Search found 5 matches

by adam2025
Thu Jun 26, 2025 5:52 am
Forum: Desktop Applications
Topic: Citrix Bleed 2 Flaw Enables Token Theft; SAP GUI Flaws Risk Sensitive Data Exposure
Replies: 0
Views: 494

Citrix Bleed 2 Flaw Enables Token Theft; SAP GUI Flaws Risk Sensitive Data Exposure

Cybersecurity researchers have detailed two now-patched security flaws in SAP Graphical User Interface (GUI) for Windows and Java that, if successfully exploited, could have enabled attackers to access sensitive information under certain conditions.

The vulnerabilities, tracked as CVE-2025-0055 and ...
by adam2025
Thu Jun 26, 2025 5:50 am
Forum: Windows
Topic: TeamViewer for Windows Vulnerability Let Attackers Delete Files Using SYSTEM Privileges
Replies: 0
Views: 583

TeamViewer for Windows Vulnerability Let Attackers Delete Files Using SYSTEM Privileges

A significant security vulnerability in the TeamViewer Remote Management solution for Windows that could allow attackers with local access to delete arbitrary files with SYSTEM privileges, potentially leading to privilege escalation.

The vulnerability, identified as CVE-2025-36537, was announced ...
by adam2025
Thu Jun 26, 2025 5:50 am
Forum: Windows
Topic: XDigo Malware Exploits Windows LNK Flaw in Eastern European Government Attacks
Replies: 0
Views: 585

XDigo Malware Exploits Windows LNK Flaw in Eastern European Government Attacks

Cybersecurity researchers have uncovered a Go-based malware called XDigo that has been used in attacks targeting Eastern European governmental entities in March 2025.

The attack chains are said to have leveraged a collection of Windows shortcut (LNK) files as part of a multi-stage procedure to ...
by adam2025
Thu Jun 26, 2025 5:48 am
Forum: Web Applications
Topic: nOAuth Vulnerability Still Affects 9% of Microsoft Entra SaaS Apps Two Years After Discovery
Replies: 0
Views: 399

nOAuth Vulnerability Still Affects 9% of Microsoft Entra SaaS Apps Two Years After Discovery

New research has uncovered continued risk from a known security weakness in Microsoft's Entra ID, potentially enabling malicious actors to achieve account takeovers in susceptible software-as-a-service (SaaS) applications.

Identity security company Semperis, in an analysis of 104 SaaS applications ...
by adam2025
Thu Jun 26, 2025 5:45 am
Forum: Mobile Phones
Topic: OPPO Clone Phone Vulnerability Leaks Sensitive Data via Weak WiFi Hotspot
Replies: 0
Views: 563

OPPO Clone Phone Vulnerability Leaks Sensitive Data via Weak WiFi Hotspot

A newly disclosed security vulnerability in OPPO’s widely used Clone Phone app has raised significant concerns over user privacy, as it exposes sensitive data through a weakly secured WiFi hotspot.

The flaw, cataloged as CVE-2025-27387, has been rated as high severity and was published in the ...