The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added vulnerabilities in Roundcube Webmail and the Erlang/OTP SSH server to its Known Exploited Vulnerabilities catalog. Concurrently, Microsoft released patches addressing 67 security flaws, including a zero-day vulnerability in the WEBDAV protocol (CVE-2025-33053) actively exploited by the Stealth Falcon advanced persistent threat (APT) group. This vulnerability allows remote code execution and has been used in cyberespionage campaigns targeting the Middle East, particularly by Emirati hackers deploying malware via phishing URLs. Security researchers have also highlighted the escalation of threat levels due to publicly available proof-of-concept code for the Roundcube vulnerability. Additionally, Gartner forecasts that secure enterprise browser adoption will reach 25% by 2028, emphasizing the growing focus on cybersecurity defenses in enterprise environments.
Microsoft Patches 67 Vulnerabilities Including WEBDAV Zero-Day Exploited in the Wild: https://t.co/Yg1CLMzDFI by The Hacker News #infosec #cybersecurity #technology #news
Two Microsoft Zero Days for Admins to Fix in June Patch Tuesday https://t.co/EN2Ceb059y
Cyberespionnage en cours sur Windows : Microsoft corrige une faille exploitée par des pirates émiratis ➡️ https://t.co/lmW9JsdvNU https://t.co/wedEmgOlYF