Aggregator
CVE-2020-37138 | 10-Strike Network Inventory Explorer 9.03 stack-based overflow (Exploit 48264 / EUVD-2020-31027)
CVE-2026-25815 | Fortinet FortiOS up to 7.6.6 LDAP Credential default key (EUVD-2026-5525)
RenEngine Loader Using Stealthy Multi‑Stage Execution Chain to Bypass Security Controls
Cracked game installers are again being used as a delivery channel for credential theft, but the latest wave adds an unusual twist: the malicious code hides behind a Ren’Py game launcher. The loader, now tracked as RenEngine, arrives bundled with game repacks and mods that look normal and even run as expected, while quietly preparing […]
The post RenEngine Loader Using Stealthy Multi‑Stage Execution Chain to Bypass Security Controls appeared first on Cyber Security News.
CVE-2021-23841 | Apple Safari up to 14.1.0 WebRTC null pointer dereference (HT212534 / Nessus ID 211827)
CVE-2021-23841 | Oracle Business Intelligence Enterprise Edition 5.5.0.0.0/12.2.1.3.0/12.2.1.4.0 OpenSSL denial of service (Nessus ID 211827 / WID-SEC-2022-0669)
CVE-2021-23841 | Apple macOS up to 11.3 WebRTC null pointer dereference (HT212529 / Nessus ID 211827)
Киберклининг по-римски. Айтишники Сапиенцы разгребают завалы после недавнего взлома
Man pleads guilty to hacking nearly 600 women’s Snapchat accounts
快手被罚 1.191 亿元
New Wave of Odyssey Stealer Actively Targeting macOS Users
A sophisticated and aggressive malware campaign known as Odyssey Stealer has surged recently, specifically aiming at macOS systems. This fresh wave of cyber threats has caught the attention of security experts due to its rapid spread and enhanced stealth capabilities. Unlike previous iterations, this campaign demonstrates a highly coordinated effort to compromise Apple computers worldwide, […]
The post New Wave of Odyssey Stealer Actively Targeting macOS Users appeared first on Cyber Security News.
APT-Q-27 Targeting Corporate Environments in Stealthy Attack Without Triggering Alerts
In mid-January 2026, a highly sophisticated cyber campaign targeting financial institutions surfaced, characterized by its ability to infiltrate corporate environments without triggering standard security alerts. The attack was notable for its extreme stealth, as neither the end-users nor conventional endpoint protection controls raised any immediate alarms during the initial intrusion. This low-noise approach allowed the […]
The post APT-Q-27 Targeting Corporate Environments in Stealthy Attack Without Triggering Alerts appeared first on Cyber Security News.
Asian State-Backed Group TGR-STA-1030 Breaches 70 Government, Infrastructure Entities
AI+安全=?长亭科技的2025高光回溯
Lockbit
You must login to view this content
Луч света -> кислород -> 1100 часов заряда. Искусственный фотосинтез спас батареи от быстрой смерти
Flickr Confirms Data Breach – 35 million Users Data at Risk
Flickr has disclosed a potential data breach stemming from a vulnerability in a third-party email service provider’s system. The incident, reported on February 5, 2026, may have exposed data for some of its 35 million monthly users, though the exact number affected remains undisclosed. Flickr alerted affected users via email about the flaw discovered on […]
The post Flickr Confirms Data Breach – 35 million Users Data at Risk appeared first on Cyber Security News.