Author: Jason Davies

NewsSecurity Vulnerabilities

Cisco Identity Services Engine on Cloud Platforms Static Credential Vulnerability (CVE-2025-20286)

– A critical vulnerability in Amazon Web Services (AWS), Microsoft Azure, and Oracle Cloud Infrastructure (OCI) cloud deployments of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to access sensitive data, execute limited administrative operations, modify system configurations, or disrupt services within the impacted systems.

Read More
Product Recalls

Product Recall- EBL Battery Charger C9042W (2505-0204)

– This product presents a serious risk of electric shock as it is inadequately earthed.

Read More
NewsSecurity Vulnerabilities

Sante DICOM Viewer Pro DCM File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability (CVE-2025-5481)

CVE number = CVE-2025-5481 This vulnerability allows remote attackers to execute arbitrary code on affected installations of Sante DICOM Viewer

Read More
NewsGoogleSoftware

Google Chrome to Revoke Trust in Two Certificate Authorities Citing Compliance and Conduct Concerns

– Google has announced that it will stop trusting digital certificates issued by Chunghwa Telecom and Netlock, citing “patterns of concerning behaviour observed over the past year.”

Read More
NewsSecurity Vulnerabilities

Cisco Meraki MX and Z Series Teleworker Gateway AnyConnect VPN Denial of Service Vulnerabilities

– Multiple vulnerabilities in the Cisco AnyConnect VPN server of Cisco Meraki MX and Cisco Meraki Z Series Teleworker Gateway devices could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition to the AnyConnect VPN service on an affected device.

Read More
NewsSecurity Vulnerabilities

Cisco Meraki MX and Z Series Teleworker Gateway AnyConnect VPN Session Takeover and Denial of Service Vulnerability (CVE-2024-20509)

– A vulnerability in the Cisco AnyConnect VPN server of Cisco Meraki MX and Cisco Meraki Z Series Teleworker Gateway devices could allow an unauthenticated, remote attacker to hijack an AnyConnect VPN session or cause a denial of service condition for individual users of the AnyConnect VPN service on affected device.

Read More
NewsTelecoms

Emergency video relay service for deaf British Sign Language users saving lives

– A new Ofcom study has found a video relay service that connects deaf British Sign Language (BSL) users to the emergency services is successfully saving lives.

Read More
NewsSecurity Vulnerabilities

Blackmagic Design DaVinci Resolve TCC Bypass via Dylib Substitution Vulnerability (CVE-2025-4081)

– Use of entitlement “com.apple.security.cs.disable-library-validation” and lack of launch and library load constraints allows to substitute a legitimate dylib with malicious one.

Read More
NewsSecurity Vulnerabilities

Sonos Era 300 Heap-based Buffer Overflow Remote Code Execution Vulnerability (CVE-2025-1051)

– This vulnerability allows network-adjacent attackers to execute arbitrary code on affected Sonos Era 300 speakers.

Read More
NewsTelecoms

Mobile signal boost across UK countryside now covering area larger than 66,000 football pitches

– Tourists and hikers exploring the UK’s most renowned beauty spots and national parks can now benefit from a huge boost in mobile coverage, helping them plan routes and receive live weather updates for safer outdoor adventures. 

Read More