#local-privilege-escalation

[ follow ]
Information security
fromThe Hacker News
2 days ago

Urgent: China-Linked Hackers Exploit New VMware Zero-Day Since October 2024

CVE-2025-41244 enables local privilege escalation in VMware Tools and Aria Operations and has been exploited in the wild by UNC5174; patches and mitigations released.
Information security
fromSecurityWeek
2 days ago

Organizations Warned of Exploited Sudo Vulnerability

A critical Sudo local privilege escalation (CVE-2025-32463) allows any user to gain root privileges and has been exploited, requiring urgent patching.
fromTheregister
4 weeks ago

Android drops 120 flaw fixes, two exploited in the wild

Patch Tuesday is next week, but Android is ahead of the game, dropping its biggest patch bundle this year while attackers actively exploit two of the now-fixed flaws. This month, the world's most popular mobile operating system pushed out 120 patches, its biggest monthly dump this year. It's a far cry from July, when Android didn't issue a single patch as everything was apparently fine, but in September, two of the flaws may be under "limited, targeted exploitation."
Information security
[ Load more ]