Latest Posts
Major Supply Chain Attack Impacting React NativeZero-day in Windows Server 2025’s Active Directory enables full Domain TakeoverURGENT COMMVAULT ALERT CVE-2025-3928 Enables M365 Tenant CompromiseFive windows 0-days: The Lazarus Group Says Thanks for Not PatchingCPU Based Ransomware. Oof. How CPU Vulnerabilities Open the Door to Microcode Ransomware
  • Follow
  • Follow
  • Follow
  • Follow
  • Home
  • BULLETINS
  • ABOUT US
  • Free Security Resources
    • Training Workshops
  • CONTACT US
    • Subscribe to Free Newsletter!
    • Tell Your Story!
PALO ALTO ADMINS- PATCH NOW OR UPDATE YOUR RESUME.

PALO ALTO ADMINS- PATCH NOW OR UPDATE YOUR RESUME.

by Jonathan R. Brennan, CISSP | Apr 1, 2025 | Bulletins

Urgent Security Alert 🚨 MASSIVE SCANNING WAVE HITS PALO ALTO GLOBALPROTECT: PATCH NOW OR REGRET LATER 🔥 GLOBALPROTECT SCANNING SURGE: NATION-STATE RECON OR MASS EXPLOIT LOADING? ~24,000 IPs. One ASN. Zero excuses. Palo Alto GlobalProtect VPNs are being aggressively...
NO PATCH WOES- Windows 0-day leaves Millions in limbo

NO PATCH WOES- Windows 0-day leaves Millions in limbo

by Jonathan R. Brennan, CISSP | Mar 29, 2025 | Bulletins

Uncovering the NTLM Zero-Day Threat New Windows0-day 3.29.25 Protect Your Systems Now! Discover the latest NTLM vulnerability that allows attackers to steal credentials just by viewing a file. Learn how to safeguard your systems today. 🚨 What Happened? In March 2025,...
Firefox Sandbox Escape Actively Exploited in Phishing Campaigns (CVE-2025-2783)

Firefox Sandbox Escape Actively Exploited in Phishing Campaigns (CVE-2025-2783)

by Jonathan R. Brennan, CISSP | Mar 28, 2025 | Bulletins

🔍 What’s Happening? Mozilla has patched a critical vulnerability affecting Firefox on Windows that allows attackers to escape the browser’s sandbox — a key line of defense meant to contain malicious web content. Actively Exploited:This isn’t theoretical. The flaw is...
“I Was Just Trying to Warn Everyone…”

“I Was Just Trying to Warn Everyone…”

by Jonathan R. Brennan, CISSP | Mar 27, 2025 | Uncategorized, User Stories

The Whale Isn’t Supposed to Do The Phishing User-Submitted Story #004 – Phishing Fail from the Top Floor There’s nothing like a bit of chaos to bring people together—especially when that chaos starts in the corner office. Phishing simulations are a great way to test...
Zero-Day Alert: “MSC EvilTwin” Exploit Targets Microsoft Management Console

Zero-Day Alert: “MSC EvilTwin” Exploit Targets Microsoft Management Console

by Jonathan R. Brennan, CISSP | Mar 27, 2025 | Bulletins

🔒 Zero-Day Alert: “MSC EvilTwin” Exploit Targets Microsoft Management ConsoleA newly discovered zero-day in Microsoft Management Console (CVE-2025-26633) is being actively exploited by a sophisticated threat actor known as EncryptHub. The flaw allows attackers to...
« Older Entries
Next Entries »

Follow Us

  • Facebook
  • Twitter
  • Instagram
  • LinkedIn
  • YouTube

Search

Recent Posts

  • Major Supply Chain Attack Impacting React Native
  • Zero-day in Windows Server 2025’s Active Directory enables full Domain Takeover
  • URGENT COMMVAULT ALERT CVE-2025-3928 Enables M365 Tenant Compromise
  • Five windows 0-days: The Lazarus Group Says Thanks for Not Patching
  • CPU Based Ransomware. Oof. How CPU Vulnerabilities Open the Door to Microcode Ransomware

Categories

  • Bulletins
  • NEWS
  • Resources
  • Training
  • Uncategorized
  • User Stories

SecurityBlotter.com
Panic More. Patch Less.



Copyright 2025All rights reserved. Duplication or republication of any contents is prohibited without written permission from SecurityBlotter.

Recent News

  • Supply Chain CompromiseMajor Supply Chain Attack Impacting React Native
  • Zero-day in Windows Server 2025’s Active Directory…
  • URGENT COMMVAULT ALERT CVE-2025-3928 Enables M365…

Designed by Elegant Themes | Powered by WordPress