Cyber Security

Articles on SystemTek’s website that relate to cyber security.

NewsSecurity Vulnerabilities

evernote-mcp-server openBrowser Command Injection Privilege Escalation Vulnerability (CVE-2025-12489)

– This vulnerability allows local attackers to escalate privileges on affected installations of evernote-mcp-server.

Read More
Artificial Intelligence (AI)News

Center for Frontier AI Security (CFAS) Launches to Operationalize AI in National Security

– NVIDIA, Google, OpenAI, and AWS join more than 40 leaders from government, industry, and academia at the Center for Frontier AI Security launch to advance policy into action in AI for national security.

Read More
NewsSecurity Vulnerabilities

Krita TGA File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability (CVE-2025-59820)

– This vulnerability allows remote attackers to execute arbitrary code on affected installations of Krita.

Read More
NewsSecurity Vulnerabilities

Oracle VirtualBox VMSVGA Out-Of-Bounds Read Information Disclosure Vulnerability (CVE-2025-62591)

– This vulnerability allows local attackers to disclose sensitive information on affected installations of Oracle VirtualBox.

Read More
NewsSecurity Vulnerabilities

Oracle VirtualBox Virtio-net Uninitialized Memory Information Disclosure Vulnerability (CVE-2025-61759)

– This vulnerability allows local attackers to disclose sensitive information on affected installations of Oracle VirtualBox.

Read More
Cyber SecurityNews

UK leads global fight to stop ransomware attacks on supply chains

– Critical businesses and services will be better safeguarded from costly cyber-attacks under new international guidance issued by the UK and Singapore.

Read More
NewsSecurity Vulnerabilities

Critical Vulnerabilities in Veeam Backup

– On October 14th 2025, Veeam released a security advisory addressing multiple vulnerabilities including 2 critical in its Veeam Backup product.

Read More
Cyber SecurityNews

Capita fined £14m for data breach affecting over 6m people

– The ICO in the UK have issued a fine of £14m to Capita for failing to ensure the security of personal data related to a breach in 2023 that saw hackers steal millions of people’s information.

Read More
NewsSecurity Vulnerabilities

Multiple Cisco Products Snort 3 MIME Denial of Service Vulnerabilities (CVE-2025-20359 and CVE-2025-20360)

– Multiple Cisco products are affected by vulnerabilities in the HTTP Multipurpose Internet Mail Extensions (MIME) Decoder that could allow an unauthenticated, remote attacker to cause the Snort 3 Detection Engine to leak possible sensitive information or to restart.

Read More
NewsSecurity Vulnerabilities

Cisco TelePresence Collaboration Endpoint and RoomOS Software Information Disclosure Vulnerability (CVE-2025-20329)

– A vulnerability in the logging component of Cisco TelePresence Collaboration Endpoint (CE) and Cisco RoomOS Software could allow an authenticated, remote attacker to view sensitive information in clear text on an affected system. To exploit this vulnerability, the attacker must have valid administrative credentials.

Read More