tgindex
Meshkatnet

هر روز با مطالب جدید آموزنده همراه ما باشید @meshkatnet ✅جهت اطلاع از قیمت روز تجهیزات شبکه با ما تماس بگیرید. ✉️: ceo@meshkatnet.ir گروه پرسش و پاسخ سوالات شبکه و امنیت https://t.me/joinchat/PxP8i8_KN1u7iWGS مدیر گروه @Seyedhossein2000

Последний пост
8 авг.
Последнее чтение
15 авг.
Постов за неделю
0
Всего постов
20
Тип
открытый
Язык
персидский
Категория
Образование (по похожим)
В каталоге с
13 авг.
Подписчики
641
−1 за 3 дн.
Сутки
0
0,00%
Неделя
 
Месяц
 
Просмотров на пост
365
20 постов
Вовлечённость
56,9%
к подписчикам
Постов в день
0,0
всего 20
Упоминаний
0
каналов
Охват размещения
оценка
1/24сутки в ленте
105
1/48двое суток
120
1/72трое суток
129

Оценка по просмотрам недавних постов: пост набирает почти всё за первые сутки.

Посты

  • ♦️Linux Forensic Artifacts #security ✉️ ceo@meshkatnet.ir 🌍 www.meshkatnet.ir 🆔 @meshkatnet

  • ⭕️ آسیب پذیری Unauthenticated File Upload RCE یک آسیب‌پذیری بحرانی در کامپوننت RSFiles! (com_rsfiles) برای Joomla با شناسه CVE-2026-57827 منتشر شده است. این نقص از نوع Unauthenticated File Upload بوده و به مهاجم اجازه می‌دهد بدون نیاز به احراز هویت , فایل دلخواه خود را روی سرور آپلود کند. ریشه آسیب‌پذیری، Split-Controller Upload Bypass است که منجر به دور زدن کنترل‌های امنیتی فرآیند آپلود شده و در نهایت امکان نوشتن مستقیم فایل روی سرور را فراهم می‌کند. در صورت اجرای فایل‌های PHP در مسیر مقصد، این ضعف می‌تواند به Remote Code Execution منجر شود. این آسیب‌پذیری با CWE-434 (بارگذاری فایل بدون محدودیت) و CVSS 9.8 (Critical) شناخته شده و نسخه‌های com_rsfiles < 1.17.12 را تحت تأثیر قرار می‌دهد. Exploit #News #joomla #RCE @meshkatnet

  • ⭕️ هشدار | بهره‌برداری فعال از آسیب‌پذیری 0day در Cisco FMC مهاجمان در حال سوءاستفاده از آسیب‌پذیری Zero-Day با شناسه CVE-2026-20316 در Cisco Firepower Management Center (FMC) هستند. این آسیب‌پذیری به مهاجمان از راه دور و بدون نیاز به احراز هویت اجازه می‌دهد با استفاده از اعتبارنامه‌های ثابت (Static Credentials) به یک حساب کاربری با سطح دسترسی پایین وارد شده و به اطلاعات حساس سیستم دسترسی پیدا کنند. شرکت Cisco هشدار داده است که این آسیب‌پذیری می‌تواند در کنار سایر ضعف‌های امنیتی موجود در FMC زنجیره شده و در نهایت به Privilege Escalation منجر شود. جزئیات بیشتر: https://thehackernews.com/2026/07/cisco-fmc-zero-day-actively-exploited.html #Cisco #FMC #PrivilegeEscalation @meshkatnet ✉️ ceo@meshkatnet.ir 🌍 www.meshkatnet.ir 🆔 @meshkatnet

