Live
CISA Warns: Zero Trust and Firmware Fixes Urgent for 2025 ICS Attacks on Power Grids, Healthcare·MSFT +2.1%Critical Hitachi Energy Devices Exposed by OpenSSL RSA Flaw—Patch Now·NVDA +0.2%SinoTrack GPS Flaws Expose 2.3M Devices to Hijacking—Act Now·GOOGL +1.7%Critical MicroDicom DICOM Viewer Vulnerability Exposes Healthcare Data: What You Need to Know·AMZN +1.1%CISA KEV Catalog Update: Critical Vulnerabilities in Roundcube & Erlang/OTP Demand Immediate Action·MSFT +2.1%Patch now: CVE-2025-47966 flaw in Power Automate enables privilege escalation.·NVDA +0.2%Protection relays, SCADA, and IIoT at risk in June 2025 CISA ICS advisory surge.·GOOGL +1.7%Critical CyberData SIP Intercom Flaws Expose ICS Systems to Remote Attacks·AMZN +1.1%CISA Warns: Zero Trust and Firmware Fixes Urgent for 2025 ICS Attacks on Power Grids, Healthcare·MSFT +2.1%Critical Hitachi Energy Devices Exposed by OpenSSL RSA Flaw—Patch Now·NVDA +0.2%SinoTrack GPS Flaws Expose 2.3M Devices to Hijacking—Act Now·GOOGL +1.7%Critical MicroDicom DICOM Viewer Vulnerability Exposes Healthcare Data: What You Need to Know·AMZN +1.1%CISA KEV Catalog Update: Critical Vulnerabilities in Roundcube & Erlang/OTP Demand Immediate Action·MSFT +2.1%Patch now: CVE-2025-47966 flaw in Power Automate enables privilege escalation.·NVDA +0.2%Protection relays, SCADA, and IIoT at risk in June 2025 CISA ICS advisory surge.·GOOGL +1.7%Critical CyberData SIP Intercom Flaws Expose ICS Systems to Remote Attacks·AMZN +1.1%

Security Alerts

The latest Security Alerts coverage — news, analysis, and updates from the WindowsNews.AI desk.

12 stories in view AI assisted desk updated 9:26 AM
Latest Most Read Breaking
Sort
Critical Infrastructure · Cyber Threats 2025

CISA Warns: Zero Trust and Firmware Fixes Urgent for 2025 ICS Attacks on Power Grids, Healthcare

The Cybersecurity and Infrastructure Security Agency (CISA) issued four critical advisories on June 10, 2025, exposing vulnerabilities in Industrial Control Systems (ICS) that could compromise power...

Advertisement
Cisa · Critical Infrastructure

CISA KEV Catalog Update: Critical Vulnerabilities in Roundcube & Erlang/OTP Demand Immediate Action

The Cybersecurity and Infrastructure Security Agency (CISA) has added two high-severity vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog, signaling active attacks against...

SE Security Desk·59w ago
Access Control · Automation Risks

Patch now: CVE-2025-47966 flaw in Power Automate enables privilege escalation.

Microsoft Power Automate, a cornerstone of enterprise workflow automation, faces a critical security challenge with the newly disclosed CVE-2025-47966 vulnerability. This privilege escalation flaw...

SE Security Desk·59w ago
Cisa · Critical Infrastructure

Protection relays, SCADA, and IIoT at risk in June 2025 CISA ICS advisory surge.

Industrial control systems (ICS) represent the backbone of critical infrastructure across the globe, quietly orchestrating essential processes in energy, manufacturing, transportation, and utilities....

SE Security Desk·59w ago
Credential Protection · Critical Infrastructure

Critical CyberData SIP Intercom Flaws Expose ICS Systems to Remote Attacks

A series of critical vulnerabilities in the CyberData 011209 SIP Emergency Intercom has exposed industrial control systems (ICS) to remote exploitation, with attackers potentially gaining complete...

SE Security Desk·59w ago
Browser Exploits · Browser Security

CISA Flags Critical Chrome Vulnerability CVE-2025-5419: Immediate Action Required

The Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent alert, adding a high-severity Chrome vulnerability (CVE-2025-5419) to its Known Exploited Vulnerabilities (KEV)...

SE Security Desk·59w ago
Critical Infrastructure · Cyber Threats

Critical Vulnerabilities in Hitachi Energy Devices Threaten Global Power Grid Security

Hitachi Energy's Relion 670/650 series protection relays and SAM600-IO process interface units - critical components in power grid substations worldwide - contain multiple severe vulnerabilities that...

SE Security Desk·59w ago
Attack Techniques · Cyber Threats

Playcrypt Ransomware Turns to AI and Zero-Day Exploits in 2025 Surge

The Play ransomware group, known as Playcrypt, has rapidly evolved into one of the most dangerous cyber threats since its emergence in 2022. By 2025, this group has refined its tactics, leveraging...

SE Security Desk·60w ago
Browser Security · Browser Updates

CVE-2025-5419: Critical Chromium V8 Flaw Demands Immediate Browser Updates

A newly discovered vulnerability in Chromium's V8 JavaScript engine (CVE-2025-5419) has sent shockwaves through the cybersecurity community, exposing millions of users to potential remote code...

SE Security Desk·60w ago