Aggregator
FORGE: Cybersecurity’s “AlphaEvolve Moment” for Threat Detection
CVE-2025-46414 | EG4 12kPV PIN excessive authentication (icsa-25-219-07 / EUVD-2025-23992)
CVE-2025-47872 | EG4 12kPV Product Registration Endpoint information exposure (icsa-25-219-07 / EUVD-2025-23993)
Data Center Security
In an era where data is the lifeblood of every enterprise, safeguarding the core of your digital operations—the data center—is absolutely non-negotiable. With cyber threats evolving, regulations tightening, and infrastructure growing more complex, data center security is the pillar of business continuity, trust, and reputation. At Seceon, we understand this better than anyone, which is
The post Data Center Security appeared first on Seceon Inc.
The post Data Center Security appeared first on Security Boulevard.
CVE-2025-53520 | EG4 12kPV Firmware Update code download (icsa-25-219-07)
CVE-2025-52586 | EG4 12kPV MOD3 Command cleartext transmission (icsa-25-219-07 / EUVD-2025-23994)
Privilege Escalation Issue in Amazon ECS Leads to IAM Hijacking
CVE-2025-47906 | Google Go up to 1.23.11/1.24.5 os-exec LookPath PATH (WID-SEC-2025-1740)
CVE-2025-47808 | GStreamer up to 1.26.1 Subtitle File Parser tmplayer_parse_line null pointer dereference
CVE-2025-47807 | GStreamer up to 1.26.1 Subtitle File Parser subrip_unescape_formatting null pointer dereference
CVE-2025-47806 | GStreamer up to 1.26.1 parse_subrip_time stack-based overflow
CVE-2025-47183 | GStreamer up to 1.26.1 MP4 File Parser qtdemux_parse_tree information disclosure
CVE-2025-47219 | GStreamer up to 1.26.1 MP4 File Parser qtdemux_parse_trak information disclosure
CVE-2025-48709 | BMC Control-M 9.0.21.300 DBUStatus.exe username/password/database hostname/port log file
Inside Kasada: An Intern’s Dive into Bots, Data, and Company Culture
Meet Max and Kasey, two interns at Kasada who tackled real-world challenges from two very different angles—machine learning and sales operations—and came away with sharper skills, meaningful impact, and a clear sense of where they’re headed next.
The post Inside Kasada: An Intern’s Dive into Bots, Data, and Company Culture appeared first on Security Boulevard.
WhatsApp Developers Under Attack From Weaponized npm Packages with Remote Kill Switch
Two malicious npm packages have emerged as sophisticated weapons targeting WhatsApp developers through a remote-controlled destruction mechanism that can completely wipe development systems. The packages, identified as naya-flore and nvlore-hsc, masquerade as legitimate WhatsApp socket libraries while harboring a devastating kill switch capable of executing system-wide file deletion through a single command. Published by npm […]
The post WhatsApp Developers Under Attack From Weaponized npm Packages with Remote Kill Switch appeared first on Cyber Security News.