  • ⭕️ آسیب‌پذیری جدید و پرخطر در 7-Zip امکان اجرای کد مخرب را فراهم می‌کند. یک آسیب‌پذیری تازه با شناسه CVE-2026-14266 در نرم‌افزار 7-Zip افشا شده است که می‌تواند به هکرها اجازه دهد با فریب کاربر برای باز کردن یک فایل XZ دستکاری‌شده، کد دلخواه خود را روی سیستم اجرا کنند. این نقص امنیتی از نوع Heap Overflow در ماژول پردازش فایل‌های XZ است و شدت آن بالا (High Severity) ارزیابی شده است. در صورت موفقیت حمله، کد مخرب با همان سطح دسترسی که 7-Zip در حال اجرا است اجرا خواهد شد. بنابراین اگر برنامه با دسترسی‌های بالا اجرا شده باشد، مهاجم نیز همان سطح از دسترسی را به دست خواهد آورد. #7zip #heap #news @meshkatnet ✉️ ceo@meshkatnet.ir 🌍 www.meshkatnet.ir 🆔 @meshkatnet

  • ⭕️ در جریان یک پروژه تحقیقاتی روی آسیب‌پذیری‌های 0day در SharePoint، تیم Rapid7 Labs دو آسیب‌پذیری جدید را کشف کرد که با chain آن‌ها می‌توان روی یک سرور آسیب‌پذیر، RCE به دست آورد. امروز Rapid7 و Microsoft نخستین آسیب‌پذیری این زنجیره را با شناسه CVE-2026-55040 منتشر کردند. این نقص، امکان دور زدن احراز هویت مبتنی بر توکن JWT در Microsoft SharePoint را فراهم می‌کند. https://www.rapid7.com/blog/post/ve-cve-2026-55040-microsoft-sharepoint-jwt-token-authentication-bypass-fixed/⁠ #JWT #Sharepoint #Rapid7 @meshkatnet ✉️ ceo@meshkatnet.ir 🌍 www.meshkatnet.ir 🆔 @meshkatnet

  • ⭕️ ‏CVE-2026-47291 یک باگ بحرانی در درایور HTTP.sys ویندوز است که به مهاجم اجازه اجرای کد از راه دور در سطح کرنل را می‌دهد. مشکل اصلی در تابع UlpParseHeader() است: وقتی سرور هدرهای HTTP زیادی (حدود ۶۵ هزار خط) را در قالب پکت‌های TLS جداگانه دریافت می‌کند، یک متغیر ۱۶-بیتی که اندازه بافر را مدیریت می‌کند سرریز (overflow) شده و به اعداد کوچک برمی‌گردد. نتیجه این است که درایور حافظه کمتری از آنچه نیاز است اختصاص می‌دهد (مثلاً ۸ کیلوبایت به‌جای ۵۲۴ کیلوبایت) و بعد داده‌های بیشتر را در همان فضای کوچک می‌نویسد که منجر به خراب شدن حافظه کرنل می‌شود. اکثر سرورها به‌طور پیش‌فرض امن هستند، چون تنظیمات ویندوز حداکثر اندازه درخواست HTTP را روی ۱۶ کیلوبایت محدود کرده که جلوی trigger شدن این باگ را می‌گیرد. فقط سرورهایی که این محدودیت (MaxRequestBytes) را به بالای ۲۶۰ کیلوبایت افزایش داده‌اند در خطر واقعی هستند. نصب آپدیت امنیتی June 2026 از مایکروسوفت، چک کردن تنظیم MaxRequestBytes و پایین نگه‌داشتنش، محدود کردن تعداد هدرها در لایه reverse proxy (مثلاً nginx)، و نظارت روی ترافیک‌های TLS مشکوک (اتصالات طولانی با پترن غیرعادی). #RedTeam #VulnerabilityResearch @meshkatnet ✉️ ceo@meshkatnet.ir 🌍 www.meshkatnet.ir 🆔 @meshkatnet

