Elektrine
Log in Register
Paige Chat Timeline Gallery Friends Email Drive DNS Private DNS Domains VPN Kairo Nerve
Remote

CERT-EU

@cert_eu@infosec.exchange
mastodon 4.8.0-alpha.3+glitch
  • Open on infosec.exchange

CERT-EU, CERT for the EU institutions, bodies, and agencies.

0 Followers
0 Following
28 Posts
Joined November 19, 2022
Website:
https://cert.europa.eu
Inactive EU Voice Mastodon account:
https://social.network.europa.eu/@cert
Mandate:
https://eur-lex.europa.eu/legal-content/EN/ALL/?uri=CELEX%3A32018Q0113%2801%29
Open post
CERT-EU @cert_eu@infosec.exchange
· 1w ago
Another day, another critical vulnerability in an edge device. We’ve analysed the CVE-2026-88771, one of the many vulnerabilities disclosed by Citrix recently, based on observed exploitation attempts, and set out what we learned and key takeaways. 🔍🔒 If you’re managing Citrix infrastructure, now’s the time to check for compromise! https://www.cert.europa.eu/blog/taking-execute-logging-a-bit-too-literally-cve-2026-88771 #cybersecurity #cve-2026-88771 #vulnerability
Taking 'execute logging' a bit too literally - CVE-2026-88771
cert.europa.eu

Taking 'execute logging' a bit too literally - CVE-2026-88771

Taking 'execute logging' a bit too literally - CVE-2026-88771

4
1
8
0
Open post
CERT-EU @cert_eu@infosec.exchange
· 6mo ago

#CyberSecurity
#SupplyChain
#CERTEU

A compromised version of Trivy gave attackers access to the European Commission’s europa.eu platform hosted on AWS.

We have published our analysis – what happened, who is affected, and what to do – in full transparency and in agreement with the European Commission.

https://cert.europa.eu/blog/european-commission-cloud-breach-trivy-supply-chain

infosec.exchange

Infosec Exchange

39
0
68
0
Open post
CERT-EU @cert_eu@infosec.exchange
· 5mo ago

Critical Vulnerability in PAN-OS (CERT-EU Security Advisory 2026-006)

On 6 May 2026, Palo Alto published a security advisory addressing a critical vulnerability affecting PAN-OS. This vulnerability allows an unauthenticated attacker to execute arbitrary code with root privileges.
Palo Alto observed limited exploitation of this vulnerability. It is strongly recommended updating affected appliances as soon as patches will be available, and to apply workarounds and mitigation in the meantime.

https://www.cert.europa.eu/publications/security-advisories/2026-006/

cert.europa.eu
17
0
25
1
Open post
CERT-EU @cert_eu@infosec.exchange
· 6mo ago

In 2025, we tracked 174 threat actors and responded to nine significant incidents affecting Union entities.

Our annual Threat Landscape Report is out. Cyberespionage, supply-chain compromises, and AI-enabled social engineering are reshaping the threat landscape.

Our top recommendations: patch internet-facing systems and edge devices as a priority, and adopt end-to-end encryption for sensitive communications.

https://cert.europa.eu/blog/threat-landscape-report-2025

#CyberSecurity #ThreatIntelligence #CERTEU

cert.europa.eu
13
0
10
0
Open post
CERT-EU @cert_eu@infosec.exchange
· 7mo ago

#CERTEU
#CTI
#Framework

🚀 Today, CERT-EU is publishing https://lnkd.in/e6BhqkY5
its Cyber Threat Intelligence Framework https://lnkd.in/eGvPgHv8,
a reference we share with our constituents to classify, assess, and prioritise malicious cyber activity affecting Union entities and their ecosystem. It introduces shared CTI concepts and a clear scoring approach to support consistent reporting, alerting, and prioritisation across CERT-EU products, including Cyber Briefs and the TLR Year in Review. 🇪🇺 We are publishing it openly to increase transparency on how we structure and prioritise CTI, and to invite feedback from peers and cybersecurity professionals to further refine and strengthen it. 🦾

🤝🛡️ We welcome your feedback, suggestions, and practical observations at
services@cert.europa.eu to help us continuously improve the framework for the whole community.

