Cobalt Strike Beacon Detected – 180[.]76[.]138[.]238:443
The Information provided at the time of posting was detected as "Cobalt Strike". Depending on when you are viewing this...
The Information provided at the time of posting was detected as "Cobalt Strike". Depending on when you are viewing this...
The Information provided at the time of posting was detected as "Cobalt Strike". Depending on when you are viewing this...
The Information provided at the time of posting was detected as "Cobalt Strike". Depending on when you are viewing this...
The Information provided at the time of posting was detected as "Cobalt Strike". Depending on when you are viewing this...
The Information provided at the time of posting was detected as "Cobalt Strike". Depending on when you are viewing this...
The Information provided at the time of posting was detected as "Cobalt Strike". Depending on when you are viewing this...
The Information provided at the time of posting was detected as "Cobalt Strike". Depending on when you are viewing this...
The Information provided at the time of posting was detected as "Cobalt Strike". Depending on when you are viewing this...
Leak of usernames from a private website Leak of usernames from a private website Researcher: Engagement: National Aeronautics and Space...
Publicly Accessible .env File Exposing Hardcoded Credentials on NASA’s Git Repository Publicly Accessible .env File Exposing Hardcoded Credentials on NASA’s...
Ransomware Group: PLAY VICTIM NAME: CBG Surveying Texas NOTE: No files or stolen information are by RedPacket Security. Any legal...
Ransomware Group: PLAY VICTIM NAME: Omega Global Technologies NOTE: No files or stolen information are by RedPacket Security. Any legal...
Ransomware Group: NITROGEN VICTIM NAME: Ocean Edge Resort & Golf Club NOTE: No files or stolen information are by RedPacket...
CVE-2025-49706 MEDIUMCISA KEVExploitation active Improper authentication in Microsoft Office SharePoint allows an unauthorized attacker to perform spoofing over a network....
CVE-2025-54309 CRITICALCISA KEVExploitation active CrushFTP 10 before 10.8.5 and 11 before 11.3.4_23, when the DMZ proxy feature is not used,...
CVE-2025-49704 HIGHCISA KEVExploitation active Improper control of generation of code ('code injection') in Microsoft Office SharePoint allows an authorized attacker...
CVE-2025-53770 CRITICALCISA KEVExploitation active Deserialization of untrusted data in on-premises Microsoft SharePoint Server allows an unauthorized attacker to execute code...
CVE-2025-25257 CRITICALCISA KEVExploitation active An improper neutralization of special elements used in an SQL command ('SQL Injection') vulnerability in Fortinet...
CVE-2025-2776 CRITICALCISA KEVExploitation active SysAid On-Prem versions <= 23.3.40 are vulnerable to an unauthenticated XML External Entity (XXE) vulnerability in...
CVE-2025-6558 UnknownCISA KEVExploitation active Insufficient validation of untrusted input in ANGLE and GPU in Google Chrome prior to 138.0.7204.157 allowed...
CVE-2025-20281 CRITICALCISA KEVExploitation active A vulnerability in a specific API of Cisco ISE and Cisco ISE-PIC could allow an unauthenticated,...
CVE-2025-2775 CRITICALCISA KEVExploitation active SysAid On-Prem versions <= 23.3.40 are vulnerable to an unauthenticated XML External Entity (XXE) vulnerability in...
CVE-2025-20337 CRITICALCISA KEVExploitation active A vulnerability in a specific API of Cisco ISE and Cisco ISE-PIC could allow an unauthenticated,...
CVE-2023-2533 HIGHCISA KEVExploitation active A Cross-Site Request Forgery (CSRF) vulnerability has been identified in PaperCut NG/MF, which, under specific conditions,...