Abstract background with interweaving of colored lines and dots. Network connection structure. Data exchange. 3D rendering.

KRES.ID News & Insights

Latest updates on cybersecurity, compliance, threats, technologies, and insights from our experts.

Headline News

Background image of PC computer with emergency message of critical error on screen in red lights copy space
CVSS 10.0 - CRITICAL
RCE Vulnerability React Security Next.js CVE-2025-55182

⚠️ Red Alert! Celah RCE Baru di React dan Next.js (CVE-2025-55182 & CVE-2025-66478, CVSS 10.0) Bisa Menguasai Seluruh Server Anda!

Tim keamanan Wiz Research dan React Core Team mengungkap kerentanan Remote Code Execution (RCE) kritis dengan skor CVSS 10.0/10.0 pada React Server Components dan Next.js. Kerentanan ini memungkinkan attacker mengeksekusi kode arbitrary tanpa autentikasi, berpotensi menguasai server secara penuh. Patch emergency telah dirilis—upgrade segera!

3 Desember 2025
12 menit baca
UPGRADE NOW
Baca Analisis Lengkap & Mitigasi

Berita Terbaru

Businessmen with a red cybersecurity threat alert, surrounded by digital files and documents. Warning alert icon with a hacked system.
CVSS 10.0
CRITICAL

⚠️ Peringatan Merah! Celah RCE di React & Next.js (CVE-2025-55182)

Kerentanan RCE kritis dengan skor CVSS 10.0 pada React Server Components & Next.js. Patch emergency dirilis—upgrade segera untuk mencegah server compromise!

Cybersecurity best practices technology, Firewall, Cloud security protection.Endpoint security.Encryption.Incident response
Security Alert
CRITICAL

🚨 Shai-Hulud v2: Ancaman Supply Chain Modern yang Menargetkan Developer & CI/CD Pipelines

Worm self-replicating mengkompromikan 100+ paket npm dalam 48 jam. Mencuri credentials, tokens, dan menyebar otomatis via CI/CD. Analisis teknis & IOC lengkap.

hacker in a dark room with a laptop red System Warning on the screen. Concept of cyber threats and cybersecurity breach alert with binary code online internet technology.
Malware Analysis
CRITICAL

🚨 XillenStealer: Malware Python Baru Serang Pengguna Windows

Malware stealer berbasis Python menargetkan Windows untuk mencuri kredensial, crypto wallet, dan session browser via Telegram. Dilengkapi anti-analysis & anti-VM.

Big financial data theft concept. An anonymous hacker is hacking highly-protected financial data through computers.
Threat Intelligence
CRITICAL

Profil ShinyHunters: Grup Hacker Misterius yang Mengguncang Dunia Digital

Investigasi mendalam tentang ShinyHunters, threat actor paling berbahaya yang telah mencuri miliaran data pengguna dari ratusan perusahaan global termasuk Ticketmaster, AT&T, dan Salesforce.

Isolated Broken Security Shield with Open Padlock Alert
Security Advisory
CRITICAL

🚨 Alarm Merah! FortiWeb Jadi Sasaran Serangan Aktif di Seluruh Dunia

Serangan eksploitasi aktif CVE-2025-64446 pada FortiWeb WAF terdeteksi di seluruh dunia. CVSS 9.8 - Remote Code Execution tanpa autentikasi. Tindakan segera diperlukan!

Nov 2, 2019 San Francisco / CA / USA -  Exterior view of Cloudflare headquarters; Cloudflare, Inc. is an Ameircan web infrastructure and website security company
Incident Report
MAJOR

⚠️ Cloudflare Alami Gangguan Global: Jutaan Situs Terdampak

Gangguan masif Cloudflare selama 3+ jam menyebabkan 12.4M+ website tidak dapat diakses. Analisis risiko supply chain dan strategi mitigasi multi-CDN.

Laptop with hands typing amid glowing cyber attack alerts and red binary code, symbolizing hacking, data breach, and cybersecurity threats, 3d Rendering
Threat Intelligence
BREAKING

Knownsec (China) — Kebocoran Data Besar Mengungkap Senjata Siber

Kebocoran 580 GB data internal Knownsec mengungkap arsenal cyber weapons, target operasi di 47 negara, dan 73 zero-day exploits.