Aggregator
CVE-2024-35676 | wpecommerce Recurring PayPal Donations Plugin up to 1.7 on WordPress cross site scripting
CVE-2024-35657 | Plechev Andrey WP-Recall Plugin up to 16.26.6 on WordPress cross-site request forgery
CVE-2024-35684 | 10up ElasticPress Plugin up to 5.1.0 on WordPress cross-site request forgery
CVE-2024-35675 | ILLID Advanced Woo Labels Plugin up to 1.93 on WordPress cross site scripting
CVE-2024-5389 | lunary-ai lunary up to 1.2.13 insufficient granularity of access control
CVE-2024-4328 | parisneo lollms-webui up to 9.6 Requests clear_personality_files_list cross-site request forgery
CVE-2024-5786 | Comtrend WLD71-T1 GRG-4280us Web Application cross-site request forgery
CVE-2022-45176 | Livebox Collaboration vDesk up to 018 /api/v1/getbodyfile uri cross site scripting
Взлом NYU: от личных данных абитуриентов до споров о расовой политике
Security Onion 24.10 Released: Everything You Need to Know
Security Onion, a widely used open-source platform for network security monitoring, has recently released Security Onion 2.4.140. This latest update focuses on enhancing key components such as Suricata and Zeek, offering improved security and functionality to its users. Below is a breakdown of what’s new and how this release impacts security teams worldwide. Key Component […]
The post Security Onion 24.10 Released: Everything You Need to Know appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
ИИ подставил вице-президента США: аудиофейк с Вансом набрал миллионы просмотров
CVE-2024-0653 | Custom Field Template Plugin up to 2.6.1 on WordPress cross site scripting
CVE-2024-0627 | Custom Field Template Plugin up to 2.6.1 on WordPress Custom Field Name cross site scripting
CVE-2023-6745 | Custom Field Template Plugin up to 2.6.1 on WordPress Shortcode cross site scripting
CVE-2024-5090 | SiteOrigin Widgets Bundle Plugin up to 1.61.1 on WordPress Blog Widget cross site scripting
Massive Cyberattack Disrupts Ukrainian State Railway’s Online Services
The Ukrainian State Railways, known as Ukrzaliznytsia, has experienced a massive disruption to its online services. The railway company issued a statement acknowledging an IT failure, which has temporarily suspended all online operations, impacting ticket sales and other digital services. According to Ukrzaliznytsia’s communication, the shutdown of online services is due to a technical issue, […]
The post Massive Cyberattack Disrupts Ukrainian State Railway’s Online Services appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Rilide Malware Poses as Browser Extension to Steal Login Credentials from Chrome and Edge Users
Rilide, a sophisticated malware, has been masquerading as a legitimate browser extension to steal sensitive information from users of Chromium-based browsers like Google Chrome and Microsoft Edge. First identified in April 2023, this malware is designed to capture screenshots, log passwords, and collect credentials for cryptocurrency wallets. It often disguises itself as a Google Drive […]
The post Rilide Malware Poses as Browser Extension to Steal Login Credentials from Chrome and Edge Users appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
IngressNightmare: Four Critical Bugs Found in 40% of Cloud Systems
Beware Developers – Fake Coding Challenges Will Deploy FogDoor on Your System
Researchers has discovered a sophisticated malware operation that poses as a fake coding challenge and targets Polish-speaking professionals. This campaign, known as “FizzBuzz to FogDoor,” exploits job seekers by disguising malware as legitimate recruitment tests on GitHub. The attackers use a GitHub repository named “FizzBuzz” to host an ISO file titled “Zadanie rekrutacyjne.iso,” which translates […]
The post Beware Developers – Fake Coding Challenges Will Deploy FogDoor on Your System appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.