News

SAP has released patches to address a second vulnerability exploited in recent attacks targeting SAP NetWeaver servers as a ...
Two ransomware groups and several Chinese APTs have been exploiting two recent SAP NetWeaver vulnerabilities. At least two ransomware groups and multiple Chinese APTs have been observed targeting two ...
The critical vulnerability is being exploited by BianLian, RansomwEXX and a Chinese nation-state actor known as Chaya_004 ...
SAP released 16 new security notes on its May 2025 Security Patch Day, including for another critical NetWeaver vulnerability ...
Forescout Vedere Labs security researchers have linked ongoing attacks targeting a maximum severity vulnerability impacting ...
BianLian, RansomEXX, and others, are jumping the NetWeaver bandwagon In late April, SAP fixed a 10/10 bug in NetWeaver Visual ...
SAP fixed CVE-2025-42999, a 9.1/10 vulnerability in NetWeaver This one was chained with CVE-2025-31324, which was fixed in ...
A second wave of cyberattacks is targeting a critical vulnerability in SAP NetWeaver Visual Composer, according to researchers. Following the initial round of threat activity disclosed in April ...
Ivanti patched two flaws being chained to mount RCE attacks A "limited number" of companies were allegedly compromised Only ...
Ivanti said these users should follow best practice guidance or filtering access to the API using either the built-in Portal ACL’s functionality, or an external WAF. More details on using the ...