Aggregator
Техобслуживание или прикрытие? Nemo Protocol потеряла $2,4 млн из-за хакерской атаки
Sophos修复AP6系列无线接入点严重认证绕过漏洞(CVE-2025-10159)
Hiawatha Web服务器曝严重漏洞:可导致身份认证绕过与远程代码执行
Cursor AI Code Editor RCE Vulnerability Enables “autorun” of Malicious on your Machine
A remote code execution vulnerability has been discovered in the Cursor AI Code Editor, enabling a malicious code repository to run code on a user’s machine upon opening automatically. The research team at Oasis Security uncovered the flaw, which bypasses typical user consent prompts by exploiting a default configuration setting in the popular editor. According […]
The post Cursor AI Code Editor RCE Vulnerability Enables “autorun” of Malicious on your Machine appeared first on Cyber Security News.
黑客在供应链攻击中攻陷18个NPM包
Best Identity and Access Management (IAM) Software
Secure your data with the 15 best IAM software solutions. Find practical tools to manage user access and prevent identity attacks effectively.
The post Best Identity and Access Management (IAM) Software appeared first on Security Boulevard.
安全防御总“失守”?360大情报告诉你答案
新型恶意软件家族正劫持暴露的Docker API
IOC Alert: NetSupport Manager RAT Payload Delivery
Researchers find spyware on phones belonging to Kenyan filmmakers
Randall Munroe’s XKCD ‘Coastline Similarity’
via the geologic humor & dry-as-the-taiga wit of Randall Munroe, creator of XKCD
The post Randall Munroe’s XKCD ‘Coastline Similarity’ appeared first on Security Boulevard.
CVE-2025-55053 | Baicells NOVA430e/430i/NOVA436Q/NEUTRINO430/NOVA846 weak hash (EUVD-2025-27547)
CVE-2025-55054 | Baicells EG7035E-M11 2.5.26_NA cross site scripting (EUVD-2025-27548)
CVE-2025-10220 | AxxonSoft AxxonOne up to 2.0.4 on Windows Google.Protobuf unmaintained third party components (EUVD-2025-27546)
CVE-2025-56406 | mcp-neo4j 0.3.0 SSE Service information disclosure (EUVD-2025-27549)
CVE-2025-29089 | TP-Link AX10 Ax1500 1.3.10 information disclosure (EUVD-2025-27567)
CVE-2025-57633 | FTP-Flask-python /ftp.html os.system ftp_file command injection (EUVD-2025-27500)
CVE-2025-7718 | Resideo Plugin for Resideo Plugin up to 2.5.4 on WordPress resource injection (EUVD-2025-27545)
Three states team up in investigative sweep of companies flouting data opt-out laws
California, Colorado and Connecticut are contacting businesses that aren’t using legally mandated technology to provide consumers with universal opt-out rights.
The post Three states team up in investigative sweep of companies flouting data opt-out laws appeared first on CyberScoop.