Microsoft has acknowledged a critical zero-day vulnerability (CVE-2025-33053) in its WebDAV implementation, actively exploited in the wild. This remote code execution flaw affects all supported Windows versions and requires user interaction to exploit. Patches for this vulnerability were included in June 2025’s Patch Tuesday, along with 65 other vulnerabilities. Immediate patching is recommended due to its wide reach and serious risk.

GitHub hit by a sophisticated malware campaign as ‘Banana Squad’ mimics popular repos
The repository names are identical to other repositories, indicating typo-squatting. These repositories also contain search keywords and emojis, signifying potential AI use. ReversingLabs warns developers