  • ⭕️ ‏آسیب‌پذیری Onelogon که توسط تیم RUB-SoftSec در مقاله USENIX WOOT’26 مستند شده، یک نقص امنیتی ناشی از پیاده‌سازی ناقص پچ Zerologon است؛ مایکروسافت برای حفظ سازگاری با سیستم‌های قدیمی، سازوکار استثنای VulnerableChannelAllowList را در پروتکل Netlogon اضافه کرد که همین لیست به مهاجم اجازه می‌دهد با حمله Meet-in-the-Middle و بدون نیاز به credential معتبر، کنترل کامل Domain Controller و کل دامنه را به دست آورد. برخلاف Zerologon که همه DC های بدون پچ را تهدید می‌کرد، Onelogon تنها حساب‌های موجود در این لیست را هدف می‌گیرد، بنابراین توصیه می‌شود تنظیمات GPO و کلید رجیستری مربوطه فوراً بررسی و حساب‌های غیرضروری از لیست حذف شوند. GitHub #RedTeam #AD #OnLogon @meshkatnet ✉️ ceo@meshkatnet.ir 🌍 www.meshkatnet.ir 🆔 @meshkatnet

  • 🎥 فکر می‌کنی مانیتورت واقعاً روی 60Hz یا 120Hz کار می‌کنه؟ 🌀 خیلی از کاربرا بعد از خرید مانیتورهای 120Hz، 144Hz یا حتی 165Hz متوجه میشن که ویندوز هنوز روی 60Hz تنظیم شده و از تمام توان نمایشگر استفاده نمی‌کنن! 🌐 سایت TestUFO بهت نشون میده نرخ نوسازی واقعی نمایشگرت چقدره، فریم‌دراپ داری یا نه، Motion Blur چطوره و آیا تنظیمات نمایشگر درست انجام شده یا نه. 🔗 testufo.com ✅ اگه عدد نمایش داده شده با مشخصات مانیتورت یکی نبود: Settings → Display → Advanced Display و گزینه Refresh Rate رو بررسی و روی بالاترین مقدار پشتیبانی‌شده تنظیم کن. 💡 یادت نره برای نرخ‌های نوسازی بالا، استفاده از کابل مناسب (HDMI یا DisplayPort) هم مهمه. #ترفند 🆔 @meshkatnet ✉️ ceo@meshkatnet.ir 🌍 www.meshkatnet.ir 🆔 @meshkatnet

  • یک ایده ساده برای سیم ها در شبکه با این روش می توانید سیم ها و کابل های نامنظم را به صورت زیبا و منظم در کنار یکدیگر آرایش دهید و از کار خود لذت ببرید . 🆔 @meshkatnet ✉️ ceo@meshkatnet.ir 🌍 www.meshkatnet.ir 🆔 @meshkatnet

  • ⭕️ اکستنشن APIReaper برای ساده‌تر کردن تست API داخل Burp Suite طراحی شده است. با این ابزار می‌تونید Swagger یا Postman Collection رو لود کنید، endpointها رو به‌صورت دسته‌بندی‌شده ببینید و بدون نیاز به وارد کردن دستی، درخواست‌ها رو مستقیم به Repeater بفرستید. همچنین امکان تنظیم Base URL و Authorization توکن‌های مختلف هم به‌صورت یکجا روی همه درخواست‌ها وجود داره. مناسب برای Pentester و Bug Hunter ها. لینک پروژه: https://github.com/rjsoheil/APIReaper #API #Burp #Web ✉️ ceo@meshkatnet.ir 🌍 www.meshkatnet.ir 🆔 @meshkatnet

  • ⭕️ در تحلیل آسیب‌پذیری بحرانی CVE-2026-20182 در پشته شبکه Cisco Catalyst SD-WAN، یک نقص منطقی (Logic Bug) قابل توجه در تابع vbond_proc_challenge_ack شناسایی شد . این حفره امنیتی در لایه DTLS (پورت ۱۲۳۶) و سرویس vdaemon واقع شده است؛ جایی که برخلاف سایر تجهیزات مانند vSmart یا vEdge، برای دستگاه‌های نوع ۲ یعنی vHub، هیچ مکانیزم راستی‌آزمایی (Verification) تعریف نشده است. به محض دریافت پیام CHALLENGE_ACK با هویت جعلی، فلگ peer->authenticated بدون هیچ‌گونه بررسی گواهی یا امضای سخت‌افزاری روی True تنظیم می‌شود،به واسطه این نقص در فرآیند احراز هویت، مهاجم می‌تواند از طریق پیام نوع ۱۴، کلید خود را مستقیماً به فایل authorized_keys کاربر سطح بالای vmanage-admin تزریق کرده و دسترسی دائمی برای اجرای دستورات NETCONF روی پورت ۸۳۰ به دست آورد . با توجه به اینکه هیچ راهکار موقتی (Workaround) برای این نقص وجود ندارد، ارتقای فوری به نسخه‌های اصلاح‌شده جهت جلوگیری از نفوذ کامل به زیرساخت توصیه می‌شود . ✉️ ceo@meshkatnet.ir 🌍 www.meshkatnet.ir 🆔 @meshkatnet

