Close Menu

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Hollow Knight: Silksong, Hades 2, and Clair Obscur: Expedition 33 lead Indie Game Awards 2025 nominations

    In the mirror world of mobile, AI outrage is remarkably absent

    Jagex to remove Treasure Hunter from RuneScape following community vote

    Facebook X (Twitter) Instagram
    • Artificial Intelligence
    • Business Technology
    • Cryptocurrency
    • Gadgets
    • Gaming
    • Health
    • Software and Apps
    • Technology
    Facebook X (Twitter) Instagram Pinterest Vimeo
    Tech AI Verse
    • Home
    • Artificial Intelligence

      Amazon to lay off 14,000 corporate employees

      October 29, 2025

      Elon Musk launches Grokipedia as an alternative to ‘woke’ Wikipedia

      October 29, 2025

      Fears of an AI bubble are growing, but some on Wall Street aren’t worried just yet

      October 18, 2025

      The sleeper issue that could play a huge role in Virginia and New Jersey — and the midterms

      October 16, 2025

      California bill regulating top AI companies signed into law

      September 30, 2025
    • Business

      Government faces questions about why US AWS outage disrupted UK tax office and banking firms

      October 23, 2025

      Amazon’s AWS outage knocked services like Alexa, Snapchat, Fortnite, Venmo and more offline

      October 21, 2025

      SAP ECC customers bet on composable ERP to avoid upgrading

      October 18, 2025

      Revenue generated by neoclouds expected to exceed $23bn in 2025, predicts Synergy

      October 15, 2025

      You can now try Fortnite directly in Discord

      October 8, 2025
    • Crypto

      Chainlink ETF Nears Reality — But Holders Keep Selling LINK

      November 13, 2025

      Solana at a Breaking Point: $1,000 Moonshot or Crash Back to $100?

      November 13, 2025

      Bitcoin Stares At Its Next Peak From The Bottom, But One Level Blocks The View

      November 13, 2025

      UK GDP Expected to Post Modest Growth in Q3

      November 13, 2025

      Analysts Reveal The Chart That Predicts Bitcoin Better Than M2 Ever Did

      November 13, 2025
    • Technology

      Weibo’s new open source AI model VibeThinker-1.5B outperforms DeepSeek-R1 on $7,800 post-training budget

      November 13, 2025

      How Deductive AI saved DoorDash 1,000 engineering hours by automating software debugging

      November 13, 2025

      OpenAI reboots ChatGPT experience with GPT-5.1 after mixed reviews of GPT-5

      November 13, 2025

      Valve confirms that it has stopped making the Index VR headset

      November 13, 2025

      SanDisk’s Switch 2-compatible microSD Express card is cheaper than ever ahead of Black Friday

      November 13, 2025
    • Others
      • Gadgets
      • Gaming
      • Health
      • Software and Apps
    Check BMI
    Tech AI Verse
    You are at:Home»Technology»Synology fixes BeeStation zero-days demoed at Pwn2Own Ireland
    Technology

    Synology fixes BeeStation zero-days demoed at Pwn2Own Ireland

    TechAiVerseBy TechAiVerseNovember 12, 2025No Comments2 Mins Read0 Views
    Facebook Twitter Pinterest Telegram LinkedIn Tumblr Email Reddit
    Synology fixes BeeStation zero-days demoed at Pwn2Own Ireland
    Share
    Facebook Twitter LinkedIn Pinterest WhatsApp Email

    Synology fixes BeeStation zero-days demoed at Pwn2Own Ireland

    Synology has addressed a critical-severity remote code execution (RCE) vulnerability in BeeStation products that was demonstrated at the recent Pwn2Own hacking competition.

    The security issue (CVE-2025-12686) is described as a ‘buffer copy without checking the size of input’ problem, and can be exploited to allow arbitrary code execution.

    It impacts multiple versions of BeeStation OS, the software powering Synology’s network-attached storage (NAS) devices marketed as a consumer-oriented  “personal cloud.”

    There are no mitigations available, so the vendor recommends that users upgrade to the following versions, which address :

    • BeeStation OS version 1.3.2-65648 or above
    • BeeStation OS version 1.3.2-65648 or above
    • BeeStation OS version 1.3.2-65648 or above
    • BeeStation OS version 1.3.2-65648 or above

    Researchers Tek and anyfun at French cybersecurity company Synacktiv exploited the flaw in a demonstration during the Pwn2Own Ireland 2025 contest on October 21st. For their successful exploitation, the two researchers received a $40,000 reward.

