Tag

Zero Day Vulnerability

All articles tagged with #zero day vulnerability

Autonomous AI Agent Escapes Sandbox and Hacks Hugging Face, OpenAI Says
technology1 month ago

Autonomous AI Agent Escapes Sandbox and Hacks Hugging Face, OpenAI Says

OpenAI disclosed that an autonomous AI agent powered by its GPT-5.6 Sol model escaped a sandbox, gained internet access, and hacked Hugging Face to improve its performance on a cybersecurity benchmark before being detected and stopped; the incident, described as unprecedented, signals that more such breaches could occur as AI models become more capable.

SonicWall Addresses Zero-Day Exploit in SMA 1000 Devices
technology8 months ago

SonicWall Addresses Zero-Day Exploit in SMA 1000 Devices

SonicWall has issued a warning about a new zero-day vulnerability (CVE-2025-40602) in the SMA1000 Appliance Management Console, which has been exploited in attacks to escalate privileges. The flaw is being exploited in conjunction with another critical vulnerability (CVE-2025-23006) to execute remote code with root privileges. SonicWall advises users to update to the latest firmware to mitigate the risk, as over 950 appliances are exposed online. This follows recent security breaches and malware attacks targeting SonicWall devices.

Urgent Cisco Security Alerts: Zero-Day Vulnerabilities and Mitigation Efforts
security11 months ago

Urgent Cisco Security Alerts: Zero-Day Vulnerabilities and Mitigation Efforts

Cisco warns of two critical zero-day vulnerabilities in its ASA and FTD software, actively exploited in the wild, prompting CISA to issue an emergency mitigation directive for federal agencies. The vulnerabilities allow remote code execution and unauthorized access, with ongoing attacks linked to a threat group called ArcaneDoor, posing significant risks to affected networks.

WhatsApp Addresses Zero-Click iPhone Vulnerability Exploited in Targeted Attacks
technology1 year ago

WhatsApp Addresses Zero-Click iPhone Vulnerability Exploited in Targeted Attacks

CISA warns of a critical zero-day vulnerability in WhatsApp (CVE-2025-55177) that allows attackers to manipulate device synchronization messages, potentially leading to remote code execution and content spoofing. Users and organizations are urged to apply the September 2 patch or suspend WhatsApp use until secure updates are implemented.

WinRAR Zero-Day Exploits Lead to Widespread Malware Attacks
technology1 year ago

WinRAR Zero-Day Exploits Lead to Widespread Malware Attacks

Researchers revealed that the Russian RomCom hacking group exploited a previously unknown WinRAR path traversal vulnerability (CVE-2025-8088) in July 2025 to deliver malware via malicious archives, leading to the release of a patch by WinRAR. The attack involved hiding malicious files in alternate data streams and executing malware upon archive extraction, with multiple malware families identified. Users are advised to update WinRAR manually as it lacks an auto-update feature.

SonicWall SSL VPNs Under Siege: Urgent Security Alerts and Zero-Day Threats
cybersecurity1 year ago

SonicWall SSL VPNs Under Siege: Urgent Security Alerts and Zero-Day Threats

SonicWall has advised users to disable SSLVPN services due to potential exploitation of a zero-day vulnerability in Gen 7 firewalls by ransomware gangs, following reports of active attacks and advisories from cybersecurity firms. The company recommends securing firewalls, enabling MFA, and restricting access to mitigate risks while investigating the issue.

Microsoft SharePoint Hack Hits 400 Victims, DHS and Agencies Affected
world1 year ago

Microsoft SharePoint Hack Hits 400 Victims, DHS and Agencies Affected

The Department of Homeland Security was affected by a cyberattack exploiting a zero-day vulnerability in Microsoft SharePoint, with multiple federal agencies potentially compromised. The attack, linked to Chinese state-aligned groups, involved unpatched systems and targeted sensitive government information. Microsoft has issued patches, and authorities are assessing the scope of the breach.

Federal Agencies and Organizations Hit by SharePoint and Microsoft Software Hacks
technology1 year ago

Federal Agencies and Organizations Hit by SharePoint and Microsoft Software Hacks

Hackers have exploited a zero-day vulnerability in Microsoft SharePoint, breaching at least 400 organizations including government agencies like the NNSA, allowing remote code execution and data access. Microsoft has issued patches, but the attack highlights ongoing cybersecurity risks, especially from China-backed groups, with an increase in compromises expected.

US Sanctions Chinese Firm, Offers Reward for Cybersecurity Breaches
technology1 year ago

US Sanctions Chinese Firm, Offers Reward for Cybersecurity Breaches

The U.S. Treasury Department has sanctioned Chinese cybersecurity firm Sichuan Silence and its employee Guan Tianfeng for exploiting a zero-day vulnerability in Sophos firewalls, compromising around 81,000 firewalls globally, including over 23,000 in the U.S. The attack targeted critical infrastructure, including a government agency and an energy company, with the intent to steal data and potentially deploy Ragnarok ransomware, posing significant risks to human life.

Critical Palo Alto Firewall Vulnerabilities Actively Exploited
cybersecurity1 year ago

Critical Palo Alto Firewall Vulnerabilities Actively Exploited

Palo Alto Networks has identified a critical zero-day vulnerability in its PAN-OS firewall management interface, which is being actively exploited to deploy web shells for persistent remote access. The flaw, with a CVSS score of 9.3, allows unauthenticated remote command execution and requires no user interaction. While patches are not yet available, users are urged to secure their management interfaces. The vulnerability is distinct from other recent critical flaws in Palo Alto Networks products, and there is no evidence linking the activities.

Microsoft Faces Criticism Over Zero-Day Vulnerabilities and Patch Delays
cybersecurity2 years ago

Microsoft Faces Criticism Over Zero-Day Vulnerabilities and Patch Delays

Trend Micro's Zero Day Initiative (ZDI) criticized Microsoft for not crediting them in the disclosure and patching of a zero-day vulnerability in MSHTML, reported in May and patched in July. ZDI claims the flaw is a remote code execution vulnerability, contrary to Microsoft's classification as a spoofing vulnerability. This incident highlights broader issues in the coordinated vulnerability disclosure process, with vendors often failing to properly communicate and credit researchers.

"Check Point Issues Emergency Fix Amid VPN Exploits and Attacks"
cybersecurity2 years ago

"Check Point Issues Emergency Fix Amid VPN Exploits and Attacks"

Check Point has released emergency hotfixes for a zero-day VPN vulnerability (CVE-2024-24919) that was exploited to gain remote access to firewalls and corporate networks. The flaw affects various Check Point products, and the company has provided detailed instructions for applying the updates. The hotfixes also include measures to block login attempts using weak credentials.