  • Security Update – Microsoft October 2025 Patch Tuesday Vulnerabilities: Multiple Critical and Zero-Day Vulnerabilities Across Microsoft Products CVEs: CVE-2025-0033 – AMD Restricted Memory Page Corruption (Zero-Day / Critical) CVE-2025-24052 – Agere Modem Driver Elevation of Privilege (Zero-Day) CVE-2025-24990 – Agere Modem Driver Elevation of Privilege (Zero-Day) CVE-2025-2884 – TPM 2.0 Out-of-Bounds Read (Zero-Day) CVE-2025-47827 – IGEL OS Secure Boot Bypass (Zero-Day) CVE-2025-59230 – Windows Remote Access Connection Manager Elevation of Privilege (Zero-Day) CVE-2025-59218 – Azure Entra ID Elevation of Privilege (Critical) CVE-2025-59246 – Azure Entra ID Elevation of Privilege (Critical) CVE-2025-55321 – Azure Monitor Log Analytics Spoofing (Critical) CVE-2025-59247 – Azure PlayFab Elevation of Privilege (Critical) CVE-2025-59291 – Confidential Azure Container Instances Elevation of Privilege (Critical) CVE-2025-59292 – Azure Compute Gallery Elevation of Privilege (Critical) CVE-2025-59236 – Microsoft Office Excel Remote Code Execution (Critical) Severity: Critical / Actively Exploited (CVSS up to 9.x) Summary: Microsoft has released its October 2025 Patch Tuesday updates, addressing 172 vulnerabilities, including 6 actively exploited zero-days and 8 critical issues. Exploitation of these vulnerabilities could result in elevation of privilege, remote code execution, spoofing, information disclosure, or secure boot bypass. Affected components include Windows OS, Azure services (Entra ID, PlayFab, Monitor, Container Instances, Compute Gallery), Microsoft Office, TPM 2.0, and AMD firmware. Attackers may exploit these flaws locally or remotely to gain administrative privileges, execute arbitrary code, or bypass platform security controls. Affected Products: Windows 10 / 11, Windows Server 2016–2025. Microsoft Office (Excel). Azure Entra ID, PlayFab, Monitor (Log Analytics), Compute Gallery, Container Instances. AMD SEV-SNP firmware and TPM 2.0 components. IGEL OS Secure Boot configurations. Not Affected: Systems fully updated with October 2025 patches. Azure instances running latest image versions. Devices with Secure Boot and TPM firmware already updated. Indicators of Compromise: Privilege escalation or unexpected admin logins. Unsigned modules loaded during Secure Boot. Abnormal TPM log entries or integrity check failures. Excel crash or execution anomalies from untrusted files. Suspicious Azure authentication events or spoofed identities. Workaround: No universal workaround. Disable or restrict vulnerable services (e.g., external RDP, legacy modem drivers, or untrusted Excel macros) until patches are applied. Mitigation / Recommendations: Apply Microsoft’s October 2025 security updates immediately. Prioritize zero-day and critical CVEs listed above. Use Microsoft Endpoint Manager, WSUS, or Windows Update to deploy patches. Restrict administrative and remote access to trusted users and networks. Monitor event logs for suspicious activity related to Secure Boot, TPM, or privilege escalation. References: 🔗 Microsoft Security Update Guide: https://msrc.microsoft.com/update-guide #Microsoft #PatchTuesday #ZeroDay #Windows #Azure #TPM #SecurityUpdate #CyberSecurity @meshkatnet ✉️ ceo@meshkatnet.ir 🌍 www.meshkatnet.ir 🆔 @meshkatnet

