Offensive Sequence
banner
offseq.bsky.social
Offensive Sequence
@offseq.bsky.social
12 followers 0 following 690 posts
OffSeq is a cutting-edge European cybersecurity company helping organizations build digital resilience through tailored, proactive security solutions. #CyberSecurity https://www.offseq.com/ https://radar.offseq.com/ https://guard.offseq.com/
Posts Media Videos Starter Packs
Pinned
🚨 Radar v2 is live!
Major upgrades have landed at radar.offseq.com

🧠 New in Version 2:
1️⃣ Submit a community link — share high-signal threat analysis, incident reports.
2️⃣ Join community reviews
3️⃣ Revamped UI/UX

💥 Fresh intel awaits — jump back in and add your insights: radar.offseq.com
Threat Radar | OffSeq - Live Threat Intelligence
Real-time cyber threat intelligence radar showing the latest vulnerabilities, malware, and cyber threats affecting European countries and beyond.
radar.offseq.com
Oracle's Oct 2025 update patches 374 vulnerabilities, some CRITICAL. No exploits in the wild, but prompt patching is vital for enterprise security. Inventory & deploy now! https://radar.offseq.com/threat/oracle-releases-october-2025-patches-48725978 #OffSeq #Oracle #SecurityAlert
Ghost Robotics Vision 60 v0.27.2 has a CRITICAL flaw: remote attackers can take control via Wi-Fi/4G due to missing authentication. Segment networks & monitor traffic now! https://radar.offseq.com/threat/cve-2025-41108-cwe-287-improper-authentication-in--fef464fa #OffSeq #RoboticsSecurity #CVE202...
CRITICAL alert: Sauter modu680-AS (v0.0.0) has a path traversal flaw—attackers can upload files anywhere via importFile SOAP. No fix yet. Monitor & restrict access! https://radar.offseq.com/threat/cve-2025-41723-cwe-35path-traversal-in-sauter-modu-7719e10e #OffSeq #CVE202541723 #IoTSecurity
🚨 Oracle Financial Services Analytical Apps Infra (CRITICAL 9.8) allows unauthenticated remote takeover via HTTP (CVE-2025-53037). Restrict access and monitor for patches now! https://radar.offseq.com/threat/cve-2025-53037-easily-exploitable-vulnerability-al-768a4355 #OffSeq #Oracle #Security
CRITICAL: CVE-2025-53072 lets remote attackers fully compromise Oracle Marketing (12.2.3–12.2.14) via HTTP. Restrict access & monitor now! https://radar.offseq.com/threat/cve-2025-53072-easily-exploitable-vulnerability-al-1b560ecf #OffSeq #Oracle #SecurityAlert
CRITICAL: Oracle Identity Manager (12.2.1.4.0, 14.1.2.1.0) hit by CVE-2025-61757—unauthenticated takeover via HTTP REST APIs. Restrict network access & monitor for patches! https://radar.offseq.com/threat/cve-2025-61757-easily-exploitable-vulnerability-al-e6a75922 #OffSeq #Oracle #SecurityAlert
🚨 Oracle Marketing (12.2.3-12.2.14) hit by CRITICAL CVE-2025-62481—unauthenticated network attackers can fully compromise via HTTP. Restrict access & monitor until patches arrive. https://radar.offseq.com/threat/cve-2025-62481-easily-exploitable-vulnerability-al-b3306be9 #OffSeq #Oracle #Vulnerab...
CRITICAL Netty flaw (CVE-2025-59419): email auth bypass puts EU orgs at risk of spoofing & BEC. No active exploits—audit Netty now, reinforce DMARC/DKIM/SPF. https://radar.offseq.com/threat/casting-a-netty-for-bugs-and-catching-a-big-one-cv-7990ce9a #OffSeq #Netty #ZeroDay
CRITICAL: NetBird VPN flaw (CVE-2025-10678) leaves default admin creds exposed—remote attackers get full access. Upgrade to 0.57.0+ & check your credentials ASAP. https://radar.offseq.com/threat/cve-2025-10678-cwe-1392-use-of-default-credentials-8231ef9e #OffSeq #NetBird #Security
🚨 CRITICAL: ABB ALS-mini-s4/s8 IP (SN 2000–5166) vulnerable to unauthenticated remote access (CVE-2025-9574). Patch, segment, and restrict access immediately! https://radar.offseq.com/threat/cve-2025-9574-cwe-306-missing-authentication-for-c-2fbe3678 #OffSeq #ICS #ABB
⚠️ CVE-2025-12004: CRITICAL bug in Mediawiki Lockdown Extension (<1.42) lets attackers exploit permissions remotely—no login needed. Upgrade to v1.42+ immediately! https://radar.offseq.com/threat/cve-2025-12004-cwe-732-incorrect-permission-assign-e4ef87a4 #OffSeq #Mediawiki #SecurityAlert
CRITICAL: Better-Auth flaw allows unauthenticated API key creation—risk of total account takeover for 300k+ weekly users. Disable API key creation and monitor activity. https://radar.offseq.com/threat/better-auth-critical-account-takeover-via-unauthen-f2040d12 #OffSeq #AppSec #CVE202561928
Critical RCE bug found in 75,000+ WatchGuard devices—no patch yet. Unauthenticated attackers could gain remote access. Restrict management, monitor networks, and await vendor fixes. https://radar.offseq.com/threat/over-75000-watchguard-security-devices-vulnerable--83aaced6 #OffSeq #WatchGuard #Se...
