Aggregator
CVE-2025-0671 | Icegram Express Plugin up to 5.7.49 on WordPress Template Setting cross site scripting
CVE-2025-3511 | Mitsubishi Electric CC-Link IE TSN Remote IO Module improper validation of specified quantity in input
CVE-2025-46616 | Quantum StorNext up to 7.2.3 Web GUI API unrestricted upload
CVE-2025-2580 | Bit Contact Form Form Plugin up to 2.18.3 on WordPress SVG File Upload cross site scripting
CVE-2025-3861 | Prevent Direct Access Plugin up to 2.8.8.2 on WordPress pda_lite_custom_permission_check improper authorization
DeepMind 发布 Lyria 2 音乐生成模型
Russian VPS Servers With RDP and Proxy Servers Enable North Korean Cybercrime Operations
Trend Research has uncovered a sophisticated network of cybercrime operations linked to North Korea, heavily utilizing Russian internet infrastructure. Specifically, IP address ranges in the towns of Khasan and Khabarovsk, Russia, assigned to organizations under TransTelecom (ASN AS20485), are pivotal in these activities. Khasan, just a mile from the North Korea-Russia border and connected via […]
The post Russian VPS Servers With RDP and Proxy Servers Enable North Korean Cybercrime Operations appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
CVE-2023-37269 | Winter CMS up to 1.2.2 SVG cross site scripting (GHSA-wjw2-4j7j-6gc3 / EDB-51591)
CVE-2023-1119 | WP-Optimize Plugin/SrbTransLatin Plugin on WordPress HTML Character HTML injection
CVE-2023-3568 | fossbilling up to 0.5.3 redirect
Darcula + ChatGPT = фишинг, который не отличить от оригинала
倭黑猩猩雌性通过结盟压制雄性保住权力
网络安全信息与动态周报2025年第16期(4月14日-4月20日)
中国-东盟网络安全应急响应能力建设研讨会在香港举办
【漏洞通告】Commvault 远程代码执行漏洞(CVE-2025-34028)
网络安全信息与动态周报2025年第16期(4月14日-4月20日)
中国-东盟网络安全应急响应能力建设研讨会在香港举办
【漏洞通告】Commvault 远程代码执行漏洞(CVE-2025-34028)
Microsoft’s Patch for Symlink Vulnerability Introduces New Windows Denial-of-Service Flaw
Microsoft’s recent attempt to resolve a critical privilege escalation vulnerability has inadvertently introduced a new denial-of-service (DoS) flaw in Windows systems, leaving organizations vulnerable to update failures and potential security risks. In early April 2025, Microsoft addressed CVE-2025-21204, a security flaw that allowed attackers to abuse symbolic links (symlinks) to elevate privileges via the Windows servicing […]
The post Microsoft’s Patch for Symlink Vulnerability Introduces New Windows Denial-of-Service Flaw appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.