Aggregator
ChatGPT 修复 ShadowLeak 漏洞
俄罗斯勒索软件团队利用 CountLoader 扩大攻击范围
俄罗斯航空公司遭网络攻击
Global Spyware Markets to Identify New Entities Entering The Market
The global spyware market continues its alarming expansion, with new research revealing the emergence of 130 additional entities spanning 46 countries between 1992 and 2024. This shadowy ecosystem of surveillance technologies has grown from 435 documented entities in the initial assessment to 561 organizations, fundamentally reshaping the landscape of offensive cyber capabilities. The proliferation extends […]
The post Global Spyware Markets to Identify New Entities Entering The Market appeared first on Cyber Security News.
CVE-2025-10716 | Creality Cloud App up to 6.1.0 on Android com.cxsw.sdprinter AndroidManifest.xml improper export of android application components
CVE-2025-10715 | APEUni PTE Exam Practice App up to 10.8.0 on Android com.ape_edication AndroidManifest.xml improper export of android application components
CVE-2025-7702 | Pusula Manageable Email Sending System prior 2025.08.06 redirect
CVE-2025-9906 | Keras up to 3.10.x enable_unsafe_deserialization
CVE-2025-9905 | Keras up to 3.11.2 Model Archive File Model.load_model dynamically-managed code resources
CVE-2025-10715 | APEUni PTE Exam Practice App up to 10.8.0 on Android com.ape_edication AndroidManifest.xml improper export of android application components
Submit #645009: Creality Cloud 6.1.0 Task Hijacking [Accepted]
Russian Airline Hit by Cyberattack, Website and Systems Disrupted
Russian regional carrier KrasAvia is grappling with a major IT outage after what appears to be a cyberattack. Passengers have been unable to buy tickets online, and flight operations have been forced to switch to manual procedures. The airline confirmed the disruption to local media but has not provided a timeline for restoring normal service. […]
The post Russian Airline Hit by Cyberattack, Website and Systems Disrupted appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
CVE-2025-29847 | Apache Linkis up to 1.7.0 JDBC Engine information disclosure
Submit #645006: APEUni Edu APEUni 10.8.0 Task Hijacking [Accepted]
CVE-2025-59355 | Apache Linkis up to 1.7.0 org.apache.linkis.metadata.util.HiveUtils.decode log file
WAFSmith: A New Open-Source Tool Uses LLMs to Revolutionize WAF Management
Leveraging on LLM’s abilities to mimic cognitive human agents, WAFSmith aims to reduce the friction of WAF rule
The post WAFSmith: A New Open-Source Tool Uses LLMs to Revolutionize WAF Management appeared first on Penetration Testing Tools.
New Tigera solution protects AI workloads from data ingestion to deployment
Tigera announced a new solution to secure AI workloads running in Kubernetes clusters. Due to the resource-intensive and bursty nature of AI workloads, Kubernetes has become the de facto orchestrator for deploying them. However AI workloads introduce security challenges, throughout the data ingestion and preparation, model training, and deployment stages. Calico is purpose-built to protect mission-critical AI workloads at every stage. The platform provides a set of features enabling organizations to scale their AI initiatives … More →
The post New Tigera solution protects AI workloads from data ingestion to deployment appeared first on Help Net Security.