Blog Archive

Older posts, still searchable. ← Back to recent posts

Filtering by tag: #privilege-escalation Showing 9 posts
Cybersecurity

Critical SolarWinds and Cisco Vulnerabilities Are Being Actively Exploited — What Local Businesses Need to Do Right Now

CISA has added a SolarWinds Serv-U denial-of-service flaw to its Known Exploited Vulnerabilities catalog, and a Cisco SD-WAN zero-day with no patch available is already being used in attacks. If your business runs either platform, here's exactly what to check and what to do.

Cybersecurity

FortiClient EMS Flaw Is Being Used to Silently Install a Credential Stealer on Business Computers — Here's What's Happening and What to Do

Attackers are exploiting a critical FortiClient EMS vulnerability (CVE-2026-35616) to push a fake Fortinet update that silently harvests passwords, session cookies, and even credit card data from business computers. Here's what the attack looks like and how to protect your organization.

Cybersecurity

Critical Microsoft ASP.NET Security Flaw Fixed — Update Your Servers Now

Microsoft quietly pushed an emergency patch for a critical ASP.NET Core vulnerability (CVE-2026-40372) that lets attackers hijack accounts and steal data. If your website or web app runs on ASP.NET Core 10.x on Linux or macOS, here's exactly what you need to do right now.