  • Security Update – Cisco Secure Firewall ASA & FTD VPN Web Server Vulnerability: Remote Code Execution – VPN Web Server Input Validation Flaw CVE: CVE-2025-20333 Severity: 9.9 (Critical) Summary: A critical remote code execution (RCE) vulnerability exists in the VPN web server of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software. The issue stems from improper validation of user-supplied input in HTTP(S) requests. An attacker with valid VPN user credentials could exploit this flaw to execute arbitrary code as root, potentially leading to complete device compromise. Affected Products: Cisco Secure Firewall ASA Software (with AnyConnect, MUS, or SSL VPN features enabled) Cisco Secure Firewall FTD Software (with AnyConnect or SSL VPN features enabled) Not Affected: Cisco Secure FMC Software Cisco ASA/FTD devices without vulnerable VPN configurations enabled Indicators of Compromise: Unexpected process crashes or instability in VPN services Unusual activity or anomalies in VPN authentication and web service logs Signs of arbitrary code execution on Cisco ASA/FTD devices Workaround: No known workaround is available. Mitigation / Recommendations: Immediately upgrade to Cisco’s fixed software releases as outlined in the advisory. Review and harden VPN configurations (IKEv2, SSL VPN, MUS). Monitor VPN service logs for suspicious login attempts or crafted HTTP(S) requests. Enable Cisco Threat Detection for VPN Services to protect against brute force and service abuse attempts. References: 🔗 Cisco Security Advisory – CVE-2025-20333 🔗 Cisco Event Response: Continued Attacks Against Cisco Firewall Platforms #Cisco #Firewall #VPN #RCE #Security #Vulnerability @meshkatnet ✉️ ceo@meshkatnet.ir 🌍 www.meshkatnet.ir 🆔 @meshkatnet

  • Security Update – Microsoft Windows Vulnerability: Heap-based Buffer Overflow – SPNEGO Extended Negotiation CVE: CVE-2025-47981 Severity: 9.8 (Critical) Summary: A heap-based buffer overflow vulnerability exists in the SPNEGO Extended Negotiation component of Microsoft Windows. An unauthenticated attacker can exploit this issue remotely over the network to execute arbitrary code. Successful exploitation could lead to full system compromise. Affected Products: Windows Server 2022 (ᐸ 10.0.20348.3932) Windows Server 2022, 23H2 Edition (Server Core) (ᐸ 10.0.25398.1732) Windows Server 2025 (ᐸ 10.0.26100.4652) Windows Server 2025 (Server Core) (ᐸ 10.0.26100.4652) Windows Server 2019 (ᐸ 10.0.17763.7558) Windows Server 2019 (Server Core) (ᐸ 10.0.17763.7558) Windows Server 2016 (ᐸ 10.0.14393.8246) Windows Server 2016 (Server Core) (ᐸ 10.0.14393.8246) Windows Server 2012 (ᐸ 6.2.9200.25573) Windows Server 2012 (Server Core) (ᐸ 6.2.9200.25573) Windows Server 2012 R2 (ᐸ 6.3.9600.22676) Windows Server 2012 R2 (Server Core) (ᐸ 6.3.9600.22676) Windows Server 2008 R2 SP1 (ᐸ 6.1.7601.27820) Windows Server 2008 R2 SP1 (Server Core) (ᐸ 6.1.7601.27820) Windows 11 24H2 (ᐸ 10.0.26100.4652) Windows 11 23H2 (ᐸ 10.0.22631.5624) Windows 11 22H3 (ᐸ 10.0.22631.5624) Windows 11 22H2 (ᐸ 10.0.22621.5624) Windows 10 22H2 (ᐸ 10.0.19045.6093) Windows 10 21H2 (ᐸ 10.0.19044.6093) Windows 10 1809 (ᐸ 10.0.17763.7558) Windows 10 1607 (ᐸ 10.0.14393.8246) Windows 10 1507 (ᐸ 10.0.10240.21073) Not Affected: None reported Indicators of Compromise: Exploitation may result in unexpected crashes of authentication-related services. Potential anomalous Kerberos/SPNEGO negotiation failures observed in system logs. Workaround: No official workaround currently documented. Mitigation / Recommendations: Apply Microsoft’s security updates immediately. Limit network exposure of vulnerable services to trusted systems until patched. Monitor Windows Event Logs for abnormal authentication or negotiation errors. References: 🔗 Microsoft Advisory – CVE-2025-47981 🔗 NVD Entry – CVE-2025-47981 🔗 Vicarius Detection Script 🔗 Vicarius Mitigation Script #Microsoft #Windows #SPNEGO #BufferOverflow #Security @meshkatnet ✉️ ceo@meshkatnet.ir 🌍 www.meshkatnet.ir 🆔 @meshkatnet

