LIVE · cybersecurity feed
Live wire
vendor

Crun

2 CVEs published in the last four months and 1 stories. Exploited flaws first.

Critical0
High0
Medium2
Exploited (KEV)0

All recent CVEs

CVECVSSSeverityProductSummaryPublished
CVE-2019-255696.2mediumrealtermRealTerm Serial Terminal 2.0.0.70 contains a stack-based buffer overflow vulnerability in the Echo Port field that168d ago
CVE-2019-255705.5mediumrealtermRealTerm Serial Terminal 2.0.0.70 contains a denial of service vulnerability that allows local attackers to crash 168d ago

Filter the full tracker by Crun

Our coverage of Crun

malwarehigh

CaptiveCrunch: Midnight Blizzard targets travelers worldwide for malware delivery and credential theft

A sophisticated threat actor known as Storm-2945, a sub-cluster of Midnight Blizzard, is targeting travelers worldwide through captive portal networks. The group manipulates network traffic to deliver malware, including a Go-based RAT called CornFlake, and conducts phishing attacks to steal credentials and register devices with Microsoft Entra ID. This campaign, dubbed CaptiveCrunch, leverages AI and mimics legitimate system updates to trick victims into downloading malicious software.