Aggregator
CVE-2025-52997 | filebrowser up to 2.34.0 excessive authentication (GHSA-cm2r-rg7r-p7gg)
CVE-2025-52995 | filebrowser up to 2.33.9 command injection (EUVD-2025-19580)
CVE-2025-49493 | Akamai CloudTest 58.30 xml external entity reference (EUVD-2025-19583)
CVE-2025-36593 | Dell OpenManage Network Integration up to 3.7 RADIUS Protocol authentication replay (dsa-2025-257 / EUVD-2025-19568)
CVE-2024-29850 | Veeam Backup & Replication 11.0.1.1261/11.0.1.1261 P20240304/12.0.0.1420 authentication replay
New Hpingbot Exploits Pastebin for Payload Delivery and Uses Hping3 for DDoS Attacks
NSFOCUS Fuying Lab’s Global Threat Hunting System has discovered a new botnet family called “hpingbot” that has been quickly expanding since June 2025, marking a significant shift in the cybersecurity scene. This cross-platform botnet, built from scratch using the Go programming language, targets both Windows and Linux/IoT environments and supports multiple processor architectures including amd64, […]
The post New Hpingbot Exploits Pastebin for Payload Delivery and Uses Hping3 for DDoS Attacks appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
深度解读美国政府的零日漏洞保留政策
CHAOS
You must login to view this content
Grafana releases critical security update for Image Renderer plugin
CVE-2025-26634 | Microsoft Windows up to Server 2025 Core Messaging heap-based overflow
CVE-2025-21222 | Microsoft Windows up to Server 2025 Telephony Service heap-based overflow
CVE-2025-53074 | Samsung rLottie 0.2 out-of-bounds (EUVD-2025-19537)
CVE-2025-53076 | Samsung rLottie 0.2 buffer over-read (EUVD-2025-19536)
Big Tech’s Mixed Response to U.S. Treasury Sanctions
Apache Tomcat and Camel Vulnerabilities Actively Exploited in The Wild
Critical vulnerabilities in Apache Tomcat and Apache Camel are being actively exploited by cybercriminals worldwide, with security researchers documenting over 125,000 attack attempts across more than 70 countries since their disclosure in March 2025. The three vulnerabilities—CVE-2025-24813 affecting Apache Tomcat and CVE-2025-27636 and CVE-2025-29891 impacting Apache Camel—enable remote code execution and pose significant risks to […]
The post Apache Tomcat and Camel Vulnerabilities Actively Exploited in The Wild appeared first on Cyber Security News.
Massive Android Fraud Operations Uncovered: IconAds, Kaleidoscope, SMS Malware, NFC Scams
Phishing Scammers Push for Callbacks in Latest Innovation
The phishing industry is a never ending font of innovation. Cyber fraudsters are determined to worm their way into your inbox. Recent attacks involve callback phishing, a social engineering tactic designed to break down victims' defenses by spurring them into calling the scammers themselves.