logo

Information Security Managed

  • SIT Appliance
  • SIT Xternal
  • SIT Professional Services
  • icon
    • About SIT CyberSecurity
    • Some of Our Customers
    • Information Security Management
logo
Dec 2025 01 Categories: Uncategorized
Entry Thumbnail

CVE-2025-61260 — OpenAI Codex CLI: Command Injection via Project-Local Configuration

By: Isabel Mill & Oded Vanunu OpenAI Codex CLI is OpenAI’s command-line tool that brings AI model-backed reasoning into developer workflows. It can read, edit, and run code directly from the terminal, making it possible to interact with projects using natural language commands, automate tasks, and streamline day-to-day development One […]

Posted by Anders Jensen
0
Dec 2025 01 Categories: Uncategorized
Entry Thumbnail

Socomec DIRIS Digiware M-70 Modbus RTU over TCP factory reset denial of service vulnerability

This website is using a security service to protect itself from online attacks. The action you just performed triggered the security solution. There are several actions that could trigger this block including submitting a certain word or phrase, a SQL command or malformed data. You can email the site owner […]

Posted by Anders Jensen
0
Dec 2025 01 Categories: Uncategorized
Entry Thumbnail

Socomec DIRIS Digiware M-70 WEBVIEW-M cross-site request forgery (CSRF) vulnerability

This website is using a security service to protect itself from online attacks. The action you just performed triggered the security solution. There are several actions that could trigger this block including submitting a certain word or phrase, a SQL command or malformed data. You can email the site owner […]

Posted by Anders Jensen
0
Dec 2025 01 Categories: Uncategorized
Entry Thumbnail

Socomec DIRIS Digiware M-70 Modbus TCP reboot denial of service vulnerability

This website is using a security service to protect itself from online attacks. The action you just performed triggered the security solution. There are several actions that could trigger this block including submitting a certain word or phrase, a SQL command or malformed data. You can email the site owner […]

Posted by Anders Jensen
0
Nov 2025 27 Categories: Uncategorized
Entry Thumbnail

What to Do When Creating Your CodeQL Database Fails – and How to Report the Perfect Reproducer Using cvise

# What to Do When Creating Your CodeQL Database Fails – and How to Report the Perfect Reproducer Using cvise Recently, a colleague was trying to create a CodeQL database for a specific version of the monad project to perform some security analysis. Everything seemed to work fine during the […]

Posted by Anders Jensen
0
Nov 2025 26 Categories: Uncategorized
Entry Thumbnail

Breaking the BeeStation: Inside Our Pwn2Own 2025 Exploit Journey

# Breaking the BeeStation: Inside Our Pwn2Own 2025 Exploit Journey This article documents our successful exploitation at Pwn2Own Ireland 2025 against the BeeStation Plus. We walk through the full vulnerability research process, including attack surface enumeration, code auditing, exploit development, and ultimately obtaining a root shell on the target. Looking […]

Posted by Anders Jensen
0
Nov 2025 26 Categories: Uncategorized
Entry Thumbnail

Dell ControlVault, Lasso, GL.iNet vulnerabilities

This website is using a security service to protect itself from online attacks. The action you just performed triggered the security solution. There are several actions that could trigger this block including submitting a certain word or phrase, a SQL command or malformed data. You can email the site owner […]

Posted by Anders Jensen
0
Nov 2025 25 Categories: Uncategorized
Entry Thumbnail

Antigravity Grounded! Security Vulnerabilities in Google’s Latest IDE

# Antigravity Grounded! Security Vulnerabilities in Google’s Latest IDE Last week Google released an IDE called Antigravity. It’s basically the outcome of the Windsurf licensing deal from a few months ago, where Google paid some $2.4 billion for a non-exclusive license to the code. Because it’s based on Windsurf, I […]

Posted by Anders Jensen
0
Nov 2025 25 Categories: Uncategorized
Entry Thumbnail

Stop Putting Your Passwords Into Random Websites (Yes, Seriously, You Are The Problem)

# Stop Putting Your Passwords Into Random Websites (Yes, Seriously, You Are The Problem) Welcome to watchTowr vs the Internet, part 68. That feeling you’re experiencing? Dread. You should be used to it by now. As is fast becoming an unofficial and, apparently, frowned upon tradition – we identified incredible […]

Posted by Anders Jensen
0
Nov 2025 23 Categories: Uncategorized
Entry Thumbnail

GL-Inet GL-AXT1800 OTA Update firmware downgrade vulnerability

This website is using a security service to protect itself from online attacks. The action you just performed triggered the security solution. There are several actions that could trigger this block including submitting a certain word or phrase, a SQL command or malformed data. You can email the site owner […]

Posted by Anders Jensen
0
← Newer posts 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 Older posts →

Recent posts

  • Post Title
  • How to scan for vulnerabilities with GitHub Security Lab’s open source AI-powered framework
  • The MCP AuthN/Z Nightmare
  • Interplay between Iranian Targeting of IP Cameras and Physical Warfare in the Middle East
  • Silver Dragon Targets Organizations in Southeast Asia and Europe
  • Home
  • About us
  • Blog
  • Customers
  • Information Security Management
  • News
  • Privacy Policy
  • SIT Appliance
  • SIT Professional Services
  • SIT Xternal

SIT Solutions

SIT Appliance

SIT Xternal

SIT Professional Services

More Information

About Us

Customers

Information Security Management

Emailsales @ sit-cybersecurity.com

SIT CyberSecurity LinkedIn

Privacy Policy

  • icon icon Facebook
  • icon icon Youtube
  • icon icon Twitter
  • icon icon Flickr
  • icon icon Rss

When you visit this site, cookies will be placed on your machine for tracking visitor activity anonymously and remembering user preferences. We set a cookie to remember that you don't want to see this infobar that warns you about cookies on this site. If you click the button to enable this, you will not see this infobar on future visits* and you will opt in to having a cookie placed on your machine by us. This site makes use of some third party services who also store cookies (Third party cookies) on your machine.

These services are:
– Google Analytics
– Google AdSense

If you would like more general information on controlling cookies, please visit www.aboutcookies.org.

*Note: cookies are browser-specific. If you visit using a different browser or on another machine, you may see the infobar again.

Enable