Aggregator
【安全圈】谷歌遭UNC6040黑客组织钓鱼攻击:Salesforce数据泄露敲响企业安全警钟
基于LLM的AISecOps实践案例2
New Promptware Attack Hijacks User’s Gemini AI Via Google Calendar Invite
CVE-2025-8698 | Open5GS up to 2.7.5 AMF Service src/amf/nsmf-handler.c amf_nsmf_pdusession_handle_release_sm_context assertion (Issue 4012 / EUVD-2025-23959)
CVE-2025-8697 | agentUniverse up to 0.0.18 MCPSessionManager/MCPTool/MCPToolkit StdioServerParameters os command injection (EUVD-2025-23941)
Submit #621282: Open5GS <=2.7.5 Reachable Assertion [Accepted]
Akamai Ghost Platform Flaw Allows Hidden Second Request Injection
Akamai Technologies disclosed a critical HTTP request smuggling vulnerability affecting its content delivery network platform that could allow attackers to inject hidden secondary requests through a sophisticated exploitation technique. The vulnerability, designated CVE-2025-32094, was discovered through the company’s bug bounty program and has been resolved across all customer deployments without evidence of successful exploitation in […]
The post Akamai Ghost Platform Flaw Allows Hidden Second Request Injection appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
CVE-2025-8533 | Flexibits Fantastical up to 4.0.15 XPC Service authorization
Submit #621376: agentuniverse-ai agentUniverse v0.0.18 OS Command Injection [Accepted]
Anche Google vittima della campagna di ShinyHunters
The AI-Powered Security Shift: What 2025 Is Teaching Us About Cloud Defense
Microsoft Discloses Exchange Server Flaw Enabling Silent Cloud Access in Hybrid Setups
6,500 Axis Servers Expose Remoting Protocol; 4,000 in U.S. Vulnerable to Exploits
10 Best Data Loss Prevention Software in 2025
Data Loss Prevention (DLP) software is a critical cybersecurity solution designed to protect sensitive data from leaving an organization’s network. In an era where data is a company’s most valuable asset, and regulatory penalties for data breaches are severe, DLP is no longer just a luxury but a necessity. It provides a comprehensive defense by […]
The post 10 Best Data Loss Prevention Software in 2025 appeared first on Cyber Security News.
Добей HTTP/1.1. Или он доберётся до тебя
内网被打穿了,怎么办?
HeartCrypt-Packed EDR Killer Tools ‘AVKiller’ Actively Used in Ransomware Attacks
Cybersecurity teams have confronted a rising threat from a novel “EDR killer” payload in recent months, commonly referred to as AVKiller, which has been observed disabling endpoint defenses to facilitate the deployment of ransomware. First detected in mid-2024, this tool leverages the HeartCrypt packer-as-a-service to obscure its true functionality and slip past traditional static signature […]
The post HeartCrypt-Packed EDR Killer Tools ‘AVKiller’ Actively Used in Ransomware Attacks appeared first on Cyber Security News.