

- Cyber Threat Intelligence, Emergency Announcement
Clop Group Exploits Critical Zero-Day Vulnerability in Oracle E-Business Suite
Oracle has confirmed the active exploitation of a critical zero-day vulnerability in E-Business Suite (EBS), identified as CVE-2025-61882

- Cyber Threat Intelligence, Emergency Announcement
Zabbix releases fixes for three vulnerabilities in monitoring agents
Zabbix has disclosed three security vulnerabilities affecting multiple versions of its monitoring agents and servers.

- Cyber Threat Intelligence, Vulnerability Notification
Extraordinary VNA – PAN-OS
Critical PAN-OS vulnerability (CVE-2024-3400) is being exploited worldwide — apply patches immediately

- Cyber Threat Intelligence, Emergency Announcement
Red Hat confirms exposition of customer data following cyberattack on GitLab instance
On October 2nd of this year, Red Hat confirmed a security breach in a GitLab Community Edition instance used by the Red Hat Consulting team.

- Cyber Threat Intelligence, Intelligence Bulletin
Coordinated Salesforce attacks affect hundreds of organizations globally
The FBI warned of attacks exploiting Salesforce to steal data and OAuth tokens from major companies.

- Cyber Threat Intelligence, Emergency Announcement
SEK Identifies WhatsApp Scam Campaign with Fake Payment Receipt
SEK has identified a new cyberattack campaign targeting Brazilian companies through WhatsApp.

- Cyber Threat Intelligence, Emergency Announcement
Critical Vulnerability in Fortra GoAnywhere MFT Exploited by Attackers
Fortra GoAnywhere MFT tool, widely used for file transfers, has been under active exploitation since September 10, 2025

- Cyber Threat Intelligence, Vulnerability Notification
Extraordinary VN – VMware Aria Operations e VMware Tools
Broadcom disclosed CVE-2025-41244 (CVSS 7.8) in VMware Aria/Tools, a zero-day exploited by Chinese actors.

- Cyber Threat Intelligence, Emergency Announcement
Cisco confirms active exploitation of three zero-days by advanced threat actors
Cisco confirmed on September 26 a sophisticated attack campaign against ASA 5500-X series devices since May 2025.