organization · 5 records
watchTowr

Attackers exploit critical JFrog Artifactory vulnerability to create administrator tokens
Threat actors are exploiting a newly patched critical security flaw in JFrog Artifactory to mint administrator tokens shortly after the vulnerability was disclosed.

Hackers exploit PaperCut software vulnerabilities to steal credentials from educational institutions
Threat actors are exploiting PaperCut software vulnerabilities to conduct credential theft at educational institutions in the U.S. and Europe.

GitLab CVSS 10 File-Read Flaw Draws In-the-Wild Probes After Disclosure
GitLab has patched multiple critical vulnerabilities, including a path traversal flaw being actively exploited in the wild.

Active Exploitation Attempts Target WSO2 API Manager JWT Bypass
WSO2 API Manager is under active exploitation due to a JWT authentication bypass vulnerability.

Zoom releases security updates to address critical Windows vulnerability
Zoom has released security updates to address a critical vulnerability in its Windows clients that could allow unauthenticated attackers to take over user accounts, along with three other high-severity flaws.