Aggregator
Phishing Schemes Abuse .arpa TLD and IPv6 Tunnels to Evade Detection
Cybersecurity researchers at Infoblox Threat Intel have uncovered a highly sophisticated phishing campaign that exploits the foundational plumbing of the internet to bypass enterprise security controls. In a novel evasion tactic, threat actors are weaponizing the .arpa top-level domain (TLD) and utilizing IPv6 tunnels to host malicious phishing content. This approach actively circumvents traditional domain reputation checks, […]
The post Phishing Schemes Abuse .arpa TLD and IPv6 Tunnels to Evade Detection appeared first on Cyber Security News.
当你需要帮助时狗的反应类似 2 岁小孩但猫只会旁观
$4.8M in crypto stolen after Korean tax agency exposes wallet seed
Iran Has One Card Left—It’s Pointed at Your Network
In light of today’s attack by the U.S. and Israel on Iran, it is prudent to ask: What can Iran do? Strip away everything Iran had a year ago and ask yourself what’s left. Their nuclear program? Set back years, maybe a decade. Their air defenses? Dismantled across two conflicts. Hezbollah? Degraded to the point..
The post Iran Has One Card Left—It’s Pointed at Your Network appeared first on Security Boulevard.
CVE-2026-27571 | nats-io nats-server up to 2.11.11/2.12.2 WebSockets data amplification (Nessus ID 299911)
CVE-2026-26340 | Tattile Smart+ up to 1.181.5 RTSP Service missing authentication (ZSL-2026-5978)
CVE-2026-26222 | Beyond Limits Altec DocLink 4.0.336.0 .NET Remoting Endpoint deserialization
CVE-2026-27468 | Mastodon up to 4.4.13/4.5.6 FASP Feature EXPERIMENTAL_FEATURES authorization (GHSA-qgmm-vr4c-ggjg)
CVE-2025-33179 | NVIDIA Cumulus Linux GA/Cumulus Linux LTS/NVOS NVUE Interface privileges assignment
CVE-2025-33180 | NVIDIA Cumulus Linux GA/Cumulus Linux LTS/NVOS NVUE Interface command injection
CVE-2025-33181 | NVIDIA Cumulus Linux GA/Cumulus Linux LTS/NVOS NVUE Interface command injection
CVE-2026-24241 | NVIDIA Delegated Licensing Service DLS information disclosure
CVE-2026-26341 | Tattile Smart+ up to 1.181.5 Management Interface default credentials (ZSL-2026-5977)
CVE-2026-1768 | Devolutions Server up to 2025.3.14 Permission Cache authorization (DEVO-2026-0004 / Nessus ID 300079)
CVE-2025-14963 | Trellix Endpoint HX Agent Local Security Authority Subsystem Service lsass.exe input validation (EUVD-2025-208089 / WID-SEC-2026-0538)
CVE-2025-1787 | Genetec Update Service prior 2.10.600 origin validation
CVE-2025-1789 | Genetec Update Service prior 2.10.600 default permission
以色列空袭伊朗期间,被黑客入侵的祈祷应用程序向伊朗人发送劝降通知
Payload
You must login to view this content