CRITICAL: TP-Link Omada gateways vulnerable to remote OS command injection (CVE-2025-6542). Restrict management access, monitor for suspicious activity, and prep for urgent patching. https://radar.offseq.com/threat/cve-2025-6542-cwe-78-improper-neutralization-of-sp-d3ffc6ee #OffSeq #TPLink #VulnA...
TP-Link Omada gateways hit by CRITICAL CVE-2025-7850: OS command injection possible after admin login. Patch quickly, lock down admin access, use MFA! Details: https://radar.offseq.com/threat/cve-2025-7850-cwe-78-improper-neutralization-of-sp-ea7871c4 #OffSeq #Vulnerability #NetworkSecurity
⚠️ CRITICAL: Azure BLU-IC2/IC4 (≤1.19.5) vulnerable to stored XSS (CVE-2025-12001). No auth needed—patch when available, deploy WAF, and audit input validation. Details: https://radar.offseq.com/threat/cve-2025-12001-cwe-20-improper-input-validation-in-96c4a1a6 #OffSeq #Azure #XSS
🚨 CRITICAL SQL Injection in Epsilon RH v3.03.36.0121: attackers can access or alter HR data without auth. Deploy WAF, validate input, restrict DB access until patch arrives. https://radar.offseq.com/threat/cve-2025-41028-cwe-89-improper-neutralization-of-s-e49230fe #OffSeq #SQLi #CVE202541028
CRITICAL: Galaxy Vitals ESP Forum Module (≤1.3) lets auth'd users upload dangerous files & run commands. Audit upload functions, enforce validation, monitor activity now! https://radar.offseq.com/threat/cve-2025-31342-cwe-434-unrestricted-upload-of-file-4391e83b #OffSeq #CVE202531342 #security
Nixdorf Wincor PORT IO Driver stack overflow (HIGH, v1.0.0.0/1.0.0.1) — public exploit out! Patch to v3.0.0.1 now to prevent privilege escalation. https://radar.offseq.com/threat/cve-2025-5555-stack-based-buffer-overflow-in-nixdo-1a9e9be3 #OffSeq #Vulnerability #BankingSecurity
ETERNUS SF AdvancedCopy Manager (Solaris 10/11) HIGH vuln: Incorrect permissions let low-priv users grab DB creds & run admin-level OS commands. Audit server permissions ASAP. https://radar.offseq.com/threat/cve-2025-62577-incorrect-default-permissions-in-fs-7000f9c4 #OffSeq #Vulnerability #Solaris
CRITICAL: CVE-2025-11948 in Excellent Infotek DMS lets unauth'd users upload/execute files—remote code execution risk. No patch. Restrict uploads, deploy WAFs, monitor closely. https://radar.offseq.com/threat/cve-2025-11948-cwe-434-unrestricted-upload-of-file-efde2151 #OffSeq #CyberSecurity #Vuln...
Silver Fox targets Japan & Malaysia with Winos 4.0 via HoldingHands RAT—HIGH severity. Watch for persistent RAT activity in Windows environments. Prioritize EDR and strict access controls. https://radar.offseq.com/threat/silver-fox-expands-winos-40-attacks-to-japan-and-m-b27e1677 #OffSeq #ThreatI...
Experian hit with $3.2M fine for mass personal data collection. Severity: HIGH. Key risk: regulatory penalties for non-compliance. Review your data governance and privacy practices now. https://radar.offseq.com/threat/experian-fined-32-million-for-mass-collecting-pers-0cd8e478 #OffSeq #Privacy #D...
F5 breach (CRITICAL): Nation-state actor stole BIG-IP source & unpublished vulnerabilities. No known exploits yet. Monitor BIG-IP systems, segment, and patch fast once updates drop! https://radar.offseq.com/threat/f5-data-breach-what-happened-and-how-it-impacts-yo-8c427a49 #OffSeq #BIGIP #Securit...
LibreWolf on Windows ≤143.0.4-1 hit by HIGH severity installer flaw—local, complex attack could lead to privilege escalation. Upgrade to 144.0-1 ASAP. https://radar.offseq.com/threat/cve-2025-11940-uncontrolled-search-path-in-librewo-7cc9289e #OffSeq #Vulnerability #BrowserSecurity