A Chinese-speaking threat actor is using the DeepSeek AI model and the open-source Hermes Agent to conduct autonomous cyberattacks on exposed servers with limited human […]
The timeline that vulnerability management was built on has quietly disappeared. For decades, defenders could count on weeks or months between a flaw becoming public […]
The Australian Cyber Security Centre (ACSC) issued an alert about a global exploitation campaign targeting vulnerable content management systems (CMS) and plugins. The government agency […]
This article provides a technical analysis of how many Windows kernel mode drivers can be interacted with from user mode without the hardware they were […]
Over 10,000 Zimbra Collaboration Suite (ZCS) instances exposed online are vulnerable to ongoing attacks exploiting a cross-site scripting (XSS) security flaw, according to nonprofit security organization Shadowserver. […]
Over 1,300 Microsoft SharePoint servers exposed online remain unpatched against a spoofing vulnerability that was exploited as a zero-day and is still being abused in […]
A current operation has been detected targeting publicly accessible ComfyUI instances, a well-known platform for stable diffusion, to incorporate them into a botnet for cryptocurrency […]
A combination of two security weaknesses in Progress ShareFile, a platform for secure file sharing in businesses, can be used to steal files from affected […]
Shadowserver, a nonprofit that monitors internet security threats, has identified more than 14,000 BIG-IP APM installations accessible online amidst active attacks exploiting a critical vulnerability […]
Attacks taking advantage of the ‘PolyShell’ security flaw in Magento Open Source and Adobe Commerce version 2 are active, impacting over half of susceptible online […]
© Bulletproof Servers. All rights reserved.