Aggregator
AI Agents Access Everything, Fall to Zero-Click Exploit
原域名已变更且将在2024年彻底废弃,请访问 https://govuln.com/news/ 查看新的RSS订阅
CVE-2025-38381 | Linux Kernel up to 6.12.36/6.15.5/6.16-rc4 cs40l50-vibra cs40l50_upload_owt null pointer dereference (WID-SEC-2025-1653)
CVE-2025-38382 | Linux Kernel up to 6.1.143/6.6.96/6.12.36/6.15.5/6.16-rc4 btrfs __inode_add_ref initialization (WID-SEC-2025-1653)
CVE-2025-38384 | Linux Kernel up to 6.16-rc2 mtd nanddev_ecc_engine_cleanup memory leak (WID-SEC-2025-1653)
CVE-2025-38383 | Linux Kernel up to 6.12.36/6.15.5 show_numa_info allocation of resources (WID-SEC-2025-1653)
CVE-2025-38380 | Linux Kernel up to 6.16-rc4 designware i2c_dw_xfer_init initialization (Nessus ID 249209 / WID-SEC-2025-1653)
CVE-2025-38379 | Linux Kernel up to 6.6.96/6.12.36/6.15.5/6.16-rc1/6.16-rc4 smb kernel/workqueue.c smb2_reconnect_server uninitialized pointer (WID-SEC-2025-1653)
New Research Unmask DPRK IT Workers Email Address and Hiring Patterns
Recent cybersecurity intelligence has exposed a sophisticated infiltration campaign orchestrated by North Korean state-sponsored threat actors, specifically the Jasper Sleet group, who have systematically penetrated Western organizations through fraudulent employment schemes. This operation, targeting primarily Web3, blockchain, and cryptocurrency companies, represents a significant evolution in North Korean cyber warfare tactics, eliminating the need for traditional […]
The post New Research Unmask DPRK IT Workers Email Address and Hiring Patterns appeared first on Cyber Security News.
Millions Allegedly Affected in Allianz Insurance Breach
Mozilla security advisory (AV25-529)
Redis hyperloglog远程代码执行漏洞 (CVE-2025-32023)复现分析
记一次对诈骗app渗透测试
test
This is just a test to see if Buffer picks up the image
The post test appeared first on Security Boulevard.
1Panel未授权RCE漏洞分析
从零开始手搓C2框架
New Research Uncovers Connection Between VPN Apps and Multiple Security Vulnerabilities
A comprehensive security analysis has revealed alarming vulnerabilities affecting over 700 million users across multiple VPN applications, exposing critical flaws that compromise the very privacy and security these services promise to protect. Research conducted by cybersecurity experts from Arizona State University, Citizen Lab, and Bowdoin College has uncovered three distinct families of VPN providers that […]
The post New Research Uncovers Connection Between VPN Apps and Multiple Security Vulnerabilities appeared first on Cyber Security News.