LinkedIn
lnkd.in

LinkedIn

This link will take you to a page that’s not on LinkedIn

9
2
9
1
Open post
CERT-EU @cert_eu@infosec.exchange
· 6mo ago

#FICLille
#CERTEU

🎪 Greetings, fellow keyboard warriors, EU policy wonks, and caffeine-dependent sentinels of the digital realm…
Pack your bags (and your YARA rules)—CERT-EU is invading Forum In Cyber in Lille next week (31 March–2 April)! 🇪🇺⚔️🐧

We’re bringing:
✅ Free advice (yes, even for non-EU entities… sometimes)
✅ A live feed of our team pretending to be extroverted at a public fair 😅
✅ Swag so good, even nation-state actors would trade their zero-days for it
✅ Lots of stickers and goodies and the best pew-pew map you have ever seen!

Swing by if you’re in town—we’ll swap cyber stories, share some wisdom, and help you justify your paranoia.

Where to find us? At the Pavillon Europe, at the E20-3.
You will see cool people wearing the coolest, blue, CERT-EU hoodies 😉

Looking forward to seeing you there!

P.S. No, we won’t fix your home router. 😉

https://europe.forum-incyber.com/partenaires-2026/

infosec.exchange
5
0
1
0
Open post
CERT-EU @cert_eu@infosec.exchange
· 8mo ago

#CybersecurityRegulation
#AnnualReport

🚀 Exciting Developments in EU Cybersecurity! 🚀

The 2025 report from the Interinstitutional Cybersecurity Board (IICB) has just dropped, and it's already creating waves in Brussels. 📈 With Regulation (EU) 2023/2841 in its second year, Union entities have achieved significant milestones in strengthening their cybersecurity frameworks.

🔒 Key Highlights:

▪️ Establishing robust cybersecurity risk-management frameworks

▪️Assessing cybersecurity maturity levels

▪️Tailoring measures to manage cybersecurity risks

▪️Leveraging the FREIA framework contract for trusted service outsourcing

CERT-EU continues to play a critical role in defending against advanced threats, identifying over thirty malicious actors targeting Union entities. As the threat landscape becomes more complex, our collective resilience is paramount.

Don't miss out—grab a cup of your favorite beverage and dive into the IICB report to discover how these efforts are keeping our Union strong and secure for the future. 🛡️

https://www.cert.europa.eu/blog/another-year-another-blast

infosec.exchange
5
0
4
0
Open post
CERT-EU @cert_eu@infosec.exchange
· 6mo ago

#CERTEU
#Cybersecurity
#AnnualConference
#CFP

Take an active role in shaping the agenda of this year #CERTEU #AnnualConfernce, by submitting your proposal at the following link:

https://cert.europa.eu/conference/steam-n-steel-the-chronicles-of-the-cyberverse/announcement

This year’s edition, ‘Steam & Steel: The Chronicles of The Cyberverse’, blends steampunk imagery with cybersecurity practice: proven fundamentals forged together with emerging tools to build durable, community-driven resilience at a time of rising geopolitical pressure.

infosec.exchange
2
0
1
0
Open post
CERT-EU @cert_eu@infosec.exchange
· 9mo ago

Critical Vulnerability in Cisco Secure Email and Web Manager (CERT-EU Security Advisory 2025-042)

On December 17, 2025, Cisco released a security advisory for a critical vulnerability affecting Cisco Secure Email Gateway and Cisco Secure Email and Web Manager products.
It is recommended to follow Cisco's recommendations to check whether vulnerable appliances have been compromised, and to remediate the issue. There is no patch available for this vulnerability yet.

https://www.cert.europa.eu/publications/security-advisories/2025-042/

cert.europa.eu
3
0
6
0
Open post
CERT-EU @cert_eu@infosec.exchange
· 14mo ago

#CERTEU
#ENISA
#CSIRT
#vulnerability

https://cert.europa.eu/blog/sharepoint-vulnerabilities-joint-statement

infosec.exchange
5
0
5
0
Open post
CERT-EU @cert_eu@infosec.exchange
· 13mo ago

Multiple Vulnerabilities in Microsoft Products (CERT-EU Security Advisory 2025-032)

