Aggregator
CVE-2025-50057 | rsjoomla RSFiles Component up to 1.17.7 on Joomla Search resource consumption (EUVD-2025-21870)
CVE-2025-49484 | joomsky JS Jobs Component up to 1.4.1 on Joomla cvid sql injection (EUVD-2025-21874)
CVE-2025-2425 | ESET NOD32 Antivirus toctou (EUVD-2025-21865)
CVE-2025-50126 | rsjoomla RSBlog Component up to 1.14.5 on Joomla jform[tags_text] cross site scripting (EUVD-2025-21868)
CVE-2025-50058 | rsjoomla RSDirectory Component up to 2.2.8 on Joomla Review Reply cross site scripting (EUVD-2025-21869)
CVE-2025-50056 | rsjoomla RSMail Component up to 1.22.28 on Joomla crafted cross site scripting (EUVD-2025-21871)
$27 млн испарились за ночь: BigONE пал жертвой атаки на цепочку поставок
Critical MCP Vulnerabilities are Slipping Through the Cracks
We must pay attention to what holds everything together - the glue. That’s where the real MCP vulnerabilities are hiding.
The post Critical MCP Vulnerabilities are Slipping Through the Cracks appeared first on Security Boulevard.
Anne Arundel Dermatology data breach impacts 1.9 million people
CERT-UA Discovers LAMEHUG Malware Linked to APT28, Using LLM for Phishing Campaign
Critical NVIDIA Container Toolkit Flaw Allows Privilege Escalation on AI Cloud Services
Google 起诉 25 名中国籍 BadBox 2.0 运营者
Проверьте свой Android TV прямо сейчас: BadBox 2.0 может майнить деньги на вашем экране
俄罗斯新法律将搜索“争议内容”定为犯罪行为
Years Long Linux Cryptominer Spotted Using Legit Sites to Spread Malware
Google Sues 25 Chinese Entities Over BADBOX 2.0 Botnet Affecting 10M Android Devices
【LYSRC漏洞挖掘大赛】夏日攻坚行动,双倍积分+现金奖励等你拿!
Threat Actors Exploit Ivanti Connect Secure Flaws to Deploy Cobalt Strike Beacon
Threat actors have been actively exploiting vulnerabilities in Ivanti Connect Secure, specifically CVE-2025-0282 and CVE-2025-22457, to deploy advanced malware, including MDifyLoader and Cobalt Strike Beacon. These attacks, observed from December 2024 through July 2025, build on prior incidents involving SPAWNCHIMERA and DslogdRAT, demonstrating persistent targeting of VPN appliances. Attackers leverage these flaws for initial access, […]
The post Threat Actors Exploit Ivanti Connect Secure Flaws to Deploy Cobalt Strike Beacon appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.