![]() |
🚨 Marked as known exploited on May 28th, 2025 (17 days ago).
Description: Meet the elite squad that’s hunting the next major cyberattack. With more than 150 years of combined research experience and expert analysis, the Tenable Research Special Operations team arms organizations with the critical and actionable intelligence necessary to proactively defend the modern attack surface. The digital battlefield is constantly shifting. It's no longer enough to just react. We need to anticipate. Massive data breaches leave consumers exposed to identity thieves, ransomware attacks cripple hospitals, and Nation State actors disrupt critical infrastructure. It's not just about vulnerable software anymore. In our hyper-connected world, from the smart devices in your home to the complex systems running our cities, everything is a potential target. The explosion of cloud services and AI is accelerating this risk, creating countless new windows for cybercriminals and hostile nations to exploit. From software and hardware vulnerabilities, to misconfigurations, compromised identities, overexposed and highly privileged environments, and publicly accessible databases, the threat landscape is everywhere, all at once. As of October 2024, over 240,000 Common Vulnerabilities and Exposures (CVEs) have been tracked through the MITRE CVE program, including many that have significantly impacted consumers, businesses and governments. The volume has historically been too much for security teams to keep up with. Beyond the sheer increase in the volume of traditional vulnerab...
CVSS: CRITICAL (9.6) EPSS Score: 8.83%
May 28th, 2025 (17 days ago)
|
CVE-2024-11185 |
Description: On affected platforms running Arista EOS, ingress traffic on Layer 2 ports may, under certain conditions, be improperly forwarded to ports associated with different VLANs, resulting in a breach of VLAN isolation and segmentation boundaries.
CVSS: MEDIUM (6.5) EPSS Score: 0.04%
May 27th, 2025 (17 days ago)
|
![]() |
Description: The online service has since been shut down as the agency grapples with the cyberattack, though it assures the public that those most in need of legal assistance will still be able to access help.
May 27th, 2025 (17 days ago)
|
![]() |
Description: Coinbase asserts that this number is only a small fraction of the number of its verified users, though it's still offering a $20 million reward to catch the criminals.
May 27th, 2025 (17 days ago)
|
![]() |
Description: The same easily exploitable vulnerability was found in three of the apps that led to the compromise of victims' data.
May 27th, 2025 (17 days ago)
|
![]() |
Description: Though Adidas said that no payment or financial information was affected in the breach, individuals who contacted the compamy's customer service help desk were impacted.
May 27th, 2025 (17 days ago)
|
![]() |
Description: The DragonForce ransomware operation successfully breached a managed service provider and used its SimpleHelp remote monitoring and management (RMM) platform to steal data and deploy encryptors on downstream customers' systems. [...]
May 27th, 2025 (17 days ago)
|
![]() |
Description: Alleged Data Breach of I Paid A Bribe
May 27th, 2025 (17 days ago)
|
![]() |
Description: An Iranian national has pleaded guilty to participating in the Robbinhood ransomware operation, which was used to breach the networks, steal data, and encrypt devices of U.S. cities and organizations in an attempt to extort millions of dollars over a five-year span. [...]
May 27th, 2025 (18 days ago)
|
![]() |
Description: The city filed breach notification letters with regulators seven months after a ransomware gang accessed systems.
May 27th, 2025 (18 days ago)
|