Check Point Patches Critical VPN Vulnerabilities

Critical VPN Vulnerabilities Exposed in Check Point Products Check Point, a leading cybersecurity firm, has just released patches for two critical-severity vulnerabilities in its gateway and firewall products that use virtual private network (VPN) functionality. The flaws, tracked as CVE-2026-85102 and CVE-2026-85103, could be exploited without authentication to execute malicious code on affected systems. According … Read more

Conti ransomware gang member sentenced to 4 years in prison

A Conti Ransomware Gang Member’s Fall from Cybercrime to Prison Cell A significant blow has been dealt to the remnants of the notorious Conti ransomware gang with the sentencing of one of its members, Oleksii Lytvynenko, to four years in prison. This development serves as a stark reminder that cybercrime groups can and will be … Read more

Microsoft fixes Teams, Outlook launch failures on ARM Windows PCs

A critical bug in Microsoft’s Teams and Outlook applications has been fixed, resolving a frustrating issue affecting users of ARM-based Windows PCs. The problem, which prevented these applications from launching after installing recent security updates, has been plaguing users who rely on their devices for work and communication. The bug specifically targeted users running Windows … Read more

GitLab urges users to patch max severity path traversal flaw

GitLab’s Latest Security Alert Highlights Need for Urgent Patching GitLab, a popular DevSecOps platform used by over 50% of Fortune 100 companies, has issued an urgent warning to its users to patch their servers immediately against a maximum-severity path traversal vulnerability. The security flaw, discovered by a researcher and reported through GitLab’s HackerOne bug bounty … Read more

Microsoft fixes Teams, Outlook launch failures on ARM Windows PCs

A Critical Bug Fixed: Microsoft Resolves Teams and Outlook Launch Issues on ARM-based Windows PCs In a timely update, Microsoft has addressed a long-standing issue affecting users of its popular productivity apps, Teams and Outlook, on certain ARM-based Windows devices. The bug, which prevented these essential tools from launching after installing recent updates, has been … Read more

Cisco FMC Flaws Exploited to Steal Credentials and Deploy Qilin Ransomware

A Critical Vulnerability in Cisco’s FMC Software Exposes Organizations to Ransomware Attacks A severe flaw in Cisco’s Firepower Management Center (FMC) software has been exploited by attackers to steal sensitive credentials and deploy the Qilin ransomware, putting thousands of organizations at risk. The vulnerability, which was disclosed in July 2023, allows hackers to gain unauthorized … Read more

PaperCut Replaces Emergency Patches With Fixes for Two Actively Exploited Flaws

**Critical Patch Cycle Shifts into High Gear as PaperCut Responds to Exploited Vulnerabilities** The cybersecurity landscape has just gotten a lot more intense, with the latest development from paper management software giant PaperCut. The company has replaced emergency patches for two actively exploited vulnerabilities with permanent fixes, affecting an estimated 100,000 organizations worldwide. For those … Read more

China-Linked UNC3569 Exploited Sogou Input Method Flaw to Deploy GRAYRABBIT Backdoor

A China-linked threat actor has been exploiting a critical vulnerability in Sogou Input Method, a widely used input software on Chinese devices, to deploy a sophisticated backdoor known as GRAYRABBIT. The attack vector, attributed to UNC3569, marks a significant escalation of cyber threats targeting the Asian region. The Sogou Input Method is a popular keyboard … Read more

Attackers Chain JFrog Artifactory Flaws to Gain Admin Control and Plant Backdoors

A group of threat actors has exploited a combination of vulnerabilities in JFrog Artifactory, a popular software repository manager, to gain administrative control and plant backdoors on affected systems. The attack highlights the importance of robust identity management and vulnerability patching in preventing lateral movement within an organization’s network. The attackers’ modus operandi involves chaining … Read more