OctoPrint ≤1.11.2 Authenticated RCE via File Upload
CVE-2025-58180 is a critical remote code execution vulnerability (CVSS 7.5) in OctoPrint versions ≤ 1.11.2 (patched in 1.11.3, released September 2025)....
Found 121 relevant articles matching your search. Browse our cybersecurity insights and expert analysis below.
CVE-2025-58180 is a critical remote code execution vulnerability (CVSS 7.5) in OctoPrint versions ≤ 1.11.2 (patched in 1.11.3, released September 2025)....
Process ancestry monitoring tracks the parent-child relationships between processes (who spawned what). This is one of the most reliable ways to detect liv...
GPO (Group Policy Object) is one of the most effective, but also underused, tools for providing security to Windows networks as well as providing centraliz...
File upload vulnerabilities (CWE-434) let attackers drop webshells, small scripts that provide remote command execution, file management, and persistence o...
You can’t patch what you don’t know exists. Zero-day exploits, unknown vulnerabilities, and novel attack chains are the nightmare scenario for...
According to Cybersecurity firm Socket, a sneaky supply chain compromise on the Open VSX Registry (the open-source alternative to Microsoft's VS Code exten...
Mandiant (owned by Google) has reported seeing a troubling increase in these types of attacks - combining voice phishing (vishing) with fake login web page...
The Python Package Index (PyPI) has been found to be home to multiple malicious packages including a malicious package that impersonates the widely popular...
Our blog insights are backed by hands-on service delivery. Whether you need a penetration test, vulnerability assessment, emergency website recovery, or secure web development — our UK cybersecurity specialists are ready to help.
Emergency malware removal, backdoor elimination, blacklist delisting, and full post-incident hardening for compromised websites.
Authorised simulated attacks exposing real vulnerabilities in your web applications, networks, and infrastructure before attackers do.
Systematic identification and prioritisation of security weaknesses across your digital estate — with actionable remediation guidance.
OWASP-aligned web application development with security engineered in from architecture through to penetration-tested deployment.
Simulated, targeted adversarial attacks that test your people, processes, and technology under real-world conditions.
© 2016 – 2026 Red Secure Tech Ltd. Registered in England and Wales — Company No: 15581067