August 8, 2025 at 06:45PM

■□□□□ The CVE Scoring Trap — Why “Critical” Doesn’t Always Mean Critical A recent analysis shows CVSS ratings often exaggerate real risk: 📊 33,000+ CVEs in 2024 — only ~12% of “critical” ones truly critical in practice. 🔍 Review of 140 major CVEs → 88% of “Critical” & 57% of “High” labels misleading. ⚠️ Example:…

August 7, 2025 at 11:50PM

■■■■■ 🔍 Google says the group behind last year’s Snowflake attack slurped data from one of its Salesforce instances. ShinyHunters suspected in rash of intrusions. https://www.theregister.com/2025/08/06/google_salesforce_attacks/

August 6, 2025 at 12:02PM

■■□□□ UAE 🇦🇪 Cyber-Crime: Apparent account takeover on a financial site results in 20K AED burn on the victim. https://gulfnews.com/living-in-uae/banking/buy-now-pay-later-bnpl-fraud-causes-dh20000-loss-for-uae-resident-1.500222951

August 6, 2025 at 11:26AM

■■■■□ Critical Android System Component Vulnerability Allows Remote Code Execution Without User Interaction. Critical Android System Component Vulnerability Allows Remote Code Execution Without User Interaction