IBM Product Security Update Advisory (CVE-2025-2000)

IBM Product Security Update Advisory (CVE-2025-2000)

Overview We have released a security update to fix vulnerabilities in IBM products. Users of affected products are advised to update to the latest version.    Affected Products   CVE-2025-2000 Qiskit SDK versions: 0.18.0 through 1.4.1 (inclusive)     Resolved Vulnerabilities Arbitrary code execution vulnerability when using specially crafted QPY

March 19, 2025

March 19, 2025 Hash 1a3e6e534ab871a54be64d71eea25723d 2e9a7b543f1ca9e5de2df84df39fc83e3 3a0700db0c289e8702e295f46fbaf08bd URL 1http[:]//hjhg[.]66ng[.]cn/sft/vlc/1[.]2/vlc_01-19475fc[.]exe 2http[:]//www[.]vejacanadaca[.]com/collections/shoes-v12-kids-c-1_9[.]html?Z2VuZGVyPTM= 3https[:]//linkup[.]top/metasupportpage082?tr8jt603b4 IP 1199[.]192[.]21[.]181 2141[.]94[.]106[.]15 3160[.]174[.]129[.]232...

Weekly Detection Rule (YARA and Snort) Information – Week 3, March 2025

Weekly Detection Rule (YARA and Snort) Information – Week 3, March 2025

The following is the information on Yara and Snort rules (week 3, March 2025) collected and shared by the AhnLab TIP service. 0 YARA Rules 17 Snort Rules Detection name Source ET WEB_SPECIFIC_APPS D-Tale Filter Query Command Injection Attempt (CVE-2025-0655) https://rules.emergingthreatspro.com/open/ ET EXPLOIT [CORELIGHT] – CVE-2025-27218 Sitecore unsafe deserialization attempt

GitHub Action Security Update Advisory (CVE-2025-30066)

GitHub Action Security Update Advisory (CVE-2025-30066)

Overview We have released a security update to address a vulnerability in GitHub Actions. Users of affected products are advised to update to the latest version.    Affected Products   CVE-2025-30066 Changed-files Version: ~46.0.1 (excluded)     Resolved Vulnerabilities Sensitive Information Exposure Vulnerability via Log Files (CVE-2025-30066)     Vulnerability

Fortinet Product Security Update Advisory (CVE-2025-24472)

Fortinet Product Security Update Advisory (CVE-2025-24472)

Overview We have released security updates to fix vulnerabilities in Fortinet products. Users of affected products are advised to update to the latest version.    Affected Products   CVE-2025-24472 FortiOS Versions: 7.0.0 through 7.0.16 (inclusive)FortiProxy Versions: 7.2.0 through 7.2.12 (inclusive)FortiProxy versions: 7.0.0 through 7.0.19 (inclusive)     Resolved Vulnerabilities Elevation