CyberAlerts is shutting down on June 30th, 2025. Thank you for your support!

Threat and Vulnerability Intelligence Database

RSS Feed

Example Searches:

Description: Founded in 2001, by one surgeon, The Vascular Experts has nearly 30 clinical providers and more than 20 Board-certified vascular surgeons. With a commitment to deliver expert vascular medical and surgical care to communities in Connecticut and Rhode Island, it is one of the largest groups of Board-certified vascular surgeons in the country. With state-of-the-art facilities in multiple locations, The Vascular Experts deliver the latest minimally invasive vascular procedures including angioplasty, endovascular surgery, vein ablations and sclerotherapy to treat vascular disease.
Source: Ransomware.live
May 20th, 2025 (about 1 month ago)

CVE-2025-26086

Description: An unauthenticated blind SQL injection vulnerability exists in RSI Queue Management System v3.0 within the TaskID parameter of the get request handler. Attackers can remotely inject time-delayed SQL payloads to induce server response delays, enabling time-based inference and iterative extraction of sensitive database contents without authentication.

EPSS Score: 0.17%

Source: CVE
May 20th, 2025 (about 1 month ago)
Description: An unknown threat actor has been attributed to creating several malicious Chrome Browser extensions since February 2024 that masquerade as seemingly benign utilities but incorporate covert functionality to exfiltrate data, receive commands, and execute arbitrary code. "The actor creates websites that masquerade as legitimate services, productivity tools, ad and media creation or analysis
Source: TheHackerNews
May 20th, 2025 (about 1 month ago)
Description: Microsoft has officially open-sourced the core components of the Windows Subsystem for Linux (WSL), allowing developers to inspect, build, and contribute to its development directly via GitHub. This milestone follows years of gradual evolution and increased community involvement, culminating in WSL becoming a standalone, actively maintained software package. Microsoft's announcement highlights that the open-source release … The post Windows Subsystem for Linux Finally Becomes Open Source appeared first on CyberInsider.
Source: CyberInsider
May 20th, 2025 (about 1 month ago)
Description: "I can't believe I missed it because it's so obvious. No excuses," the writer said. "I'm completely embarrassed."
Source: 404 Media
May 20th, 2025 (about 1 month ago)
Description: Service desks are on the front lines of defense—and attackers know it. Attackers are using social engineering attacks to trick agents into changing passwords, disabling MFA, and granting access. Learn more from Specops Software on how to secure your service desk. [...]
Source: BleepingComputer
May 20th, 2025 (about 1 month ago)
Description: The official website for the RVTools VMware management tool was taken offline in what appears to be a supply chain attack where hackers replaced a DLL in the distributed installer to dropĀ the Bumblebee malware loader on users' machines. [...]
Source: BleepingComputer
May 20th, 2025 (about 1 month ago)
Description: TOYOMI was established in the year 1992 as a professional marketi ng unit of MSM Metal Industries Sdn Bhd (MSM) to provide sheet me tal forming services to the manufacturing and engineering sector both in Malaysia and internationally. We are going to upload more than 6 GB of corporate documents such as: employee personal documents, lot of detailed accounting file s of their partners, projects files.
Source: Ransomware.live
May 20th, 2025 (about 1 month ago)
Description: 404 Media found that people were using Civitai to create nonconsensual AI porn videos of anyone for a small price.
Source: 404 Media
May 20th, 2025 (about 1 month ago)
Description: Internet monitoring services showed ongoing disruptions to Russia's tax service, as well as services for managing secure digital keys and documents (Saby), among others.
Source: The Record
May 20th, 2025 (about 1 month ago)