Aggregator
Gladinet flaw CVE-2025-30406 actively exploited in the wild
参与实施亚冬会网络攻击,3名美国特工被我公安机关悬赏通缉;肾透析巨头DaVita遭遇勒索软件攻击,部分运营受影响 | 牛览
Samsung Galaxy S24 Vulnerability Let Create Arbitrary Files on Affected Installations
A significant vulnerability in Samsung Galaxy S24 devices that allows network-adjacent attackers to create arbitrary files on affected installations. The flaw, identified as CVE-2024-49421, was publicly announced on April 9, 2025, as part of the Pwn2Own competition findings. The vulnerability, tracked as ZDI-25-229 (ZDI-CAN-25650), received a CVSS score of 5.9 (AV:A/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:L), indicating a medium-to-high severity […]
The post Samsung Galaxy S24 Vulnerability Let Create Arbitrary Files on Affected Installations appeared first on Cyber Security News.
《数据安全技术 网络数据爬取行为规范》国家标准立项汇报
《数据安全技术 网络数据爬取行为规范》国家标准立项汇报
微软提醒Windows 11用户勿删除神秘的"inetpub"文件夹
Huntress 记录了 Gladinet 关键漏洞的野外利用情况
CVE-2023-46818
CVE-2023-4966
CVE-2024-7971
CVE-2023-27997
macOS Users Beware! Hackers Allegedly Offering Full System Control Malwares for Rent
A new concerning threat has emerged in the cybercriminal ecosystem targeting Apple users. A sophisticated macOS malware-as-a-service offering called “iNARi Loader” is being advertised on underground forums. This high-priced stealer represents an alarming evolution in the growing landscape of macOS-specific malware, combining remote desktop capabilities with advanced data exfiltration techniques. According to a dark web […]
The post macOS Users Beware! Hackers Allegedly Offering Full System Control Malwares for Rent appeared first on Cyber Security News.
趋势科技警告 Nvidia 补丁不完整,导致 AI 容器暴露风险
Pinta 3.0 释出
Why shorter SSL/TLS certificate lifespans matter
Digital certificates are the unsung heroes of the internet, silently verifying that the websites, apps, and services you use are legit and your data is safe. For years, we’ve leaned on certificates with maximum validity term stretching for months and, in some cases, even years. While convenient, these long-lived certificates are increasingly risky, and now the industry’s major browser makers, like Apple and Google, are throwing down the gauntlet: 90-day maximum validity term from Google, … More →
The post Why shorter SSL/TLS certificate lifespans matter appeared first on Help Net Security.