Breaking News – Cyber Threats (last 6h)
Generated: 2025-12-09 21:00 PST
- Fortinet, Ivanti, and SAP Issue Urgent Patches for Authentication and Code Execution Flaws
The Hacker News • 2025-12-09 20:50 • thehackernews.com
Fortinet, Ivanti, and SAP have moved to address critical security flaws in their products that, if successfully exploited, could result in an authentication bypass and code execution.
The Fortinet vulnerabilities affect FortiOS, FortiWeb, FortiProxy, and FortiSwitchManager and relate to a case of improper verification of a cryptographic signature. They are tracked as CVE-2025-59718 and
https://thehackernews.com/2025/12/fortinet-ivanti-and-sap-issue-urgent.html - ISC Stormcast For Wednesday, December 10th, 2025 https://isc.sans.edu/podcastdetail/9732, (Wed, Dec 10th)
SANS ISC Diary (full) • 2025-12-09 16:35 • isc.sans.edu
(c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.
https://isc.sans.edu/diary/rss/32552 - Microsoft Patch Tuesday, December 2025 Edition
KrebsOnSecurity • 2025-12-09 15:18 • krebsonsecurity.com
Microsoft today pushed updates to fix at least 56 security flaws in its Windows operating systems and supported software. This final Patch Tuesday of 2025 tackles one zero-day bug that is already being exploited, as well as two publicly disclosed vulnerabilities.
https://krebsonsecurity.com/2025/12/microsoft-patch-tuesday-december-2025-edition/
Sources: BleepingComputer, The Hacker News, KrebsOnSecurity, SANS ISC, CISA.
