I took 500 photos with the best Android camera phones at Grand Canyon – this model wins it for me

Between the latest flagship Android phones from Samsung, Google, and Honor, here’s how they each fared in an adventurous gauntlet.

Latest news – ​Read More

Old Attack, New Speed: Researchers Optimize Page Cache Exploits

A team of researchers from the Graz University of Technology in Austria has revived page Linux page cache attacks.

The post Old Attack, New Speed: Researchers Optimize Page Cache Exploits appeared first on SecurityWeek.

SecurityWeek – ​Read More

Spotify’s Prompted Playlists feel like a smarter way to discover music – how it works

You can describe what you want to hear, and Spotify will generate playlist ideas for you.

Latest news – ​Read More

I grabbed this inflatable solar-powered lantern on a whim – now I use it every trip

The LuminAID PackLite Nova inflatable solar camping light is built for everything, from blackouts to BBQs.

Latest news – ​Read More

Foxit, Epic Games Store, MedDreams vulnerabilities

Foxit, Epic Games Store, MedDreams vulnerabilities

Cisco Talos’ Vulnerability Discovery & Research team recently disclosed three vulnerabilities in Foxit PDF Editor, one in the Epic Games Store, and twenty-one in MedDream PACS..

The vulnerabilities mentioned in this blog post have been patched by their respective vendors, all in adherence to Cisco’s third-party vulnerability disclosure policy.    

For Snort coverage that can detect the exploitation of these vulnerabilities, download the latest rule sets from Snort.org, and our latest Vulnerability Advisories are always posted on Talos Intelligence’s website.     

Foxit privilege escalation and use-after-free vulnerabilities

Discovered by KPC of Cisco Talos.

Foxit PDF Editor is a popular PDF handling platform for editing, e-signing, and collaborating on PDF documents. Talos found three vulnerabilities:

TALOS-2025-2275 (CVE-2025-57779) is a privilege escalation vulnerability in the installation of Foxit PDF Editor via the Microsoft Store. A low-privilege user can replace files during the installation process, which may result in elevation of privileges.

TALOS-2025-2277 (CVE-2025-58085) and TALOS-2025-2278 (CVE-2025-59488)  are use-after-free vulnerabilities, one in the way Foxit Reader handles a Barcode field object, and one in the way Foxit Reader handles a Text Widget field object. A specially crafted JavaScript code inside a malicious PDF document can trigger these vulnerabilities, which can lead to memory corruption and result in arbitrary code execution. An attacker needs to trick the user into opening the malicious file to trigger these vulnerabilities. Exploitation is also possible if a user visits a specially crafted, malicious site if the browser plugin extension is enabled.

Epic Games local privilege escalation vulnerability

Discovered by KPC of Cisco Talos.

Epic Games Store is a storefront application for purchasing and accessing video games. Talos found TALOS-2025-2279 (CVE-2025-61973), a local privilege escalation vulnerability in the installation of Epic Games Store via the Microsoft Store. A low-privilege user can replace a DLL file during the installation process, which may result in elevation of privileges.

MedDream PACS reflected cross-site scripting vulnerabilities

Discovered by Marcin “Icewall” Noga of Cisco Talos.

MedDream PACS server is a medical-integration system for archiving and communicating about DICOM 3.0 compliant images. Talos found 21 reflected cross-site scripting (XSS) vulnerabilities across several functions of MedDream PACS Premium 7.3.6.870. An attacker can provide a specially crafted URL to trigger these vulnerabilities, which can lead to arbitrary JavaScript code execution. 

Cisco Talos Blog – ​Read More

AiStrike Raises $7 Million in Seed Funding

The startup’s AI-native platform unifies exposure analysis, threat intelligence, investigation, and response.

The post AiStrike Raises $7 Million in Seed Funding appeared first on SecurityWeek.

SecurityWeek – ​Read More

Jordan used Cellebrite phone-hacking tools against activists critical of Gaza war, report finds

The findings, published by Citizen Lab Thursday, are based on the research institute’s digital forensic analysis of seized phones in four cases and Jordanian court records in three cases.

The Record from Recorded Future News – ​Read More

The best stylus phones of 2026: Expert tested and reviewed

We tested the best stylus phones that add functionality, precision, and ease of use. These are our favorites.

Latest news – ​Read More

The best small-business accounting software of 2026: Expert tested

Here’s my rundown of the top small-business accounting software, including stuff nobody told you. I’ll cover QuickBooks, FreshBooks, Xero, and more.

Latest news – ​Read More

The best small business web hosting services of 2026: Expert tested and reviewed

Kickstart your business with web hosting that offers a suite of tools for growth, improving customer relationships, and creating a standout online presence.

Latest news – ​Read More