A critical vulnerability in FireEye’s EDR agent, tracked as CVE-2025-0618, allows attackers to inject malicious code, leading to a persistent denial of service. This flaw targets tamper protection mechanisms, making endpoints vulnerable to further attacks. FireEye’s owner, Trellix, is aware and developing a patch. Organizations must update their systems once fixes are released.

IXON VPN Vulnerabilities Let Attackers Gain Access to Windows & Linux Systems
A security assessment by Shelltrail revealed three critical vulnerabilities in the IXON VPN client, allowing privilege escalation on Windows and Linux. Identified as CVE-2025-ZZZ-01, CVE-2025-ZZZ-02,