Talos disclosed CVEâ2025â1533 & CVEâ2025â3464 in ASUS AsIO3.sys
, enabling local SYSTEM privileges via buffer overflow and auth bypass. No patch yet. Read more
Hundreds of Model Context Protocol (MCP) servers are exposed to RCE and data leakage due to misconfigurations dubbed âNeighborJack.â Read more
Cisco fixed CVEâ2025â20281/20282 (CVSS 10) in ISE/ISEâPIC allowing unauthenticated rootâlevel RCE via API and fileâupload flaws. Read more
CISA confirmed active exploitation of CVEâ2024â54085 in AMI MegaRAC BMC, enabling remote hijack or bricking of servers. Read more
IRGCâlinked *EducatedâŻManticore* (APT35/42) used AIâgenerated spearâphishing to steal Gmail credentials from Israeli journalists and researchers. Read more
A Kansas City hacker pled guilty to breaching three organizations to market his own security services and avoid gym fees. Read more
ESET reports ClickFix attacks jumped 500% in 2025, becoming the No.âŻ2 vector after phishing and linked to infostealers and ransomware. Read more
Commentary warns that rising geopolitical tension is reshaping cyber warfare, demanding adversaryâinformed defenses and AIâaware resilience strategies. Read more
Rapid SaaS adoption without mature resilience plans leaves data at risk; firms must address the sharedâresponsibility gap. Read more