GRUB2 Bootloader Security Update Advisory

GRUB2 Bootloader Security Update Advisory

Overview   We have released a security update to address a vulnerability in the GRUB2 bootloader. Users of affected products are advised to update to the latest version.    Affected Products   CVE-2024-56737, CVE-2025-0678   GRUB2 versions prior to 2.12-6     Resolved Vulnerabilities   Heap Buffer Overflow Vulnerability (CVE-2024-56737)Out-of-bounds

Canon Product Security Update Advisory (CVE-2025-1268)

Canon Product Security Update Advisory (CVE-2025-1268)

Overview We have released a security update to fix vulnerabilities in Canon products. Users of affected products are advised to update to the latest version.    Affected Products   CVE-2025-1268 Generic Plus PCL6 Printer Driver V3.12 or earlierGeneric Plus UFR II Printer Driver V3.12 or earlierGeneric Plus LIPS4 Printer Driver

April 02, 2025

April 02, 2025 Hash 1e0fd636f0c0dc2d4e1db41917bc3093e 29d10bee60a6d853b34f0b87f29a94bd6 350bb94ff344e6e3fa8913e42252b9c01 URL 1https[:]//lickkic[.]vercel[.]app/metasp[.]html 2https[:]//termsbreachcontentmomentum[.]vercel[.]app/get_help/ 3https[:]//termsbreachcontentmomentum[.]vercel[.]app/ttu%26g_ep%3DEgoyMDI1MDMyMy4wIKXMDSoA[.]html IP 114[.]116[.]215[.]187 214[.]103[.]112[.]137 3103[.]39[.]93[.]93...

BeaverTail and Tropidoor Malware Distributed via Recruitment Emails

BeaverTail and Tropidoor Malware Distributed via Recruitment Emails

On November 29, 2024, a case was disclosed in which threat actors impersonated a recruitment email from a developer community called Dev.to to distribute malware. [1] In this case, the attacker provided a BitBucket link containing a project, and the victim discovered malicious code within the project and disclosed it

Apache Product Security Update Advisory (CVE-2025-30065)

Apache Product Security Update Advisory (CVE-2025-30065)

Overview   We have released security updates to fix vulnerabilities in Apache products. Users of affected products are advised to update to the latest version.    Affected Products   CVE-2025-30065 Apache Parquet Java 1.15.0 and earlier versions     Resolved Vulnerabilities   Untrusted Data Deserialization Vulnerability (CVE-2025-30065)     Vulnerability