A security incident disclosed that hackers exploited over 3,000 publicly available ASP.NET machine keys to execute remote code on IIS servers using ViewState code injection. This breach underscores developers’ vulnerabilities in managing machine keys, critical for web application security. Microsoft advises regular key rotation, enhanced monitoring, and using security tools to mitigate these risks and detect potential attacks.

IXON VPN Vulnerabilities Let Attackers Gain Access to Windows & Linux Systems
A security assessment by Shelltrail revealed three critical vulnerabilities in the IXON VPN client, allowing privilege escalation on Windows and Linux. Identified as CVE-2025-ZZZ-01, CVE-2025-ZZZ-02,