Apache warns of 10.0-rated flaw in Tika metadata ingestion tool
ID: 0fcffb83-c957-548b-bb40-4407f647fae8
STIX ID: report--0fcffb83-c957-548b-bb40-4407f647fae8
Feed Name: The Register (Security)
Date Published: 2025-12-08
Date Updated: 2026-04-26
Author: Brandon Vigliarolo and Simon Sharwood
Infosec in Brief summarizes several active security concerns: a critical 10.0-rated Apache Tika vulnerability (CVE-2025-66516) that affects widely used parsing components and may have supply-chain impact; large-scale DDoS activity (15–16 Tbps) observed from the Americas prompting OVH to expand mitigation capacity; continued operation and adaptation of the Predator spyware vendor Intellexa, linked to multiple zero-day discoveries; and a DOJ seizure of a fake cryptocurrency investment site used in pig-butchering scams.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
