Information security
fromTheregister
4 months agoMITRE Caldera security tool gets perfect 10 in insecurity
Users of MITRE's Caldera must immediately update to the latest version to protect against a critical remote code execution vulnerability.
For the first time this year, Microsoft has released a Patch Tuesday bundle with no exploited security problems, although one has been made public. July's software flaw fix package includes 130 patches with one earning a CVSS score of over nine - CVE-2025-47981, which breaks SPNEGO security protocols with a heap-based buffer overflow that allows remote code execution. The other nine critical issues include four in Office, where four flaws allow for remote code execution.
The game is not safe to play on PC right now, there's an RCE exploit, which allows hackers the ability to plant malware capable of essentially taking control of a victim's device.