Two critical vulnerabilities in open-source platforms are under active exploitation, according to independent reports from watchTowr and VulnCheck. The first, CVE-2026-64849 (CVSS…
active exploitationcloud credentialsCVE-2026-25895CVE-2026-64849
FUXA is an open-source, web-based SCADA/HMI software for operational technology (OT) and industrial automation. It is affected by CVE-2026-25895, a critical vulnerability…
The operators of the DevMan ransomware-as-a-service (RaaS) scheme maintain a dedicated web platform that offers affiliates the ability to build payloads, oversee…
DevMan is a ransomware-as-a-service (RaaS) operation that emerged in April 2025, initially as an affiliate for Qilin, DragonForce, Apos, and RansomHub before…