SolarWinds Product Security Update Advisory

SolarWinds Product Security Update Advisory

Overview   Solarwinds has released security updates to fix vulnerabilities in Solarwinds products. Users of affected products are advised to update to the latest version.    Affected Products   CVE-2025-40547, CVE-2025-40548, CVE-2025-40549   SolarWinds Serv-U Version: 15.5.2.2.102     Resolved Vulnerabilities   Remote code execution vulnerability in SolarWinds Serv-U (CVE-2025-40547)Remote

GitLab Product Security Update Advisory (CVE-2025-12571)

GitLab Product Security Update Advisory (CVE-2025-12571)

Overview   We have released security updates to fix vulnerabilities in GitLab products. Users of affected products are advised to update to the latest version.    Affected Products   CVE-2025-12571   GitLab CE/EE Versions: 17.10 and later but before 18.4.5GitLab CE/EE Versions: 18.5 and above but below 18.5.3GitLab CE/EE version:

Grafana Product Security Update Advisory (CVE-2025-41115)

Grafana Product Security Update Advisory (CVE-2025-41115)

Overview   We have released a security update to address a vulnerability in our Grafana product. Users of affected products are advised to update to the latest version.    Affected Products   CVE-2025-41115   Grafana Enterprise Versions: 12.0.0 and earlier and 12.2.1 and earlier     Resolved Vulnerabilities   Improper

Squid Security Update Advisory (CVE-2025-62168)

Squid Security Update Advisory (CVE-2025-62168)

Overview  We have released a security update to address a vulnerability in Squid. Users of affected products are advised to update to the latest version.    Affected Products   CVE-2025-62168   Squid Version: 7.2 and earlier     Resolved Vulnerabilities   Information disclosure vulnerability in Squid error handling (CVE-2025-62168)  

November 28, 2025

November 28, 2025 Hash 10c204e3a55e99d51f7a56d685c1ee062 2055e2fc77821cc4322a940b9ce0cc0b8 343dfa961ce26ce56e71dc8581c8d0565 URL 1http[:]//23[.]95[.]243[.]106/161/ggh9797fhfhfdfdffdss68779979fhfhfhfhhfhh687686868gdgfddg86868hffh[.]vbs 2http[:]//41[.]216[.]189[.]185/c[.]sh 3http[:]//41[.]216[.]189[.]185/wget[.]sh IP 1117[.]63[.]241[.]196 2101[.]47[.]162[.]73 3182[.]61[.]46[.]57...

Mobile Security & Malware Issue 4st Week of November, 2025

Mobile Security & Malware Issue 4st Week of November, 2025

ASEC Blog publishes “Mobile Security & Malware Issue 4st Week of November, 2025”

CoinMiner Malware Being Continuously Distributed via USB

CoinMiner Malware Being Continuously Distributed via USB

In February 2025, AhnLab SEcurity intelligence Center (ASEC) confirmed in their report “Cases of CoinMiner Being Spread via USB” [1] that CoinMiner malware is being spread via USB in South Korea. In July 2025, Mandiant also released a report on the same attack series and categorized the malware being installed as