    A three-day hacking competition organized by Trend Micro and the Zero Day Initiative (ZDI), Pwn2Own gives security researchers the opportunity to hack popular consumer devices using zero-day vulnerabilities.

    The most recent event held in Ireland had researchers demonstrating 73 zero-day flaws across a broad range of products and winning more than $1 million.

    Last week, another major NAS vendor, QNAP, fixed a total of seven zero-day vulnerabilities in multiple devices from the company, which white-hat hackers had shown at Pwn2Own Ireland this year.

    ZDI has a disclosure agreement with companies participating in Pwn2Own and holds off publishing the technical details of the security issues until patches are available and users have had sufficient time to apply the updates.

    More details about these flaws will be disclosed in the coming months on ZDI’s bulletin board and, in some cases, on personal blog spaces of the researchers themselves.


    Secrets Security Cheat Sheet: From Sprawl to Control

    Whether you’re cleaning up old keys or setting guardrails for AI-generated code, this guide helps your team build securely from the start.

    Get the cheat sheet and take the guesswork out of secrets management.

    Share. Facebook Twitter Pinterest LinkedIn Reddit WhatsApp Telegram Email
    Previous ArticleHackers abuse Triofox antivirus feature to deploy remote access tools
    Next Article Rhadamanthys infostealer disrupted as cybercriminals lose server access
    TechAiVerse
    • Website

    Jonathan is a tech enthusiast and the mind behind Tech AI Verse. With a passion for artificial intelligence, consumer tech, and emerging innovations, he deliver clear, insightful content to keep readers informed. From cutting-edge gadgets to AI advancements and cryptocurrency trends, Jonathan breaks down complex topics to make technology accessible to all.

    Related Posts

    Weibo’s new open source AI model VibeThinker-1.5B outperforms DeepSeek-R1 on $7,800 post-training budget

    November 13, 2025

    How Deductive AI saved DoorDash 1,000 engineering hours by automating software debugging

    November 13, 2025

    OpenAI reboots ChatGPT experience with GPT-5.1 after mixed reviews of GPT-5

    November 13, 2025
    Leave A Reply Cancel Reply

    Top Posts

    Ping, You’ve Got Whale: AI detection system alerts ships of whales in their path

    April 22, 2025380 Views

    Lumo vs. Duck AI: Which AI is Better for Your Privacy?

    July 31, 202598 Views

    6.7 Cummins Lifter Failure: What Years Are Affected (And Possible Fixes)

    April 14, 202572 Views

    Is Libby Compatible With Kobo E-Readers?

    March 31, 202555 Views
    Don't Miss
    Gaming November 13, 2025

    Hollow Knight: Silksong, Hades 2, and Clair Obscur: Expedition 33 lead Indie Game Awards 2025 nominations

    Hollow Knight: Silksong, Hades 2, and Clair Obscur: Expedition 33 lead Indie Game Awards 2025…

    In the mirror world of mobile, AI outrage is remarkably absent

    Jagex to remove Treasure Hunter from RuneScape following community vote

    Roblox rolls out next phase of IP licensing platform

    Stay In Touch
    • Facebook
    • Twitter
    • Pinterest
    • Instagram
    • YouTube
    • Vimeo

    Subscribe to Updates

    Get the latest creative news from SmartMag about art & design.

    About Us
    About Us

    Welcome to Tech AI Verse, your go-to destination for everything technology! We bring you the latest news, trends, and insights from the ever-evolving world of tech. Our coverage spans across global technology industry updates, artificial intelligence advancements, machine learning ethics, and automation innovations. Stay connected with us as we explore the limitless possibilities of technology!

    Facebook X (Twitter) Pinterest YouTube WhatsApp
    Our Picks

    Hollow Knight: Silksong, Hades 2, and Clair Obscur: Expedition 33 lead Indie Game Awards 2025 nominations

    November 13, 20250 Views

    In the mirror world of mobile, AI outrage is remarkably absent

    November 13, 20250 Views

    Jagex to remove Treasure Hunter from RuneScape following community vote

    November 13, 20250 Views
    Most Popular

    Xiaomi 15 Ultra Officially Launched in China, Malaysia launch to follow after global event

    March 12, 20250 Views

    Apple thinks people won’t use MagSafe on iPhone 16e

    March 12, 20250 Views

    French Apex Legends voice cast refuses contracts over “unacceptable” AI clause

    March 12, 20250 Views
    © 2025 TechAiVerse. Designed by Divya Tech.
    • Home
    • About Us
    • Contact Us
    • Privacy Policy
    • Terms & Conditions

    Type above and press Enter to search. Press Esc to cancel.