Microsoft warns CVE-2025-29824 lets attackers with user access escalate privileges to deploy ransomware via a flaw in Windows CLFS.#cybersecurity #cybersecurity #Microsoft #ransomexx #ransomware #securityupdates #vulnerabilities #windows
Giorgio Sarto reshared this.
Apple has also fixed vulnerabilities in iPadOS 17.7.6, macOS Sonoma 14.7.5, and macOS Ventura 13.7.5, as well as its recently released iOS 18.4.#Apple #backport #cybesecurity #ios #ipad #iPadOS #iphone #Mac #macos #vulnerabilities
reshared this
CVE-2025-22230 is described as an "authentication bypass vulnerability" by Broadcom, allowing hackers to perform high-privilege operations without the necessary credentials.#authentication #broadcom #cybersecurity #hackers #microsoftwindows #security #vmware #vmwaretools #vulnerabilities
Giorgio Sarto reshared this.
By simply sending HTTP requests, attackers can trigger the deserialisation of malicious data in Tomcat's session storage and gain control.#apache #apachetomcat #cybersecurity #cybersecurity #remotecodeexecution #security #servlets #vulnerabilities #webservers
Giorgio Sarto reshared this.
The vulnerability allowed malicious code running inside the Web Content sandbox, an isolated environment for web processes designed to limit security risks, to impact other parts of the device.#Apple #cybersecurity #ios #iPadOS #security #update #vulnerabilities
reshared this