CurveBall (CVE-2020-0601)? Complexity.
BigSig (CVE-2021-43527)? Memory safety.
Log4Shell (CVE-2021-44228)? Complexity.
BlueKeep (CVE-2019-0708)? Memory safety.
Heartbleed looks like memory safety, but it's actually complexity.
CurveBall (CVE-2020-0601)? Complexity.
BigSig (CVE-2021-43527)? Memory safety.
Log4Shell (CVE-2021-44228)? Complexity.
BlueKeep (CVE-2019-0708)? Memory safety.
Heartbleed looks like memory safety, but it's actually complexity.
- **Microsoft Zero-Day** (Nightmare Eclipse / GreatXML) bypasses BitLocker — CVE-2026-35273 also affects Oracle PeopleSoft
[Sources: Mastodon #infosec, #cybersecurity, #security, #databreach, #vulnerability,
- **Microsoft Zero-Day** (Nightmare Eclipse / GreatXML) bypasses BitLocker — CVE-2026-35273 also affects Oracle PeopleSoft
[Sources: Mastodon #infosec, #cybersecurity, #security, #databreach, #vulnerability,
A new Larva-24005 campaign is exploiting old RDP bugs (BlueKeep, CVE-2019-0708) to breach systems in South Korea, Japan & beyond—with targets across energy, finance & tech.
#CyberSecurity #CyberAttacks
thehackernews.com/2025/04/kims...
A new Larva-24005 campaign is exploiting old RDP bugs (BlueKeep, CVE-2019-0708) to breach systems in South Korea, Japan & beyond—with targets across energy, finance & tech.
#CyberSecurity #CyberAttacks
thehackernews.com/2025/04/kims...
Over the past year, our Global Emergency Response Team (GERT) has investigated several incidents involving the NightEagle group (APT-Q-95). This group has been active since at least 2023 and originally focused on […]
[Original post on poliverso.org]
Over the past year, our Global Emergency Response Team (GERT) has investigated several incidents involving the NightEagle group (APT-Q-95). This group has been active since at least 2023 and originally focused on […]
[Original post on poliverso.org]
スパイ活動を専門とする脅威グループNightEagle(APT-Q-95としても追跡されている)は、活動範囲をアジア地域の標的からロシアの組織へと拡大しており、Active Directoryドメインコントローラーの侵害を最終目的とする多段階の侵入手口を用いています。 このキャンペーンは、企業侵害においてよく見られな
スパイ活動を専門とする脅威グループNightEagle(APT-Q-95としても追跡されている)は、活動範囲をアジア地域の標的からロシアの組織へと拡大しており、Active Directoryドメインコントローラーの侵害を最終目的とする多段階の侵入手口を用いています。 このキャンペーンは、企業侵害においてよく見られな
requiring updated detection signatures and defensive postures. [Sources: Mastodon #threatintel]
## 8. NVIDIA Zero-Day (CVE-2026-35273) Affects Oracle PeopleSoft; BlueKeep RDP Exploitation Continues
A zero-day exploit affecting NVIDIA components and tracked as
requiring updated detection signatures and defensive postures. [Sources: Mastodon #threatintel]
## 8. NVIDIA Zero-Day (CVE-2026-35273) Affects Oracle PeopleSoft; BlueKeep RDP Exploitation Continues
A zero-day exploit affecting NVIDIA components and tracked as
CVE-2026-35273 is also impacting Oracle PeopleSoft systems. Separately, the long-dormant BlueKeep RDP vulnerability continues to be actively exploited by threat actors targeting systems in South Korea and Japan, demonstrating that known vulnerabilities remain
CVE-2026-35273 is also impacting Oracle PeopleSoft systems. Separately, the long-dormant BlueKeep RDP vulnerability continues to be actively exploited by threat actors targeting systems in South Korea and Japan, demonstrating that known vulnerabilities remain
and its clients. Customers should review Accenture's breach response guidance and assess their own exposure.
Source: https://infosec.exchange/@beyondmachines1/116884957269615406
## 9. Kimsuky Exploits BlueKeep RDP Vulnerability
and its clients. Customers should review Accenture's breach response guidance and assess their own exposure.
Source: https://infosec.exchange/@beyondmachines1/116884957269615406
## 9. Kimsuky Exploits BlueKeep RDP Vulnerability
North Korean-linked group Kimsuky is exploiting the BlueKeep RDP vulnerability (CVE-2019-0708) to breach systems in South Korea and Japan. This demonstrates that legacy vulnerabilities remain a persistent threat vector even years after their disclosure.
North Korean-linked group Kimsuky is exploiting the BlueKeep RDP vulnerability (CVE-2019-0708) to breach systems in South Korea and Japan. This demonstrates that legacy vulnerabilities remain a persistent threat vector even years after their disclosure.
in Check Point VPNs actively exploited by Qilin ransomware via IKEv1 auth bypass. Kimsuky is also exploiting the BlueKeep RDP zero-day in South Korea and Japan. Source: [@offseq@infosec.exchange](https://infosec.exchange/@offseq/116758965574886024)
## Bonus:
in Check Point VPNs actively exploited by Qilin ransomware via IKEv1 auth bypass. Kimsuky is also exploiting the BlueKeep RDP zero-day in South Korea and Japan. Source: [@offseq@infosec.exchange](https://infosec.exchange/@offseq/116758965574886024)
## Bonus:
[@amitav63.bsky.social](https://timesofindia.indiatimes.com/world/us/chi...)
## 8. 🛡️ Active Exploits: Cisco SD-WAN, Check Point VPN, BlueKeep Resurgence
Cisco Catalyst SD-WAN Manager zero-day (CVE-2026-20262) exploited in the wild for root escalation.
[@amitav63.bsky.social](https://timesofindia.indiatimes.com/world/us/chi...)
## 8. 🛡️ Active Exploits: Cisco SD-WAN, Check Point VPN, BlueKeep Resurgence
Cisco Catalyst SD-WAN Manager zero-day (CVE-2026-20262) exploited in the wild for root escalation.
thehackernews.com/2025/04/kims...
thehackernews.com/2025/04/kims...