Hertz Corp was among many companies targeted in an attack spree exploiting vulnerabilities in Cleo file-transfer software. The rented car firm discovered on 10 February that a threat actor obtained access to personal data during the breach which took place between October and December 2024. As yet, no evidence suggests the Hertz network itself was affected. Hertz reported the incident to law enforcement and said it was also notifying regulatory authorities.

IXON VPN Vulnerabilities Let Attackers Gain Access to Windows & Linux Systems
A security assessment by Shelltrail revealed three critical vulnerabilities in the IXON VPN client, allowing privilege escalation on Windows and Linux. Identified as CVE-2025-ZZZ-01, CVE-2025-ZZZ-02,