Aggregator
Cybercriminals Use Malicious PDFs to Impersonate Microsoft, DocuSign, and Dropbox in Targeted Phishing Attacks
Cisco’s Talos security team has uncovered a surge in sophisticated phishing campaigns leveraging malicious PDF payloads to impersonate trusted brands like Microsoft, DocuSign, and Dropbox. According to a recent update to Cisco’s brand impersonation detection engine, these attacks have expanded in scope, targeting a broader array of well-known organizations with deceptive emails designed to exploit […]
The post Cybercriminals Use Malicious PDFs to Impersonate Microsoft, DocuSign, and Dropbox in Targeted Phishing Attacks appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
CVE-2025-34057 | Ruijie NBR2000G/NBR1300G/NBR1000 /WEB_VMS/LEVEL15/ information disclosure (EUVD-2025-19723)
CVE-2025-34073 | Stamparm Maltrail up to 0.54 core/http.py subprocess.check_output Username os command injection (EUVD-2025-19716)
New Email Bombing Detection in Office 365 to Detect Email Bombing Attacks
Microsoft is strengthening its cybersecurity arsenal with the introduction of Mail Bombing Detection in Microsoft Defender for Office 365, a sophisticated feature designed to combat the growing threat of email bombing attacks. We have already notified the implementation of Microsoft Defender for Office 365, which will introduce advanced measures to mitigate email bombing attacks. This […]
The post New Email Bombing Detection in Office 365 to Detect Email Bombing Attacks appeared first on Cyber Security News.
CVE-2025-34067 | Hikvision HikCentral Fastjson Library applyCT deserialization (EUVD-2025-19719)
CVE-2025-34071 | GFI Kerio Control 9.4.5 upgrade.sh missing authentication (EUVD-2025-19720)
CVE-2025-34070 | GFI Kerio Control 9.4.5 GFIAgent Service /proxy missing authentication (EUVD-2025-19721)
CVE-2024-13451 | Bit Form Contact Form Plugin up to 2.17.5 on WordPress information disclosure (EUVD-2024-54723)
CVE-2024-11614 | DPDK Vhost Library Checksum Offload out-of-bounds (EUVD-2024-34403 / Nessus ID 213102)
CVE-2025-5692 | Lead Form Data Collection to CRM Plugin up to 3.1 on WordPress Setting doFieldAjaxAction improper authentication (EUVD-2025-19710)
CVE-2025-6463 | Forminator Forms Plugin up to 1.44.2 on WordPress Setting entry_delete_upload_files denial of service (EUVD-2025-19711)
CVE-2025-6464 | Forminator Forms Plugin up to 1.44.2 on WordPress PHAR File Parser entry_delete_upload_files deserialization (EUVD-2025-19712)
CVE-2025-48934 | deno up to 2.1.12/2.2.12 Environment Variable deno.env.toObject insertion of sensitive information into sent data (EUVD-2025-16913)
1 Year Later: Lessons Learned From the CrowdStrike Outage
15 минут, чтобы украсть год вашей работы: GitPhish превращает обычный фишинг в искусство
International Criminal Court Hit by New Sophisticated Cyber Attack
The International Criminal Court (ICC) has successfully detected and contained a sophisticated cybersecurity incident that targeted the judicial institution late last week. This marks the second major cyber attack of this type against the ICC in recent years, highlighting the persistent digital threats facing international judicial bodies. Key Takeaways1. ICC suffered its second sophisticated cyber […]
The post International Criminal Court Hit by New Sophisticated Cyber Attack appeared first on Cyber Security News.