  • Security Update – Cisco IOS and IOS XE Software Vulnerabilities: Multiple High-Severity Vulnerabilities in Cisco IOS and IOS XE CVEs: CVE-2025-20312 – SNMP Denial of Service (DoS) CVE-2025-20352 – SNMP DoS and Remote Code Execution (RCE) CVE-2025-20313 / CVE-2025-20314 – Secure Boot Bypass CVE-2025-20315 – NBAR Denial of Service CVE-2025-20334 – HTTP API Command Injection CVE-2025-20160 – TACACS+ Authentication Bypass CVE-2025-20327 – Industrial Ethernet Switch Device Manager DoS CVE-2025-20311 – Catalyst 9000 Series Switches DoS Severity: High (CVSS up to 9.x) Summary: Cisco has disclosed multiple critical and high-severity vulnerabilities affecting IOS and IOS XE software across a wide range of platforms, including Catalyst 9000 switches and Industrial Ethernet devices. Exploitation of these vulnerabilities could result in denial-of-service conditions, remote code execution, authentication bypass, secure boot bypass, and command injection, depending on the specific CVE. Attackers may exploit these flaws remotely through crafted SNMP, HTTP API, or TACACS+ requests, or via malicious traffic targeting NBAR. Successful exploitation could compromise availability, integrity, or control of affected Cisco infrastructure. Affected Products: Cisco devices running affected versions of IOS or IOS XE. Catalyst 9000 Series switches (CVE-2025-20311). Industrial Ethernet switches with Device Manager enabled (CVE-2025-20327). Any deployments with SNMP, TACACS+, HTTP API, NBAR, or secure boot features enabled on vulnerable releases. Not Affected: Devices upgraded to Cisco’s fixed releases. Devices with vulnerable features disabled (e.g., SNMP disabled, HTTP API disabled). Indicators of Compromise: Service crashes or repeated restarts (SNMP, NBAR, or HTTP services). Unexpected authentication success via TACACS+. Abnormal boot integrity failures or unsigned modules loading (secure boot bypass). Catalyst 9000 instability, forwarding issues, or control-plane crashes. Suspicious HTTP or SNMP request patterns in management logs. Workaround: No universal workaround. In some cases, disabling or restricting vulnerable services (e.g., SNMP, HTTP API, TACACS+, Device Manager) may reduce risk temporarily. Mitigation / Recommendations: Apply Cisco’s official fixed software releases immediately. Use Cisco’s Software Checker tool to identify impacted devices and recommended fixes. Restrict management plane access (SNMP, TACACS+, HTTP API) to trusted sources. Monitor system logs and network traffic for abnormal patterns related to SNMP, HTTP API, TACACS+, or NBAR. Enforce least privilege on administrative accounts and ensure physical security of devices. References: 🔗 Cisco Security Advisories #Cisco #IOS #IOSXE #Catalyst9000 #SNMP #TACACS #DoS #RCE #Security @meshkatnet ✉️ ceo@meshkatnet.ir 🌍 www.meshkatnet.ir 🆔 @meshkatnet

