Aggregator
CISA Adds TP-Link and WhatsApp Flaws to KEV Catalog Amid Active Exploitation
Углеводородные озера, амфифильные молекулы и протоклетки. Что нужно знать о новой гипотезе NASA о жизни на спутнике Сатурна
Detecting danger: EASM in the modern security stack
In today’s complex threat environment, the challenge for security professionals isn’t just defeating threats, it’s finding your vulnerabilities in the first place. That’s where External Attack Surface Management (EASM) tools come in. EASM can identify the many weaknesses that attackers use to target your organization. Effective solutions provide crucial information on the vulnerabilities of organizational assets and cloud services that are visible in the public domain. In practice, EASM can refer to a range of … More →
The post Detecting danger: EASM in the modern security stack appeared first on Help Net Security.
ZDI-CAN-27968: aws-mcp-server
ZDI-CAN-27969: aws-mcp-server
Is Spacecoin on a Mission to Save The World?! - Introducing Internet Decentralization
Embedding Large Language Models as OS-Level APIs: An Overlooked Gateway to AI Safety and Privacy
AI Isn’t a Magical Genius or a Friendly Sidekick — It’s a Supercharged Autocomplete
CVE-2024-42091 | Linux Kernel up to 6.9.7 Setting random values (583ce246c7ff/a918e771e6fb / Nessus ID 210060)
CVE-2024-42089 | Linux Kernel up to 6.9.7 fsl-asoc-card fsl_asoc_card_audmux_init null pointer dereference (Nessus ID 207802 / WID-SEC-2024-1722)
CVE-2024-42090 | Linux Kernel up to 6.9.7 pinctrl create_pinctrl deadlock (Nessus ID 207802 / WID-SEC-2024-1722)
CVE-2024-42087 | Linux Kernel up to 6.9.7 ilitek-ili9881c gpiod_set_value privilege escalation (Nessus ID 207802 / WID-SEC-2024-1722)
Cloudflare Confirms Data Breach – Customer Data Exposed via Salesforce Attack
Cloudflare has disclosed a significant data breach affecting customer information following a sophisticated supply chain attack targeting its Salesforce integration with Salesloft Drift. The incident, which occurred between August 12-17, 2025, resulted in the exposure of customer support case data and potentially sensitive credentials shared through support channels. The Breach Details The cybersecurity company became […]
The post Cloudflare Confirms Data Breach – Customer Data Exposed via Salesforce Attack appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
CVE-2017-11184 | GLPI up to 9.1.4 devicesoundcard.php Home sql injection (Issue 2449 / Nessus ID 260667)
CVE-2018-1137 | Moodle 3.x Portfolio URL input validation (Nessus ID 260664 / ID 13441)
CVE-2019-9072 | GNU binutils 2.32 libbfd elf.c setup_group resource management (K12541829 / Nessus ID 260666)
CVE-2018-2585 | Oracle MySQL Connectors up to 6.9.9/6.10.4 Connector/Net denial of service (Nessus ID 260668 / BID-102674)
TinyLoader Malware Spreads via Network Shares and Malicious Shortcut Files on Windows
A sophisticated malware operation that combines multiple attack vectors to steal cryptocurrency and deliver additional malicious payloads to Windows systems. A recently discovered TinyLoader malware campaign is actively targeting Windows users through a multi-pronged attack strategy involving network share exploitation, USB propagation, and deceptive shortcut files. The malware, which serves as a delivery mechanism for […]
The post TinyLoader Malware Spreads via Network Shares and Malicious Shortcut Files on Windows appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.