A critical vulnerability (CVE-2025-20298, CVSS 8.0) in Splunk Universal Forwarder for Windows allows unauthorized access to installation directories due to incorrect permission assignments during installation or upgrades. Affected versions include those below 9.4.2, 9.3.4, 9.2.6, and 9.1.9. Immediate upgrades or specific mitigation commands are recommended to prevent potential data breaches.

Hacker Exploits Claude AI to Automate Cyberattacks on 17 Companies – WebProNews
Hacker Exploits Claude AI to Automate Cyberattacks on 17 Companies WebProNews