Aggregator
Browser-in-the-Browser attacks target CS2 players' Steam accounts
1 year ago
A new phishing campaign targets Counter-Strike 2 players utilizing Browser-in-the-Browser (BitB) attacks that display a realistic window that mimics Steam's login page. [...]
Bill Toulas
Microsoft’s new AI agents take on phishing, patching, alert fatigue
1 year ago
Microsoft is rolling out a new generation of AI agents in Security Copilot, built to help with some of the most time-consuming security challenges, such as phishing, data protection, and identity management. Phishing is still one of the most common — and costly — types of cyberattacks out there. Last year, from January to December 2024, Microsoft spotted over 30 billion phishing emails aimed at customers. The sheer volume is staggering, and it’s more than … More →
The post Microsoft’s new AI agents take on phishing, patching, alert fatigue appeared first on Help Net Security.
Mirko Zorz
Мошенничеству — стоп: Госдума единогласно ужесточает меры защиты
1 year ago
Минцифры создаст базу голосов, банки получат новые обязательства.
Alleged Scraped Data Leak of NASA.gov
1 year ago
Alleged Scraped Data Leak of NASA.gov
Dark Web Informer - Cyber Threat Intelligence
CVE-2025-26575 | Display Post Meta Plugin up to 2.4.4 on WordPress cross site scripting
1 year ago
A vulnerability, which was classified as problematic, has been found in Display Post Meta Plugin up to 2.4.4 on WordPress. This issue affects some unknown processing. The manipulation leads to cross site scripting.
The identification of this vulnerability is CVE-2025-26575. The attack may be initiated remotely. There is no exploit available.
vuldb.com
CVE-2025-26542 | Zalo Live Chat Plugin up to 1.1.0 on WordPress cross site scripting
1 year ago
A vulnerability classified as problematic was found in Zalo Live Chat Plugin up to 1.1.0 on WordPress. This vulnerability affects unknown code. The manipulation leads to cross site scripting.
This vulnerability was named CVE-2025-26542. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2025-23714 | AppReview Plugin up to 0.2.9 on WordPress cross site scripting
1 year ago
A vulnerability classified as problematic has been found in AppReview Plugin up to 0.2.9 on WordPress. This affects an unknown part. The manipulation leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2025-23714. It is possible to initiate the attack remotely. There is no exploit available.
vuldb.com
CVE-2025-22360 | WP Azure Offload Plugin up to 2.0 on WordPress cross site scripting
1 year ago
A vulnerability was found in WP Azure Offload Plugin up to 2.0 on WordPress. It has been rated as problematic. Affected by this issue is some unknown functionality. The manipulation leads to cross site scripting.
This vulnerability is handled as CVE-2025-22360. The attack may be launched remotely. There is no exploit available.
vuldb.com
CVE-2025-23728 | AuMenu Plugin up to 1.1.5 on WordPress cross site scripting
1 year ago
A vulnerability was found in AuMenu Plugin up to 1.1.5 on WordPress. It has been declared as problematic. Affected by this vulnerability is an unknown functionality. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2025-23728. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2025-23757 | ZD Scribd iPaper Plugin up to 1.0 on WordPress cross site scripting
1 year ago
A vulnerability was found in ZD Scribd iPaper Plugin up to 1.0 on WordPress. It has been classified as problematic. Affected is an unknown function. The manipulation leads to cross site scripting.
This vulnerability is traded as CVE-2025-23757. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
李开复称中美 AI 差距仅为三个月
1 year ago
AI 创业公司零一万物 CEO 李开复表示,在 AI 的部分领域中美之间的差距仅为三个月。他说,“以前我认为差距是六到九个月,而且是全方面落后。现在我认为,在部分核心技术上可能落后三个月,在某些特定领域实际上处于领先位置。”李开复称 DeepSeek 的成功表明中国在基础设施软件工程等领域领先。李开复还认为,美国限制向中国出口先进 AI 芯片是一把双刃剑,促使中国公司进行创新。
CVE-2024-54362 | GetShop ecommerce Plugin up to 1.3 on WordPress file inclusion
1 year ago
A vulnerability was found in GetShop ecommerce Plugin up to 1.3 on WordPress and classified as critical. This issue affects some unknown processing. The manipulation leads to file inclusion.
The identification of this vulnerability is CVE-2024-54362. The attack may be initiated remotely. There is no exploit available.
vuldb.com
CVE-2025-26573 | Rizzi Guestbook Plugin up to 4.0.1 on WordPress cross site scripting
1 year ago
A vulnerability has been found in Rizzi Guestbook Plugin up to 4.0.1 on WordPress and classified as problematic. This vulnerability affects unknown code. The manipulation leads to cross site scripting.
This vulnerability was named CVE-2025-26573. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2025-22575 | Super Responsive Slider Plugin up to 1.4 on WordPress cross site scripting
1 year ago
A vulnerability, which was classified as problematic, was found in Super Responsive Slider Plugin up to 1.4 on WordPress. This affects an unknown part. The manipulation leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2025-22575. It is possible to initiate the attack remotely. There is no exploit available.
vuldb.com
CVE-2025-23542 | RDP Linkedin Login Plugin up to 1.7.0 on WordPress cross site scripting
1 year ago
A vulnerability, which was classified as problematic, has been found in RDP Linkedin Login Plugin up to 1.7.0 on WordPress. Affected by this issue is some unknown functionality. The manipulation leads to cross site scripting.
This vulnerability is handled as CVE-2025-23542. The attack may be launched remotely. There is no exploit available.
vuldb.com
CVE-2025-26541 | Bitcoin & AltCoin Payment Gateway for WooCommerce Plugin cross site scripting
1 year ago
A vulnerability classified as problematic was found in Bitcoin & AltCoin Payment Gateway for WooCommerce Plugin up to 1.7.6 on WordPress. Affected by this vulnerability is an unknown functionality. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2025-26541. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2025-23964 | Google Plus Plugin up to 1.0.2 on WordPress cross site scripting
1 year ago
A vulnerability classified as problematic has been found in Google Plus Plugin up to 1.0.2 on WordPress. Affected is an unknown function. The manipulation leads to cross site scripting.
This vulnerability is traded as CVE-2025-23964. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
CVE-2025-22767 | GlobalPayments WooCommerce Plugin up to 1.12.1 on WordPress cross site scripting
1 year ago
A vulnerability was found in GlobalPayments WooCommerce Plugin up to 1.12.1 on WordPress. It has been declared as problematic. This vulnerability affects unknown code. The manipulation leads to cross site scripting.
This vulnerability was named CVE-2025-22767. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2025-23952 | Custom Field List Widget Plugin up to 1.5.1 on WordPress file inclusion
1 year ago
A vulnerability was found in Custom Field List Widget Plugin up to 1.5.1 on WordPress. It has been rated as critical. This issue affects some unknown processing. The manipulation leads to file inclusion.
The identification of this vulnerability is CVE-2025-23952. The attack may be initiated remotely. There is no exploit available.
vuldb.com