On August 13, 2025, Microsoft released its August 2025 Patch Tuesday advisory addressing 111 security flows in various products among which 16 are rated as critical.
It is recommended updating as soon as possible, prioritising public facing and critical assets.

https://www.cert.europa.eu/publications/security-advisories/2025-032/

cert.europa.eu
4
0
3
0
Open post
CERT-EU @cert_eu@infosec.exchange
· 12mo ago

UPDATE: Critical Vulnerabilities in Cisco ASA and FTD (CERT-EU Security Advisory 2025-036)

On September 25, 2025, Cisco released several security advisories addressing 3 vulnerabilities, 2 of which are critical. Cisco warns that some of those vulnerabilities are exploited in the wild and assesses with high confidence that this new activity is related to the same threat actor as the ArcaneDoor attack campaign that Cisco reported in early 2024.
It is recommended running compromise assessment on Internet facing vulnerable devices, and update as soon as possible.

https://www.cert.europa.eu/publications/security-advisories/2025-036/

cert.europa.eu
3
0
0
0
Open post
CERT-EU @cert_eu@infosec.exchange
· 14mo ago

Critical Vulnerabilities in Microsoft SharePoint (CERT-EU Security Advisory 2025-027)

On July 19, 2025, Microsoft released an out-of-bound advisory addressing two vulnerabilities, one of which being rated as critical and allowing unauthenticated remote attacker to execute arbitrary code on vulnerable systems. This critical flaw is actively being exploited in the wild since at least 18th of July 2025.
It is recommended isolating vulnerable system from the Internet, but also from internal systems, and running a compromise assessment before updating.

https://www.cert.europa.eu/publications/security-advisories/2025-027/

cert.europa.eu
4
0
2
0
Open post
CERT-EU @cert_eu@infosec.exchange
· 17mo ago

What has kept us busy in the past year? What did we, together with the IICB, achieve? But also: what are the challenges that are currently right in front of us? 🧐

Answers to these questions, and to many more you might have, can be found in the Annual Report of the IICB (Interinstitutional Cybersecurity Board). Have a read! 👇

https://www.cert.europa.eu/blog/first-year-in-the-bag-many-more-to-come

cert.europa.eu
5
0
6
0
Open post
CERT-EU @cert_eu@infosec.exchange
· 14mo ago

UPDATE: High Severity Vulnerability in Microsoft Exchange (CERT-EU Security Advisory 2025-030)

On August 6, 2025, Microsoft issued an advisory for a high-severity vulnerability affecting Microsoft Exchange hybrid environments. The vulnerability tracked as CVE-2025-53786 allows an attacker with administrative access to an on-premises Exchange Server to escalate privileges into the connected Exchange Online environment. The vulnerability can impact the confidentiality, integrity, and availability of affected systems.

https://www.cert.europa.eu/publications/security-advisories/2025-030/

cert.europa.eu
3
0
2
0
Open post
CERT-EU @cert_eu@infosec.exchange
· 14mo ago

Possible Zero-Day Vulnerability in SonicWall Products (CERT-EU Security Advisory 2025-029)

On August 4, 2025, SonicWall issued an advisory regarding a possible zero-day vulnerability in the Gen 7 SonicWall firewalls. A remote attacker could exploit this vulnerability to execute arbitrary code on the affected appliance. This vulnerability is being exploited in the wild.
It is recommended to disable SSLVPN Services as soon as possible.

https://www.cert.europa.eu/publications/security-advisories/2025-029/

Possible Zero-Day Vulnerability in SonicWall Products
cert.europa.eu

Possible Zero-Day Vulnerability in SonicWall Products

Possible Zero-Day Vulnerability in SonicWall Products

3
1
4
0
Open post
CERT-EU @cert_eu@infosec.exchange
· 12mo ago

Critical Vulnerabilities in Cisco ASA and FTD (CERT-EU Security Advisory 2025-036)

