Security

Sophos Firewall zero-day exploit: urgent patch
A critical zero-day in Sophos firewalls is being actively exploited by ransomware groups, with no workaround yet available — admins must patch immediately.

Atlassian Confluence zero-day exploited in wild
Atlassian Confluence zero-day exploited in wild attacks. CISA warns of active exploitation, patch now.

Trimble Cityworks vulnerability exploited in wild
CISA warns of active exploitation of a deserialization flaw in Trimble Cityworks, enabling remote code execution on critical infrastructure.

Zero-Day exploit in VMware vCenter
A critical zero-day vulnerability in VMware vCenter Server is under active exploitation, allowing attackers to gain complete control over virtualized environments.

Linux netfilter zero-day exploited in attacks
Linux netfilter zero-day exploited in wild. Critical vulnerability allows remote code execution on affected Linux systems.

Cisco IOS XE zero-day exploited
A critical zero-day in Cisco IOS XE is being actively exploited in the wild, allowing attackers full remote control of vulnerable switches and routers.

CISA warns of actively exploited Linux kernel bug
CISA adds a critical Linux kernel privilege escalation flaw to its Known Exploited Vulnerabilities catalog following active attacks.

Fortinet zero-day exploit: critical RCE in SSL VPN
Fortinet zero-day exploit leads to remote code execution in SSL VPN appliances, with active exploitation reported by CISA.

Mitel MiCollab zero-day: active exploitation
Mitel MiCollab zero-day CVE-2024-41713 actively exploited in March 2025. CISA adds to catalog. Urgent patch.

Apple WebKit zero-day exploit: urgent patch now
Apple released emergency fixes for a WebKit zero-day (CVE-2025-24201) exploited in the wild. Update iOS, macOS, and Safari immediately.

Apple kernel zero-day exploit: emergency patch
Apple's latest kernel zero-day exploit (CVE-2025-24201) is being exploited in the wild, targeting iOS and macOS devices. Urgent patching required.