  • Security Update – Microsoft Monthly Security Update (Patch Tuesday) Vulnerability: Multiple Critical & High Severity Vulnerabilities Across Microsoft Products CVE: Multiple (see Microsoft Security Update Guide) Severity: Critical / High Summary: Microsoft has released its monthly Patch Tuesday security updates, addressing multiple vulnerabilities across a wide range of products including Windows, Office, Azure, .NET, and Microsoft Defender. Some of these vulnerabilities are rated Critical, including remote code execution (RCE) and elevation of privilege (EoP) flaws. Exploitation could allow attackers to execute arbitrary code, escalate privileges, or bypass security controls in enterprise environments. Affected Products: Windows (all supported versions) Microsoft Office Suite Microsoft Edge (Chromium-based) Azure services & components .NET Framework / .NET Core Microsoft Defender and other security products Not Affected: Products not listed in the Microsoft Security Update Guide for this release. Indicators of Compromise: Suspicious privilege escalations on Windows endpoints Unexpected crashes or anomalous process executions Exploitation attempts detected via Microsoft Defender or SIEM alerts Workaround: No universal workaround. Microsoft strongly advises applying official patches. Mitigation / Recommendations: Apply Microsoft’s latest security updates immediately via Windows Update or WSUS. Review the Microsoft Security Update Guide for detailed CVE information. Monitor SIEM and Defender logs for suspicious activity. Prioritize patching Critical and actively exploited vulnerabilities. References: 🔗 Microsoft Security Update Guide #Microsoft #PatchTuesday #Windows #Office #Azure #SecurityUpdate @meshkatnet ✉️ ceo@meshkatnet.ir 🌍 www.meshkatnet.ir 🆔 @meshkatnet

  • قابل توجه همکاران محترم Security Update – QNAP VioStor Vulnerability: Improper Authentication CVE: CVE-2025-52856 (EUVD-2025-26252) Severity: 9.3 (Critical) Summary: An improper authentication vulnerability affects QNAP VioStor. A remote attacker could exploit this flaw to compromise system security and potentially gain unauthorized access. The issue has been addressed in recent updates, and patched versions are now available. Affected Versions: VioStor 5.1.0 ᐸ 5.1.6 build 20250621 Mitigation / Recommendations: Upgrade immediately to VioStor 5.1.6 build 20250621 or later. Restrict remote access to administrative interfaces. Monitor system logs for suspicious activity. References: 🔗 QNAP Advisory QSA-25-29 #Critical #QNAP #VioStor #Security @meshkatnet ✉️ ceo@meshkatnet.ir 🌍 www.meshkatnet.ir 🆔 @meshkatnet

  • هشدار سایبری!!! با توجه به اتفاقات و شرایط حال حاضر، مرکز مدیریت راهبردی افتا طی اعلامیه ای به تمامی دستگاه های اجرایی، سازمان ها و مراکز زیرساختی، نسبت به احتمال وقوع حملات سایبری اعلام هشدار نموده است. از این رو مقتضی است مدیران شبکه ها نسبت به رعایت الزامات امنیتی نهایت توجه و دقت را داشته باشند. با احترام ✉️ ceo@meshkatnet.ir 🌍 www.meshkatnet.ir 🆔 @meshkatnet

  • تمامی تولز‌هایی که برای EMC Unity نیاز دارید نسخه ۲۰۲۵ ارسالی از استاد عزیزم مهندس هاشمی ✉️ ceo@meshkatnet.ir 🌍 www.meshkatnet.ir 🆔 @meshkatnet

  • 🚨 Critical Fortinet 0-Day Exploited in Attacks! Hackers are hitting FortiVoice systems in the wild—logging creds, wiping crash logs, scanning networks. CVE-2025-32756 (CVSS 9.6) affects: —FortiVoice, FortiMail, FortiNDR —FortiRecorder, FortiCamera Exploitable without login via crafted HTTP requests. 🔗 Details: https://thehackernews.com/2025/05/fortinet-patches-cve-2025-32756-zero.html @meshkatnet ✉️ ceo@meshkatnet.ir 🌍 www.meshkatnet.ir 🆔 @meshkatnet