Aggregator
Krypt3ia Daily Cyber Threat Intelligence (CTI) Digest
CVE-2025-0846 | 1000 Projects Employee Task Management System 1.0 /admin/AdminLogin.php email sql injection
CVE-2025-0847 | 1000 Projects Employee Task Management System 1.0 Login /index.php email sql injection
CVE-2025-0848 | Tenda A18 up to 15.13.07.09 HTTP POST Request /goform/SetCmdlineRun wpapsk_crypto5g stack-based overflow
CVE-2025-0849 | CampCodes School Management Software 1.0 Staff /edit-staff/ improper authorization
DeepSeek Exposed Database Leaks Sensitive Data
Критические 0day-бреши в Voyager: угроза цепных атак и внедрения скриптов
使用 velero 备份迁移 k8s 集群内的资源-张种恩的技术小栈
写了一个基于 goframe + vue3 后台管理系统模板-张种恩的技术小栈
中亚新位置:美国到底是“机遇”还是“陷阱”?
揭秘土耳其“红皮书”:真相还是阴谋?
Lazarus Group Drop Malicious NPM Packages in Developers Systems Remotely
In a recent discovery by Socket researchers, a malicious npm package named postcss-optimizer has been identified as an operation spearheaded by the North Korean state-sponsored group, Lazarus Advanced Persistent Threat (APT). Tied to past campaigns and employing code-level similarities, the package is linked to the Contagious Interview subgroup of Lazarus, infamously targeting software developers through […]
The post Lazarus Group Drop Malicious NPM Packages in Developers Systems Remotely appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
深入浅出API测试|搜集分析与漏洞挖掘实战
beego路由和解析参数及返回参数详解beego人门到实战 - passerma - 博客园
请求数据处理 | Beego Web Framework
Lightning AI Studio Vulnerability Could've Allowed RCE via Hidden URL Parameter
Lightning AI Studio Vulnerability Allowed RCE via Hidden URL Parameter
Time Bandit ChatGPT jailbreak bypasses safeguards on sensitive topics
Lazarus Hackers Tamper with Software Packages to Gain Backdoor Access to the Victims Device
A recent investigation conducted by STRIKE, a division of SecurityScorecard, has unveiled the intricate and far-reaching operation of the Lazarus Group, a North Korean advanced persistent threat (APT) group. Dubbed “Operation Phantom Circuit,” the campaign highlights a deliberate and sophisticated effort to infiltrate global systems through compromised software supply chains and advanced Command-and-Control (C2) infrastructure. […]
The post Lazarus Hackers Tamper with Software Packages to Gain Backdoor Access to the Victims Device appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.