Brutkey

cR0w
@cR0w@infosec.exchange
cR0w
@cR0w@infosec.exchange

Two BoFs in libcsp.

https://github.com/libcsp/libcsp/issues/850

https://github.com/libcsp/libcsp/issues/851

cR0w
@cR0w@infosec.exchange

13 CVEs in Mattermost Confluence Plugin.

https://www.cve.org/CVERecord?id=CVE-2025-44001

https://www.cve.org/CVERecord?id=CVE-2025-44004

https://www.cve.org/CVERecord?id=CVE-2025-48731

https://www.cve.org/CVERecord?id=CVE-2025-49221

https://www.cve.org/CVERecord?id=CVE-2025-52931

https://www.cve.org/CVERecord?id=CVE-2025-53514

https://www.cve.org/CVERecord?id=CVE-2025-53857

https://www.cve.org/CVERecord?id=CVE-2025-53910

https://www.cve.org/CVERecord?id=CVE-2025-54458

https://www.cve.org/CVERecord?id=CVE-2025-54463

https://www.cve.org/CVERecord?id=CVE-2025-54478

https://www.cve.org/CVERecord?id=CVE-2025-54525

https://www.cve.org/CVERecord?id=CVE-2025-8285

cR0w
@cR0w@infosec.exchange

I love how ABB puts out enough vulnerable shit that their advisories say CVE ID: Several.

https://search.abb.com/library/Download.aspx?DocumentID=9AKK108471A4462&LanguageCode=en&DocumentPartId=pdf&Action=Launch

cR0w
@cR0w@infosec.exchange

Looks like they're scheduled to be published at noon EDT Wednesday.

cR0w
@cR0w@infosec.exchange

Worldleaks listed L3Harris Technologies. blobcatpopcorn

#ransomware

cR0w
@cR0w@infosec.exchange

I missed the "two vulns, ONE app" and it was right there. sigh

cR0w
@cR0w@infosec.exchange

Hey GitHub, you okay?

cR0w
@cR0w@infosec.exchange

Play listed Bluewater Yacht Sales and I am cool with that.

#ransomware #teamOrca

cR0w
@cR0w@infosec.exchange

Path traversal and SSRF in Omnissa Workspace ONE.

https://www.omnissa.com/omsa-2025-0001/

cR0w
@cR0w@infosec.exchange

Play published Jamco Aerospace.

#ransomware