On September 25, 2025, Cisco released several security advisories addressing 3 vulnerabilities, 2 of which are critical. Cisco warns that some of those vulnerabilities are exploited in the wild and assesses with high confidence that this new activity is related to the same threat actor as the ArcaneDoor attack campaign that Cisco reported in early 2024.
It is recommended running compromise assessment on Internet facing vulnerable devices, and update as soon as possible.

https://www.cert.europa.eu/publications/security-advisories/2025-036/

cert.europa.eu
2
0
1
0
Open post
CERT-EU @cert_eu@infosec.exchange
· 12mo ago

High Vulnerability in Cisco IOS and IOS XE Software (CERT-EU Security Advisory 2025-035)

On September 24, 2025, Cisco released a security advisory regarding a high severity vulnerability in the Simple Network Management Protocol (SNMP) subsystem of Cisco IOS Software and Cisco IOS XE Software. The vulnerability is being exploited in the wild.
It is recommended updating as soon as possible and conduct a compromise assessment on devices that are exposing SNMP on the Internet. It is also recommended not allowing access to SNMP over untrusted network (i.e. on the Internet).

https://www.cert.europa.eu/publications/security-advisories/2025-035/

cert.europa.eu
2
0
1
0
Open post
CERT-EU @cert_eu@infosec.exchange
· 18mo ago

Don't miss your chance to contribute to CERT-EU's Annual Conference 2025! The Conference will take place in Brussels on 2-3 October, and our Call for Proposals for the Technical Track is still open until April 28th. Share your insights and expertise and help make "Never Gonna Breach You Up" an exceptional edition. Submit now: https://cert.europa.eu/conference/never-gonna-breach-you-up/announcement #CyberSecurity #CERTEU #Conference #CallForProposals

cert.europa.eu
4
0
4
0
Open post
CERT-EU @cert_eu@infosec.exchange
· 10mo ago

Critical Security Vulnerability in React Server Components (CERT-EU Security Advisory 2025-041)

On December 3, 2025, the React Team publicly disclosed a critical security vulnerability affecting React Server Components (RSC) and related packages. The vulnerability allows for unauthenticated remote code execution (RCE) via maliciously crafted HTTP requests.
It is recommended to update all affected component packages and any frameworks that integrate them.

https://www.cert.europa.eu/publications/security-advisories/2025-041/

cert.europa.eu
1
0
2
0
Open post
CERT-EU @cert_eu@infosec.exchange
· 14mo ago

Multiple Vulnerabilities in Fortinet Products (CERT-EU Security Advisory 2025-031)

On August 12, 2025, Fortinet released security advisories addressing several vulnerabilities, including a critical one exploited in the wild, and two high severity ones.
It is recommended updating as soon as possible.

https://www.cert.europa.eu/publications/security-advisories/2025-031/

cert.europa.eu
1
0
4
0
Open post
CERT-EU @cert_eu@infosec.exchange
· 14mo ago

High Severity Vulnerability in Microsoft Exchange (CERT-EU Security Advisory 2025-030)

On August 6, 2025, Microsoft issued an advisory for a high-severity vulnerability affecting Microsoft Exchange hybrid environments. The vulnerability tracked as CVE-2025-53786 allows an attacker with administrative access to an on-premises Exchange Server to escalate privileges into the connected Exchange Online environment. The vulnerability can impact the confidentiality, integrity, and availability of affected systems.

https://www.cert.europa.eu/publications/security-advisories/2025-030/

cert.europa.eu
1
0
1
0
Open post
CERT-EU @cert_eu@infosec.exchange
· 18mo ago

Only 2 weeks left to submit your talk for the Technical Track at CERT-EU's Annual Conference. Send your proposal by 28 April and take part in our Flagship Event, this year’s theme Never Gonna Breach You Up.

Follow the link

https://www.cert.europa.eu/conference/never-gonna-breach-you-up/announcement

to submit your participation and help make "Never Gonna Breach You Up" an exceptional edition.

