An unpatched command injection vulnerability in SD-WAN Manager is being actively exploited, requiring immediate measures to close authentication gaps and monitor logs.
Simple attack techniques remain effective despite known countermeasures, while undetected intrusions over extended periods revealed gaps in anomaly detection.
An unpatched zero-day in VS Code/github.dev enables theft of GitHub OAuth tokens via manipulated links, providing access to all private repositories of a victim.
CVE-2025-48595 in the Android Framework enables privilege escalation already being exploited on devices running Android 14 or newer and is being actively weaponized by commercial spyware and state-sponsored actors against journalists and decision-makers.
The time window between vulnerability disclosure and patch deployment becomes a critical security gap due to AI-accelerated exploitation and patch implementation challenges — approximately one-third of ransomware incidents could have been prevented through patching.