Aggregator
Microsoft uses AI to find flaws in GRUB2, U-Boot, Barebox bootloaders
U.S. CISA adds Cisco Smart Licensing Utility flaw to its Known Exploited Vulnerabilities catalog
CVE-2024-34369 | Webpushr Plugin up to 4.35.0 on WordPress cross site scripting
CVE-2024-34379 | Rara Theme Restaurant and Cafe Plugin up to 1.2.1 on WordPress cross-site request forgery
CVE-2024-34413 | SliceWP Plugin up to 1.1.10 on WordPress cross site scripting
CVE-2024-28725 | YzmCMS 7.0 cross site scripting
CVE-2024-34367 | Popup Box Plugin up to 4.1.2 on WordPress cross-site request forgery
CVE-2023-33548 | Asus RT-AC51U up to 3.0.0.4.380.8591 WPA Pre-Shared Key cross site scripting
CVE-2024-34481 | Drupal Wiki 8.30/8.31.0 Page cross site scripting
Десять минут обновления, годы защиты: Apple закрыла 62 уязвимости
Operation HollowQuill – Weaponized PDFs Deliver a Cobalt Strike Malware Into Gov & Military Networks
In a recent revelation by SEQRITE Labs, a highly sophisticated cyber-espionage campaign, dubbed Operation HollowQuill, has been uncovered. The operation targets academic, governmental, and defense-related networks in Russia using weaponized decoy PDFs to deliver Cobalt Strike malware implants. The campaign appears to focus on infiltrating critical institutions such as the Baltic State Technical University (BSTU […]
The post Operation HollowQuill – Weaponized PDFs Deliver a Cobalt Strike Malware Into Gov & Military Networks appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
CVE-2025-2266
CVE-2024-0402
Earth Alux Hackers Use VARGIET Malware to Target Organizations
A new wave of cyberattacks orchestrated by the advanced persistent threat (APT) group Earth Alux has been uncovered, revealing the use of sophisticated malware, including the VARGEIT backdoor, to infiltrate critical industries. Linked to China, Earth Alux has been targeting organizations across the Asia-Pacific (APAC) region and Latin America since 2023, focusing on sectors such […]
The post Earth Alux Hackers Use VARGIET Malware to Target Organizations appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Apple security advisory (AV25-177)
“Lazarus Hackers Group” No Longer Refer to a Single APT Group But a Collection of Many Sub-Groups
The term “Lazarus Group,” once used to describe a singular Advanced Persistent Threat (APT) actor, has evolved to represent a complex network of sub-groups operating under shared objectives and tactics. This shift reflects the growing scale and diversification of their cyber activities, making traditional classifications increasingly obsolete. Security analysts now argue that “Lazarus” serves as […]
The post “Lazarus Hackers Group” No Longer Refer to a Single APT Group But a Collection of Many Sub-Groups appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.