Aggregator
CVE-2025-53835 | XWiki xwiki-rendering up to 14.9 XHTML Syntax HTML injection (GHSA-w3wh-g4m9-783p)
CVE-2025-6265 | Zyxel NWA50AX PRO up to 7.10(ACGE.2) Configuration File file_upload-cgi path traversal
CVE-2025-53836 | XWiki xwiki-rendering up to 13.10.10/14.4.6/14.9 authorization (GHSA-32mf-57h2-64x9)
CVE-2025-53891 | TimeLineOfficial Time-Line up to 1.0.4 unrestricted upload (GHSA-rvxq-q975-8vv2)
CVE-2025-53825 | dokploy up to 0.24.2 Environment Variable authorization (GHSA-h67g-mpq5-6ph5)
CVE-2025-53822 | LabRedesCefetRJ WeGIA up to 3.4.4 relatorio_geracao.php tipo_relatorio cross site scripting (GHSA-f5xr-4g63-pc9r)
CVE-2025-53824 | LabRedesCefetRJ WeGIA up to 3.4.3 editar_permissoes.php msg_c cross site scripting (GHSA-86r7-gc8h-63gh)
CVE-2025-53833 | saleem-hadad larecipe up to 2.8.0 special elements used in a template engine (GHSA-jv7x-xhv2-p5v2)
CVE-2025-53821 | LabRedesCefetRJ WeGIA up to 3.4.4 control.php nextPage redirect (GHSA-f5c2-jmm6-v2c5)
CVE-2025-53823 | LabRedesCefetRJ WeGIA up to 3.4.4 processa_deletar_socio.php id_socio sql injection (GHSA-p8xr-qg3c-6ww2)
CVE-2025-53890 | pyload 0.5.0b3.dev88 CAPTCHA code injection (GHSA-8w3f-4r8f-pf53)
Inorganic DNA: How nanoparticles could be the future of anti-counterfeiting tech
For decades, manufacturers and security professionals have been playing a high-stakes game of cat and mouse with counterfeiters. From holograms and QR codes to RFID tags and serial numbers, the industry’s toolkit has evolved, but so have the threats. Now, Italian startup Particular Materials is taking a radically different approach: tagging physical goods at the molecular level using engineered nanomaterials. “Our idea was simple,” says Francesco Zanin, CEO of Particular Materials. “What if we could … More →
The post Inorganic DNA: How nanoparticles could be the future of anti-counterfeiting tech appeared first on Help Net Security.
Scattered Spider黑客组织将攻击目标转移到航空和运输公司
NimDoor加密盗窃macOS恶意软件被删除后会自动恢复
Critical RCE Vulnerability Found in Symantec Endpoint Management Platform
Security researchers at LRQA have uncovered a critical remote code execution (RCE) vulnerability in Broadcom’s Symantec Endpoint Management Suite, formerly known as Altiris, that could allow unauthenticated attackers to execute arbitrary code on vulnerable systems. The flaw, assigned CVE-2025-5333, affects multiple versions of the widely used enterprise endpoint management platform and has been rated with […]
The post Critical RCE Vulnerability Found in Symantec Endpoint Management Platform appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
DNS Cloudflare упал — и показал, насколько мы все зависим от одного IP
俄军向乌军机器人投降!无人机与机器人如何改写战争法则,讨论我面临的无人作战的安全挑战
在审讯过程中快速分裂一个人的 12 种方法
CISA Flags Remote Linking Protocol Flaws Allowing Attackers to Hijack Train Brake Systems
The Cybersecurity and Infrastructure Security Agency (CISA) has issued a high-priority security alert warning of serious vulnerabilities in railway brake control systems that could allow attackers to commandeer train operations and potentially cause catastrophic accidents. The alert, published on July 10, 2025, identifies critical flaws in the End-of-Train and Head-of-Train remote linking protocol used across […]
The post CISA Flags Remote Linking Protocol Flaws Allowing Attackers to Hijack Train Brake Systems appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.