Aggregator
CVE-2025-1514 | Active Products Tables for WooCommerce Plugin up to 1.0.6.7 on WordPress get_smth improper authentication
CVE-2025-2257 | Total Upkeep Plugin up to 1.16.10 on WordPress Setting proc_open compression_level command injection
CVE-2024-13801 | Xenioushk BWL Advanced FAQ Manager Plugin up to 2.1.4 on WordPress baf_set_notice_status authorization
CVE-2025-2009 | contrid Newsletters Plugin up to 4.9.9.7 on WordPress cross site scripting
一图读懂 | 《工业互联网安全分类分级管理办法》
中消协提示:警惕手机“免密支付”风险
前沿 | 从DeepSeek看人工智能自主创新的战略价值
外交部:敦促美方立即停止利用全球供应链实施恶意网络活动
发布 | 中国网络安全产业联盟发布《美情报机构针对全球移动智能终端实施的监听窃密活动》(附下载)
刘烈宏:以高质量数据促进人工智能发展,国家数据局将开展四方面工作
通知 | 《工业互联网安全分类分级管理办法》全文公布
Critical NetApp SnapCenter Server Vulnerability Allows Attackers to Gain Admin Access
A critical vulnerability has been identified in NetApp’s SnapCenter Server, affecting versions before 6.0.1P1 and 6.1P1. This flaw allows an authenticated SnapCenter Server user to potentially escalate their privileges to admin on remote systems where SnapCenter plug-ins are installed. The vulnerability has been designated as CVE-2025-26512 and carries a Critical severity rating with a CVSS […]
The post Critical NetApp SnapCenter Server Vulnerability Allows Attackers to Gain Admin Access appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Фишинг уровня Pro: у игроков в CS2 крадут аккаунты через фейковые окна авторизации
Raspberry Robin Unveils 200 Unique Domains Used by Threat Actors
In a significant development, cybersecurity firm Silent Push has identified nearly 200 unique command and control (C2) domains associated with the Raspberry Robin malware. This discovery sheds new light on the infrastructure used by this sophisticated threat actor group, which has evolved from a USB worm to a formidable initial access broker (IAB) for various […]
The post Raspberry Robin Unveils 200 Unique Domains Used by Threat Actors appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Akira
Sarcoma
[Meachines] [Medium] Lazy Padding-Oracle+AES_CBC+路径劫持权限提升
RansomHub
Clevo Devices Vulnerable as Boot Guard Private Key Leaks via Firmware Updates
A recent investigation has revealed that several Clevo-based devices are vulnerable due to a leak of Boot Guard private keys. This vulnerability was first reported on the Win-Raid forum and involves firmware updates containing sensitive Boot Guard Key Manifest (KM) and Boot Policy Manifest (BPM) private keys. Boot Guard is a security technology used by […]
The post Clevo Devices Vulnerable as Boot Guard Private Key Leaks via Firmware Updates appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.