Threat Intelligence — Live Monitoring

Zero-Day /Watch

[ REAL-TIME VULNERABILITY TRACKING & EXPLOIT INTELLIGENCE ]

Aevum News' dedicated cybersecurity desk monitors, analyzes, and reports on zero-day vulnerabilities, exploit kits, and active cyber threats before they escalate into global incidents.

📋 View All Alerts →
🔴
0
Critical Unpatched
🟠
0
Active Exploits
🟡
0
Zero-Days (2025)
🟢
0
Patches Deployed
🛡️
0
Threat Score
Active Vulnerability Alerts
ZD-2025-0847
Critical

Remote Code Execution in Microsoft Exchange Server

Unauthenticated RCE allowing full server compromise via crafted SMTP requests

CVE-2025-3891
2h ago
ZD-2025-0846
Critical

Kernel Privilege Escalation in Linux 6.x Series

Local privilege escalation via race condition in cgroup subsystem

CVE-2025-3885
4h ago
ZD-2025-0845
High

Stored XSS in WordPress Core 6.7.1

Cross-site scripting vulnerability in block editor affecting admin users

CVE-2025-3872
6h ago
ZD-2025-0844
Critical

Heap Overflow in OpenSSL 3.x TLS Handshake

Memory corruption during certificate verification enables remote exploit

CVE-2025-3860
8h ago
ZD-2025-0843
High

Auth Bypass in Fortinet FortiOS SD-WAN Module

Authentication bypass via JWT token manipulation in web management UI

CVE-2025-3851
12h ago
ZD-2025-0842
Medium

Information Disclosure in Apache Kafka Broker

Cluster metadata leakage through improperly restricted admin endpoints

CVE-2025-3839
14h ago
ZD-2025-0841
Low

CORS Misconfiguration in Firebase Functions v4

Reflected cross-origin resource sharing policy allows unauthorized access

CVE-2025-3820
16h ago
📅
Vulnerability Timeline
2025-06-12 — 08:30 UTC

Microsoft Exchange Zero-Day (CVE-2025-3891) — "SilentMail" Campaign Detected

Active exploitation observed targeting financial institutions and government agencies in North America and Western Europe. Aevum News was the first to report the campaign's attribution to a known state-sponsored APT group.

Active Exploitation Unpatched
2025-06-11 — 14:15 UTC

Linux Kernel cgroup Privilege Escalation (CVE-2025-3885)

Local privilege escalation vulnerability affecting all distributions running kernel 6.x. Exploit proof-of-concept code published on GitHub within hours of initial disclosure.

PoC Available Patch Pending
2025-06-10 — 21:00 UTC

OpenSSL TLS Handshake Heap Overflow (CVE-2025-3860)

Critical heap-based buffer overflow during TLS 1.3 certificate verification. Affects millions of servers worldwide. Emergency advisory issued by OpenSSL security team.

In-the-Wild Emergency Patch Released
2025-06-09 — 09:45 UTC

WordPress Core Stored XSS (CVE-2025-3872)

Stored cross-site scripting vulnerability in the block editor allowing persistent attacks against administrators. Affects over 40% of all websites globally.

Patched ~65% Deployed
2025-06-08 — 16:30 UTC

Fortinet FortiOS SD-WAN Auth Bypass (CVE-2025-3851)

Authentication bypass in SD-WAN module enables unauthorized access to network management. Fortinet releases emergency firmware update within 6 hours.

Patched ~82% Deployed
🔧
Vendor Response Board
Microsoft Active Threat

Exchange Server RCE (CVE-2025-3891)

Out-of-band patch expected within 72 hours. Mitigation: disable SMTP submission via port 587, restrict Exchange Admin Center access.

15% mitigated
Linux Kernel Under Review

cgroup Privilege Escalation (CVE-2025-3885)

Kernel team reviewing proposed fix. Backport to 6.x series expected in next stable release. Mitigation: disable cgroup v2 namespace.

35% mitigated
OpenSSL Patched

TLS Handshake Heap Overflow (CVE-2025-3860)

Emergency release 3.4.10 available. Update immediately if using 3.0.x through 3.4.9. Distribution patches rolling out.

78% deployed
WordPress Patched

Block Editor Stored XSS (CVE-2025-3872)

Version 6.7.2 includes fix. Auto-update enabled for majority of installations. Plugin developers advised to review input sanitization.

65% deployed
Fortinet Patched

FortiOS SD-WAN Auth Bypass (CVE-2025-3851)

FortiOS 7.4.5 and 7.2.13 contain fix. FortiGuard automatically pushed updates to enrolled deployments.

82% deployed
Apache Monitoring

Kafka Broker Info Disclosure (CVE-2025-3839)

Apache Kafka team investigating root cause. Temporary mitigation: restrict admin API to internal networks only.

20% mitigated
🔬
Threat Intelligence Reports
DK
Dr. Diana Kowalski
Lead Threat Researcher
12 min read

Anatomy of "SilentMail": Deconstructing a State-Sponsored Exploit Framework

A deep forensic analysis of the SilentMail campaign's technical infrastructure, revealing a multi-stage weaponization pipeline that has evolved over at least 18 months of active development.

APT Forensics Exchange RCE
MR
Marcus Reeves
Cybersecurity Correspondent
8 min read

The Linux Kernel Vulnerability Epidemic: Why 2025 Is the Worst Year Yet

From cgroup escapes to page cache overflows, we examine the pattern of critical kernel vulnerabilities and what it reveals about the challenges of securing modern operating systems.

Linux Kernel PrivEsc Analysis
YT
Yuki Tanaka
Cryptographic Security Analyst
15 min read

OpenSSL Under Pressure: Assessing the Supply Chain Risk in Global TLS Infrastructure

The latest OpenSSL vulnerability raises fundamental questions about concentrated risk in cryptographic libraries. We trace the blast radius across cloud providers, CDNs, and enterprise networks.

OpenSSL TLS Supply Chain Crypto
AN
Aisha Nadeem
Policy & Cyber Strategy Editor
10 min read

The Cyber Arms Race: How Nation-States Stockpile Zero-Days and When Disclosure Wins

An investigation into the economics of vulnerability disclosure, zero-day markets, and the growing movement toward coordinated disclosure that could transform how we handle critical exploits.

Policy Zero-Day Market Disclosure Strategy

Stay Ahead of the Threat

Receive real-time zero-day alerts, expert analysis, and actionable mitigation guidance delivered before mainstream coverage.