Aggregator
近五年看过的好书
CVE-2024-1808 | gn_themes WP Shortcodes Plugin up to 7.0.3 on WordPress Shortcode cross site scripting (ID 3041647)
CVE-2024-25831 | F-logic DataCube3 1.0 Web Management Interface cross site scripting
CVE-2024-25930 | Nuggethon Custom Order Statuses for WooCommerce Plugin up to 1.5.2 on WordPress cross-site request forgery
CVE-2024-27517 | Webasyst 2.9.9 Blog cross site scripting (Issue 377)
CVE-2024-1636 | Progress Sitefinity prior 13.3.7649/14.4.8135/15.0.8227 Page Editing Area cross site scripting
CVE-2023-50303 | IBM InfoSphere Information Server 11.7 Web UI cross site scripting (XFDB-273333)
CVE-2024-1970 | SourceCodester Online Learning System V2 1.0 /index.php page cross site scripting
Cisco Webex bug lets hackers gain code execution via meeting links
Multi-Stage Malware Attack Uses .JSE and PowerShell to Deploy Agent Tesla and XLoader
Akira
Data Is on the Menu ? and AI?s Market Price Is High
KeyPlug Malware Server Leak Exposes Fortinet Firewall and VPN Exploitation Tools
Cybersecurity researchers have stumbled upon a treasure trove of operational tools and scripts linked to the KeyPlug malware, associated with the threat group RedGolf, also known as APT41. The server, which was inadvertently exposed for less than 24 hours, provided an unprecedented glimpse into the sophisticated tactics, techniques, and procedures (TTPs) employed by this advanced […]
The post KeyPlug Malware Server Leak Exposes Fortinet Firewall and VPN Exploitation Tools appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
SpyMax Android Spyware: Full Remote Access to Monitor Any Activity
Threat intelligence experts at Perplexity uncovered an advanced variant of the SpyMax/SpyNote family of Android spyware, cleverly disguised as the official application of the Chinese Prosecutor’s Office (检察院). This malicious software was targeting Chinese-speaking users in mainland China and Hong Kong in what appears to be a sophisticated cyber espionage campaign. Exploiting Android Accessibility Services […]
The post SpyMax Android Spyware: Full Remote Access to Monitor Any Activity appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
PoC Released for Linux Kernel Vulnerability Allowing Privilege Escalation
A security vulnerability, tracked as CVE-2024-53141, has recently come to light in the Linux kernel’s ipset component. This flaw enables out-of-bounds (OOB) write on the kernel heap, which threat actors can exploit to execute arbitrary code with elevated privileges. Security researchers have now released a proof-of-concept (PoC) exploit, escalating concerns about possible real-world attacks on unpatched […]
The post PoC Released for Linux Kernel Vulnerability Allowing Privilege Escalation appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.