IBM has released security updates to address several vulnerabilities affecting IBM WebSphere Application Server and WebSphere Liberty. The disclosed issues could allow attackers to disrupt application availability, manipulate HTTP traffic, or exploit weaknesses in affected deployments under specific conditions. Because IBM WebSphere is commonly deployed to support critical business services, organizations should assess their installations, identify affected systems, and implement the latest security patches to reduce the risk of compromise. The vulnerabilities impact supported versions of WebSphere Application Server 8.5 and 9.0, as well as WebSphere Liberty installations using vulnerable Servlet and WebSocket components. Some flaws can be triggered through specially crafted HTTP requests that consume excessive server resources, leading to denial-of-service conditions. Others involve improper handling of HTTP requests, creating opportunities for HTTP request smuggling attacks that may bypass security controls, interfere with reverse proxies, or affect communication between web servers and backend applications. While successful exploitation depends on the deployment configuration, internet-facing systems are considered to be at greater risk if left unpatched. Organizations should promptly install the latest IBM security fixes and upgrade to supported product versions containing the necessary patches. Restricting direct access to WebSphere administrative interfaces, monitoring server logs for abnormal HTTP activity, deploying web application firewalls, and maintaining a structured vulnerability management program can significantly reduce the likelihood of exploitation. Regular security assessments and timely patch management remain essential for protecting enterprise middleware environments from emerging threats.
Researchers H0j3n and Aniq Fakhrul disclosed a proof-of-concept exploit named Certighost for CVE-2026-54121, an Active Directory Certificate Services (AD CS) vulnerability patched ...
At the core of an advanced malvertising attack scheme known as FakeAgent, SectopRAT was utilized by the cybercriminals in exploiting Anthropic’s Claude platform for the distribut...
Researchers at Group-IB have uncovered a previously undocumented cyber espionage campaign, tracked as JadeProx, targeting government, healthcare, and education organizations across...