Aggregator
CVE-2025-35008 | Microhard IPn4Gii/Bullet-LTE up to 1.2.0-r1132 AT+MMNAME Command argument injection (EUVD-2025-17400)
CVE-2025-5862 | Tenda AC7 15.03.06.44 /goform/setPptpUserList formSetPPTPUserList list buffer overflow (EUVD-2025-17426)
Submit #585717: juliangruber @juliangruber/brace-expansion 1.1.11 Inefficient Regular Expression Complexity [Accepted]
Kimsuky Strikes Again – Coordinated Attacks Target Facebook, Email, and Telegram
A recent investigation by Genians Security Center (GSC) has uncovered a highly sophisticated, multi-channel cyber espionage campaign attributed to the North Korea-aligned advanced persistent threat (APT) group known as Kimsuky. Between March and April 2025, the group leveraged Facebook, email, and Telegram to infiltrate targets primarily within the defense sector, North Korea-related activists, and cryptocurrency […]
The post Kimsuky Strikes Again – Coordinated Attacks Target Facebook, Email, and Telegram appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
CVE-2025-5888 | jsnjfz WebStack-Guns 1.0 cross-site request forgery
CVE-2025-5887 | jsnjfz WebStack-Guns 1.0 File Upload UserMgrController.java cross site scripting
Submit #582920: jsnjfz WebStack-Guns <=1.0 Cross-Site Request Forgery [Duplicate]
Submit #582062: jsnjfz WebStack-Guns V1.0 Cross-Site Request Forgery [Accepted]
Submit #580744: jsnjfz WebStack-Guns V1.0 Unrestricted Upload [Accepted]
微软和华硕合作推出 Xbox 掌机 ROG Xbox Ally
CVE-2025-5886 | Emlog up to 2.5.7 /admin/article.php active_post cross site scripting
Когда ИИ служит хаосу — ChatGPT помогает ломать оборонку, писать трояны и нанимать шпионов
Submit #571804: emlog <=2.5.7 Injection [Accepted]
亿格云完成Pre-B轮近亿元融资,聚焦企业办公安全赛道
数世咨询:《新质·中国数字安全百强(2025)》正式发布
Balancing cybersecurity and client experience for high-net-worth clients
In this Help Net Security interview, Renana Friedlich-Barsky, EVP and CISO at LPL Financial, discusses how threat actors are targeting high-net-worth clients and exploiting digital touchpoints in wealth management. She explains why firms must embed security from the start to protect sensitive assets and ensure seamless, secure client experiences. How are threat actors evolving their tactics to target high-net-worth clients or exploit digital touchpoints in wealth management platforms? Threat actors are becoming more targeted and … More →
The post Balancing cybersecurity and client experience for high-net-worth clients appeared first on Help Net Security.