Vulnerability Overview
Exploitation Activity
Exploitation Intelligence
SAP has released its November security updates, which include 18 new security advisories. Among these, a critical vulnerability in the SQL Anywhere Monitor (CVE-2025-42890) has been identified, receiving a maximum CVSS score of 10 due to hardcoded credentials. Enterprises using SAP systems are urged...
CYFIRMA Research and Advisory Team has identified Bactor Ransomware while monitoring underground forums. This ransomware targets Windows systems and affects multiple industries and technologies. The findings are part of ongoing efforts to track ransomware trends and threats.
Multiple ransomware strains, including Bactor, ChickenKiller, and Midnight, have been identified by CYFIRMA Research and Norton. Bactor and ChickenKiller ransomware target Windows systems, while Midnight ransomware has been partially decrypted due to a vulnerability in its encryption. Organizations...
SAP announced a maximum severity security flaw in SQL Anywhere Monitor (Non-GUI), tracked as CVE-2025-42890, which involves hard-coded credentials that could allow arbitrary code execution. The flaw received a CVSS score of 10 and was disclosed as part of SAP's November 2025 Security Patch Day, whic...