Skip to content

Privilege Escalation

Farmers Insurance Data Breach: Over 1.1 Million Customers Affected in Sophisticated Cloud Attack

Another high-profile cyberattack has shaken the insurance sector. Farmers Insurance, a major U.S. insurer, reported a significant data breach on August 25, 2025, stemming from an attack that occurred earlier this year, on May 29. The breach has impacted the sensitive personal data of approximately 1.1 million customers. >>Outpace Attackers With AI-Based Automated Penetration Testing… Read More »Farmers Insurance Data Breach: Over 1.1 Million Customers Affected in Sophisticated Cloud Attack

Weekly Report: New Hacking Techniques and Critical CVEs 19 Aug – 25 Aug, 2025

The week of August 19–25, 2025, witnessed a surge in high-severity exploits and advanced persistent threat campaigns targeting critical enterprise infrastructure. Notable developments include the active exploitation of CVE-2025-8088 in WinRAR, deployment of DripDropper malware via Apache ActiveMQ vulnerabilities, and the global Warlock ransomware campaign leveraging SharePoint vulnerabilities. Concurrently, Arch Linux endured an ongoing DDoS… Read More »Weekly Report: New Hacking Techniques and Critical CVEs 19 Aug – 25 Aug, 2025

CVE-2025-43712: JHipster Platform Privilege Escalation Vulnerability Discovered by FireCompass Research, Added to NIST

Product Name: JHipster Platform Vulnerability: Privilege Escalation via Response Manipulation Vulnerable Versions: Up to 8.9.0 CVE: CVE-2025-43712 Discovered by: Hritik Godara, FireCompass Research Team Researchers from the FireCompass Security Team discovered a privilege escalation vulnerability in the JHipster Platform (up to v8.9.0). The issue was identified in how the application processes authentication responses—specifically, improper server-side validation of user roles… Read More »CVE-2025-43712: JHipster Platform Privilege Escalation Vulnerability Discovered by FireCompass Research, Added to NIST