Aggregator
Threat Actors Attacking Job Seekers With Three New Unique Adversaries
A significant surge in sophisticated recruitment scams has emerged, with cybercriminals exploiting economic vulnerabilities and the competitive job market to target desperate job seekers. These scams employ increasingly refined social engineering tactics that blend legitimate recruitment practices with fraudulent schemes, making them particularly effective at evading detection while extracting money and personal information from victims. […]
The post Threat Actors Attacking Job Seekers With Three New Unique Adversaries appeared first on Cyber Security News.
CVE-2020-3744 | Adobe Acrobat Reader out-of-bounds (APSB20-05)
CVE-2020-3747 | Adobe Acrobat Reader out-of-bounds (APSB20-05)
CVE-2020-8951 | Fiserv Accurate Reconciliation 2.19.0 Configuration Manager Parameter cross site scripting
CVE-2020-8952 | Fiserv Accurate Reconciliation 2.19.0 logout.jsp timeOut cross site scripting
CVE-2020-6815 | Mozilla Firefox up to 73.x memory corruption
CVE-2019-15795 | python-apt MD5 apt/package.py risky encryption
CVE-2019-15796 | python-apt prior 1.9.0ubuntu1.2 Hash apt/package.py improper authentication
CVE-2020-10968 | FasterXML jackson-databind up to 2.9.10.3 Gadget deserialization (Issue 2662)
CVE-2020-10969 | FasterXML jackson-databind up to 2.9.10.3 Gadget deserialization (Issue 2642)
CVE-2020-5339 | Dell RSA Authentication Manager up to 8.4 P9 Security Console Stored cross site scripting (DSA-2020-052)
CVE-2020-5340 | Dell RSA Authentication Manager up to 8.4 P9 Security Console Stored cross site scripting (DSA-2020-052)
CVE-2020-8910 | Google Closure Library up to 20200224 URL Parser information disclosure
CVE-2020-8923 | Dart up to 2.7.1/2.8.0-dev.16.0 cross site scripting (GHSA-hfq3-v9pv-p627)
CVE-2020-1800 | Huawei P30 up to 10.0.0 Access Control Crafted Application authorization (sa-20200325-02)
CVE-2020-9066 | Huawei Smart Phone up to 10.0.1 Application improper authentication (sa-20200325-01)
Chinese Hackers Exploit SAP RCE Vulnerability to Upload Supershell Backdoors
A critical remote code execution vulnerability in SAP NetWeaver Visual Composer (CVE-2025-31324) is being actively exploited by a Chinese threat actor to compromise enterprise systems worldwide. The vulnerability allows attackers to achieve remote code execution by uploading malicious web shells through the vulnerable /developmentserver/metadatauploader endpoint. Exploitation has been observed primarily targeting manufacturing environments, where compromised […]
The post Chinese Hackers Exploit SAP RCE Vulnerability to Upload Supershell Backdoors appeared first on Cyber Security News.
Devman
You must login to view this content