#CyberSecurity, #CERTEU, #Conference, #CallForProposals

cert.europa.eu
1
0
6
0
Open post
CERT-EU @cert_eu@infosec.exchange
· 18mo ago

Critical Vulnerability in Ivanti Products (CERT-EU Security Advisory 2025-016)

On April 4, 2025, Ivanti released a security advisory regarding a critical vulnerability affecting their products. The vulnerability is known to be exploited in the wild. The vulnerability has been fixed in the February 2025 release and was initially identified as a product bug.
CERT-EU recommends upgrading to a supported and fixed version of Ivanti products as soon as possible. CERT-EU also recommends reviewing forensic evidence to detect any signs of exploitation.

https://www.cert.europa.eu/publications/security-advisories/2025-016/

cert.europa.eu
1
0
2
0
Open post
CERT-EU @cert_eu@infosec.exchange
· 18mo ago

Critical Vulnerability in Apache Tomcat (CERT-EU Security Advisory 2025-014)

On March 10, 2025, Apache released a security advisory regarding a critical vulnerability affecting the Apache Tomcat product.
It is recommended updating the affected assets to a fixed version of Apache Tomcat.

https://www.cert.europa.eu/publications/security-advisories/2025-014/

cert.europa.eu
1
0
0
0
Open post
CERT-EU @cert_eu@infosec.exchange
· 18mo ago

Critical vulnerability in CrushFTP (CERT-EU Security Advisory 2025-015)

In April 2025, information about an easy-to-exploit critical vulnerability affecting CrushFTP was made public. It is recommended updating affected server as soon as possible.
Proof of concepts are available, and the vulnerability is being exploited in the wild.

https://www.cert.europa.eu/publications/security-advisories/2025-015/

cert.europa.eu
0
0
0
0
Open post
CERT-EU @cert_eu@infosec.exchange
· 2mo ago
Critical Vulnerability in Microsoft SharePoint (CERT-EU Security Advisory 2026-009) On 14 July 2026, Microsoft released a security update addressing a critical Remote Code Execution (RCE) in Microsoft SharePoint Server. On 20 July 2026, WatchTowr identified a proof-of-concept exploit code, and later, successful exploitation attempts. CERT-EU strongly recommend to update affected servers and to rotate credentials on any assets that may have been vulnerable and exposed on the internet. https://www.cert.europa.eu/publications/security-advisories/2026-009/
cert.europa.eu
0
0
0
0
Open post
CERT-EU @cert_eu@infosec.exchange
· 2mo ago
UPDATE: Critical Vulnerabilities in Microsoft SharePoint (CERT-EU Security Advisory 2026-009) [UPDATED] On 14 July 2026, Microsoft released security updates addressing critical remote code execution (RCE) vulnerabilities in Microsoft SharePoint Server. On 20 July 2026, WatchTowr identified a proof-of-concept exploit code and subsequently observed active exploitation of CVE-2026-50522, a vulnerability part of an ongoing series of actively exploited flaws affecting on-premise SharePoint Server instances, including CVE-2026-32201, CVE-2026-45659, CVE-2026-56164, and CVE-2026-58644. CERT-EU strongly recommends updating affected servers immediately, rotating credentials for any assets that may have been exposed to the internet, and conducting a compromise assessment. https://www.cert.europa.eu/publications/security-advisories/2026-009/
cert.europa.eu
0
0
0
0
Back
313k7r1n3
Elektrine

Tor hidden service

elekhj7afj4qnrr4yd3bkzslsyo5jgfxw3orgjkhlcxifueodybyiiad.onion

I2P eepsite

j6b6cyk6gjmepjih7jjadxgxvvf3lzzujljuu2v4biemzpg3naya.b32.i2p

Platform

  • Email
  • Chat
  • Timeline
  • VPN
  • DNS

Company

  • About
  • Contact
  • FAQ
  • Lite (no JS)

Legal

  • Terms of Service
  • Privacy Policy
  • Transparency Report
  • Report Abuse
  • Warrant Canary
  • VPN Policy

Support

  • support@elektrine.com
  • Report Security Issue
Mail client setup IMAP mail.elektrine.com:993 POP3 mail.elektrine.com:995 SMTP mail.elektrine.com:465
© 2026 Elektrine. All rights reserved. Server: 05:38:58 UTC