Public exploit out for Cisco IMC flaw granting root access

A public exploit now exists for the Cisco IMC flaw that lets low-privilege users run commands as root.

The Latest

Breaking News and Alerts

Three freshly exploited bugs land on CISA’s must-patch list

Langflow, N-able N-central, and Apache Tomcat flaws join the KEV catalog under active exploitation.

Spotlight

Cybersecurity Profiles and Stories

ExfilSquad linked to dark web dump of UK police emails

The Police National Legal Database says contact details for officers and government staff surfaced on the dark web after an incident found July 26.

Second N-able patch closes N-central hole after attackers slip past first

Attackers used an authentication bypass in N-able N-central to reach managed endpoints, and the vendor's first fix did not block the path.

Forged DNA files fool lab software as Thermo Fisher ships signatures

A researcher used AI to alter DNA evidence files in about 45 minutes, prompting Thermo Fisher to add digital signatures across five product lines.

Diffusers bug trio bypasses Hugging Face code trust guard

Three flaws in Hugging Face's Diffusers library let crafted model repositories run arbitrary code despite trust_remote_code protections.

Features

Research and Thought Leadership