- Cyber Threat Intelligence, SEK Security Advisory
Critical vulnerabilities affect Cisco UCCX and Cisco ISE
Cisco disclosed critical flaws enabling remote code execution and denial of service in UCCX and ISE systems.
- Cyber Threat Intelligence, Notificação de Vulnerabilidades OT/ICS
Monthly VNA OT-ICS – October/2025
The report highlights critical vulnerabilities in industrial and operational technology systems, emphasizing the need for immediate updates and continuous security practices.
- News, SEK Security Advisory
Azure Front Door failure causes global disruption in Microsoft services
Azure Front Door failure caused a global Microsoft outage, stressing the need for stronger cloud resilience.
- Cyber Threat Intelligence, SEK Security Advisory
Critical vulnerability in LanScope Endpoint Manager under active exploitation
CISA confirmed active exploitation of the critical CVE-2025-61932 flaw in LanScope Endpoint Manager, allowing unauthenticated remote code execution.
- Cyber Threat Intelligence, SEK Security Advisory
Critical RCE vulnerability in Windows Server Update Services (WSUS)
Microsoft released an emergency update to fix a critical flaw (CVE-2025-59287) allowing remote code execution with SYSTEM privileges on vulnerable WSUS servers.
- Cyber Threat Intelligence, SEK Security Advisory
Multi-stage malware campaign via WhatsApp Web
SEK identified a multi-stage malware campaign on WhatsApp Web using automation and scripts to compromise Windows systems.
- Cyber Threat Intelligence, Notificação de Vulnerabilidades OT/ICS
VN Monthly – October/2025
Monthly report presenting the main OT-ICS vulnerabilities identified in October, highlighting critical risks and mitigation recommendations
- Cyber Threat Intelligence, Emergency Announcement
F5 Networks Breached by State-Sponsored Actor, Source Code for BIG-IP Stolen
F5 Networks disclosed on Wednesday that it was the victim of a cybersecurity breach carried out by a highly sophisticated state-sponsored actor, resulting in the theft of proprietary BIG-IP
- Cyber Threat Intelligence, Emergency Announcement
Clop Group Exploits Critical Zero-Day Vulnerability in Oracle E-Business Suite
Oracle has confirmed the active exploitation of a critical zero-day vulnerability in E-Business Suite (EBS), identified as CVE-2025-61882