Cybersecurity firm Bitdefender has noted a rise in attacks against the PHP security flaw CVE-2024-4577 which allows the execution of arbitrary code. Threat actors are employing cryptocurrency miners and quatrine RATs. Most attacks have occurred in Taiwan, Hong Kong and Brazil. The firm recommended that users update their PHP installations and limit the use of tools like PowerShell to administrator-level users.

IXON VPN Vulnerabilities Let Attackers Gain Access to Windows & Linux Systems
A security assessment by Shelltrail revealed three critical vulnerabilities in the IXON VPN client, allowing privilege escalation on Windows and Linux. Identified as CVE-2025-ZZZ-01, CVE-2025-ZZZ-02,