Alexander Leonov Profile
Alexander Leonov

@leonov_av

Followers
1K
Following
472
Media
745
Statuses
2K

Vulnerability assessment, *nix security, compliance management, security automation

Joined September 2011
Don't wanna be here? Send us removal request.
@leonov_av
Alexander Leonov
6 days
Statistics on 2024 trending vulnerabilities were featured in the OIC-CERT annual report. 🎉 I’m glad my work contributed to promoting #PTESC and #PositiveTechnologies among national CERTs and key decision-makers! 😉 #TrendVulns #OIC #OICCERT.➡️
Tweet media one
0
0
0
@leonov_av
Alexander Leonov
11 days
August #Microsoft Patch Tuesday. A total of 132 vulnerabilities, 20 fewer than in July. Three are actively exploited, including two related to the trending #SharePoint "ToolShell" flaw, exploited since July 17. #Vulristics #PatchTuesday #Windows.➡️
Tweet media one
0
0
0
@leonov_av
Alexander Leonov
12 days
July "In the Trend of VM" (# 18): vulnerabilities in Microsoft Windows and SharePoint. Two vulnerabilities this month. #TrendVulns #PositiveTechnologies #Microsoft #Windows #SharePoint #EyeSecurity #ToolShell #wuauserv #StorageSense.➡️
Tweet media one
0
0
1
@leonov_av
Alexander Leonov
18 days
About the Elevation of Privilege in Windows Update Service (CVE-2025-48799) from July’s Microsoft Patch Tuesday. Researcher @filip_dragovic (Wh04m1001) published an exploit on July 8, the same day as the MSPT. #Microsoft #Windows #wuauserv #StorageSense.➡️
Tweet media one
0
0
0
@leonov_av
Alexander Leonov
20 days
🆕 #Qualys has introduced #AgenticAI. Cyber Risk Agents not only detect issues and provide analytics, but also autonomously identify critical risks, prioritize them, and launch targeted remediation workflows. ➡️
Tweet media one
0
0
0
@leonov_av
Alexander Leonov
24 days
July Linux Patch Wednesday: 470 vulns, 291 in the Kernel. One is exploited in the wild, 36 (❗️) have public or suspected exploits. #LinuxPatchWednesday #Vulristics #Linux #Sudo #jQuery #Chromium #CISAKEV #Redis #pgAdmin #Git #PHP #LuaJIT.➡️
Tweet media one
0
0
1
@leonov_av
Alexander Leonov
1 month
🚨 CVE-2025-53770 ("ToolShell") - a critical RCE flaw in Microsoft SharePoint - is being actively exploited; public PoC released July 21. Patch immediately. #Microsoft #SharePoint #ToolShell #EyeSecurity .➡️
Tweet media one
0
0
0
@leonov_av
Alexander Leonov
1 month
July "In the Trend of VM" (# 17): vulnerabilities in Microsoft Windows and Roundcube. A traditional monthly roundup. This time, only three trending vulnerabilities. 🙂 #TrendVulns #PositiveTechnologies #URLfile #SMB #Microsoft #Windows #Roundcube .➡️
Tweet media one
0
0
0
@leonov_av
Alexander Leonov
1 month
🚨 CVE-2025-33053: RCE via .url files exploited in the wild since March by Stealth Falcon; Check Point dropped details on Patch Tuesday; exploits released on GitHub. #URLfile #CheckPoint #Microsoft #Windows #StealthFalcon #WebDAV.➡️
Tweet media one
0
0
0
@leonov_av
Alexander Leonov
1 month
RCE in Roundcube (CVE-2025-49113): 10 years in the code, public exploit since June 5, real attacks confirmed. Patch now! #Roundcube #FearsOff.➡️
Tweet media one
0
1
1
@leonov_av
Alexander Leonov
1 month
July Microsoft Patch Tuesday: 152 vulnerabilities — double June's count, including 15 added between the June and July MSPT. One exploited in the wild; one with a GitHub exploit. #Vulristics #PatchTuesday #Microsoft #Windows.➡️
Tweet media one
0
0
0
@leonov_av
Alexander Leonov
1 month
CVE-2025-33073: Win SMB Client EoP vuln (SYSTEM via connection to malicious SMB server) - patch now, enforce SMB signing, public exploits out, not yet seen in the wild. #Microsoft #Windows #SMB #NTLMreflection #Kerberos #Synacktiv #RedTeamPentesting.➡️
Tweet media one
0
0
0
@leonov_av
Alexander Leonov
2 months
June Linux Patch Wednesday: 598 vulnerabilities, including 355 in the Linux Kernel. Exploited in the wild: 3 (CISA KEV). Public exploits available for 40 (❗️) vulnerabilities. #LinuxPatchWednesday #Vulristics #Linux #Roundcube #libblockdev #Chromium.➡️
Tweet media one
0
0
0
@leonov_av
Alexander Leonov
2 months
I added support for ALT Linux OVAL content in Linux Patch Wednesday. Now I track when specific CVEs were fixed in ALT Linux packages and take that into account when generating the monthly bulletins. #ALTLinux #LinuxPatchWednesday #OVAL.➡️
Tweet media one
0
0
0
@leonov_av
Alexander Leonov
3 months
June Microsoft Patch Tuesday. A total of 81 vulnerabilities. Among them, 15 vulnerabilities were added between the May and June MSPT. There are 3 vulnerabilities with signs of exploitation in the wild. #Vulristics #PatchTuesday #Microsoft #Windows.➡️
Tweet media one
0
0
0
@leonov_av
Alexander Leonov
3 months
About Elevation of Privilege - Microsoft DWM Core Library (CVE-2025-30400) vulnerability. There is currently one GitHub repository with a PoC, but its functionality is highly questionable. 🤔 #DWM #Microsoft #Windows .➡️
Tweet media one
0
0
0
@leonov_av
Alexander Leonov
3 months
About Elevation of Privilege - Windows CLFS Driver (CVE-2025-32701, CVE-2025-32706) vulnerabilities. No public exploits or exploitation details yet. 🤷‍♂️ But these vulns are likely being used in ransomware attacks. #Microsoft #Windows #CLFS.➡️
Tweet media one
0
0
0
@leonov_av
Alexander Leonov
3 months
Cross Site Scripting - Zimbra Collaboration (CVE-2024-27443) vulnerability. ESET discovered attacks in 2024 but only disclosed this on May 15, 2025. #Zimbra #ESET.➡️
Tweet media one
0
0
0
@leonov_av
Alexander Leonov
3 months
MDaemon patched CVE-2024-11182 (reported by ESET) in version 24.5.1 (Nov 14, 2024). Yet ESET only disclosed on May 15, 2025, that the vulnerability had been exploited in the wild from the start. 🤷‍♂️ #MDaemon #ESET .➡️
Tweet media one
0
0
0
@leonov_av
Alexander Leonov
3 months
Vulnerabilities of Western logistics. Patches, exploits, and signs of in-the-wild exploitation have been available for years for these vulnerabilities. 🤦‍♂️🤷‍♂️ #FiveEyes #Outlook #Cybercube #WinRAR .➡️
Tweet media one
0
0
0