⚠️ Hackers Can Attack Active Directory Sites to Escalate Privileges and Domain Compromise | Read more: https://t.co/t7hMsRrqH6
Active Directory sites are designed to optimize network performance across geographically separated organizations by managing replication and authentication across multiple locations.
The vulnerability emerges because Active Directory sites can be linked to Group Policy Objects (GPOs), which control system configurations across an organization.
When attackers gain write permissions to sites or their associated GPOs, they can inject malicious configurations that compromise all computers connected to those sites, including domain controllers.
#cybersecuritynews #windows
⚠️ CISA Warns of Samsung Mobile Devices 0-Day RCE Vulnerability Exploited in Attacks
Read more: https://t.co/tIXmuvjiEX
CISA has added a critical zero-day vulnerability affecting Samsung mobile devices to its Known Exploited Vulnerabilities catalog. Warning that threat actors are actively exploiting the flaw in real-world attacks.
The vulnerability, tracked as CVE-2025-21042, is an out-of-bounds write vulnerability in the libimagecodec.quram[.]so library on Samsung mobile devices.
This security flaw allows remote attackers to execute arbitrary code on vulnerable devices without user interaction, making it particularly dangerous and prone to widespread exploitation.
#cybersecuritynews