Aggregator
CVE-2024-5520 | Alkacon OpenCMS 16 Admin Panel Title cross site scripting
CVE-2023-38366 | IBM Filenet Content Manager 5.5.8.0/5.5.10.0/5.5.11.0 URL path traversal (XFDB-261115)
CVE-2024-33606 | MicroDicom DICOM Viewer up to 2024.1 Medical Image improper authorization in handler for custom url scheme (icsma-24-163-01)
CVE-2023-50312 | IBM WebSphere Application Server Liberty up to 24.0.0.2 TLS risky encryption (XFDB-274711)
CVE-2024-43437 | Moodle Backup File Restore cross site scripting
CVE-2023-45596 | AiLux imx6 up to 1.0.7-1 file_configuration authorization
端午第一弹 | 打响人生第一洞
端午第一弹 | 打响人生第一洞
1000+ Unique IPs Attacking Ivanti Connect Secure Systems to Exploit Vulnerabilities
A significant increase in suspicious scanning activity targeting Ivanti Connect Secure (ICS) and Ivanti Pulse Secure (IPS) VPN systems, signaling a potential coordinated reconnaissance effort by threat actors. The spike, registering more than 230 unique IP addresses probing ICS/IPS endpoints in a single day, represents a ninefold increase over the typical daily baseline of fewer […]
The post 1000+ Unique IPs Attacking Ivanti Connect Secure Systems to Exploit Vulnerabilities appeared first on Cyber Security News.
Blue Shield Exposed Health Data of 4.7 Million via Google Ads
Blue Shield of California has disclosed a significant data privacy incident affecting up to 4.7 million members, after discovering that protected health information (PHI) may have been inadvertently shared with Google Ads over nearly three years. The healthcare provider is now alerting potentially impacted members and implementing new safeguards to prevent future breaches. The breach […]
The post Blue Shield Exposed Health Data of 4.7 Million via Google Ads appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
GPT-4 написал рабочий эксплойт для CVE-2025-32433 раньше, чем люди успели опубликовать PoC
お知らせ:JPCERT/CC Eyes「Ivanti Connect Secureに設置されたマルウェアDslogdRAT」
谷歌取消 Chrome 的 Cookie 提示,无痕模式新增 IP 保护
Безопасность по рецепту Microsoft: от UX-карт до изоляции ключей в облаке
Microsoft Offers $30,000 Bounties for AI Security Flaws
Microsoft has launched a new bounty program that offers up to $30,000 to security researchers who discover vulnerabilities in its AI and machine learning (AI/ML) technologies. This initiative, announced by the Microsoft Security Response Center (MSRC), aims to encourage responsible disclosure of flaws that could pose serious risks to users and organizations relying on Microsoft’s […]
The post Microsoft Offers $30,000 Bounties for AI Security Flaws appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
掘金 x Trae「超级体验官」创新实践征文
掘金 x Trae「超级体验官」创新实践征文
Шпионские игры по-восточному: пока одни строчат резюме, другие ломают сети
You'll Soon Be Able to Sign in to Have I Been Pwned (but Not Login, Log in or Log On)
How do seemingly little things manage to consume so much time?! We had a suggestion this week that instead of being able to login to the new HIBP website, you should instead be able to log in. This initially confused me because I've been used to logging on