting can dramatically lower the barrier to discovering dangerous exploits.

AI-assisted Zoom flaw lets attackers hijack devices on calls, now patched
ai14 days ago

AI-assisted Zoom flaw lets attackers hijack devices on calls, now patched

Zoom patched a severe security flaw tied to its screen-annotation feature after researchers showed that an exploit could be crafted with fewer than 20 public AI prompts. The flaw allowed an attacker to join or host a meeting and run malicious code on victims’ devices, potentially stealing data, or turning on cameras and microphones, with no user action or visual cue required; the vulnerability affected Windows, macOS, Linux, Android, and iOS.

Apple patches critical Screen Sharing flaw across macOS Tahoe, Sequoia, and Sonoma
technology17 days ago

Apple patches critical Screen Sharing flaw across macOS Tahoe, Sequoia, and Sonoma

Apple released security updates for macOS Tahoe (26.6.1), Sequoia (15.7.9), and Sonoma (14.8.9) to fix a serious Screen Sharing authentication flaw (CVE-2026-65400) that could let a network attacker authenticate without valid credentials; Apple notes improved state management and urges all users to install the patches, though there are no known exploits to date.

7-Zip patches XZ-based remote code execution flaw
technology1 month ago

7-Zip patches XZ-based remote code execution flaw

7-Zip released version 26.02 to fix a remote code execution vulnerability in XZ data processing that could be exploited via specially crafted archives, with a heap-based buffer overflow fixed by added boundary checks. Exploitation requires user interaction, and there’s no automatic update, so users must manually install the patch from 7-zip.org. No active exploits are reported yet, but phishing or social engineering could deliver malicious archives, as archive vulnerabilities have been exploited in the past.

Patch Released for NGINX Two-Pass Overflow That Could Enable Remote Code Execution
technology1 month ago

Patch Released for NGINX Two-Pass Overflow That Could Enable Remote Code Execution

F5 issued fixes for a critical NGINX flaw (CVE-2026-42533) that lets a remote, unauthenticated attacker trigger a heap buffer overflow in the script engine via a specific two-pass evaluation of regex-based maps, potentially causing a crash or remote code execution if ASLR is disabled. All versions up to 1.31.2 are affected; upgrade to nginx 1.30.4 (stable), 1.31.3 (mainline), or NGINX Plus 37.0.3.1. As a temporary mitigation, switch affected regex maps to named captures, though full remediation requires upgrading; exposure depends on configuration, not just version.

Android lockscreen flaw lets apps bypass PIN to send messages
technology1 month ago

Android lockscreen flaw lets apps bypass PIN to send messages

Researchers describe an Android lockscreen authentication bypass in Gemini that can allow sending SMS and re-enabling apps like WhatsApp from the lockscreen by exploiting a PIN prompt bypass (Add attachment + Continue). Google is aware and a fix is in progress; the vulnerability may affect more than Pixel devices, underscoring edge-case bypass risks on Android (with similar concerns noted for iOS).

Backdoor Flaw Threatens Several Tenda Routers, CERT Warns
technology1 month ago

Backdoor Flaw Threatens Several Tenda Routers, CERT Warns

Researchers from CERT at Carnegie Mellon University have identified a login bypass embedded in several older Tenda router firmwares that can grant an attacker administrator access simply by using a specific password, regardless of the username. This could enable traffic redirection, opening network ports to devices, ransomware installation, man‑in‑the‑middle attacks, or locking users out of their own router. Affected models include FH1201, W15E, AC10 v1, AC5 v1, and AC6 v2, and there is no confirmed patch yet. Mitigations include disabling remote web management, verifying firmware versions via the router interface (usually at 192.168.0.1), and changing the LAN IP to another private address or considering a replacement if needed.

Zoom rolls out urgent Windows patches to block account takeover and privilege escalations
technology1 month ago

Zoom rolls out urgent Windows patches to block account takeover and privilege escalations

Zoom released security updates for Windows to fix a critical flaw (CVE-2026-53412, CVSS 9.8) in Zoom Workplace for Windows and related VDI components that could allow an unauthenticated attacker to take over accounts via network. The patch also addresses three high-severity issues (CVE-2026-53411, CVE-2026-53410, CVE-2026-53409) that could enable privilege escalation for authenticated users or via local access across Zoom Workplace, VDI, VDI plugin, and Zoom Rooms for Windows. Affected version details are provided for each product, and Zoom notes no active exploitation so far. The update also removes Meeting SDK for Windows from the affected scope. Users should install the latest versions to stay protected.

Zoom warns of critical Windows flaw that could let attackers take over accounts
technology1 month ago

Zoom warns of critical Windows flaw that could let attackers take over accounts

Zoom is warning about a critical, unauthenticated vulnerability in its Windows desktop client, Windows VDI client, and Meeting SDK (CVE-2026-53412, severity 9.8/10) that could enable account takeover over the network. Affected products include Zoom Workplace for Windows before 7.0.0, VDI Client before 7.0.10/6.6.15/6.5.18, and Meeting SDK before 7.0.0. Users should install the latest updates, which also fix several other high-severity flaws, though there are currently no known active exploitations.

security1 month ago

CISA Warns of Active SharePoint Exploits, Urges Immediate Hardening

CISA warns of active exploitation of three on-premises SharePoint vulnerabilities (CVE-2026-32201, CVE-2026-45659, CVE-2026-56164) that enable remote code execution and post-exploitation activity such as stealing IIS machine keys; two additional CVEs (CVE-2026-55040 and CVE-2026-58644) are also identified as potential risks if not patched. To mitigate, organizations should apply the latest Microsoft patches, verify installation completion, and shorten patching cycles where possible; ensure AMSI integration is enabled for all SharePoint web apps and follow Microsoft guidance for AMSI configuration. Use the provided AMSI and MDAV detections as part of incident response and hardening: hunt for intrusion artifacts before rotating IIS keys, implement enhanced logging and telemetry to detect anomalies, and limit internet exposure by placing SharePoint behind a Layer 7 proxy and restricting Central Administration access. Review Microsoft’s security guidance and report incidents to CISA as needed. These CVEs have been added to the Known Exploited Vulnerabilities (KEV) catalog.

Ubiquiti patches seven UniFi OS flaws, including a critical UniFi Connect command-injection risk
security1 month ago

Ubiquiti patches seven UniFi OS flaws, including a critical UniFi Connect command-injection risk

Ubiquiti released security updates to fix seven critical UniFi OS vulnerabilities, including CVE-2026-50746 in the UniFi Connect App that could allow command injection; users should upgrade the UniFi Connect app to version 3.4.20+ and apply patches across UniFi Talk, UniFi Access, UniFi Protect, and the UniFi OS Server. The company notes several flaws can be exploited in low-complexity attacks with no user interaction. Threats note that more than 100,000 UniFi OS instances are exposed online (per Censys), though it isn’t clear how many are patched, honeypots, or otherwise secured. The report also references past CISA/FBI warnings and demonstrations of exploitation techniques in related Ubiquiti products.