Aggregator
CVE-2025-2098 | Beijing Honghu Yuntu Fast CAD Reader up to 4.1.5 File Permission privileges assignment
CVE-2025-27404 | Icinga icingaweb2 up to 2.11.4/2.12.2 Setting cross site scripting (GHSA-c6pg-h955-wf66)
CVE-2025-27405 | Icinga icingaweb2 up to 2.11.4/2.12.2 Setting cross site scripting
Claude is testing ChatGPT-like Deep Research feature Compass
御辰:论攻击面管理在高校信息化建设中的重要性
PolarDB分布式版V2.0:安全可靠的集中分布式一体化数据库管理软件
Top 3 Cyber Attacks In March 2025
March 2025 saw a sharp uptick in cyber threats that put both individual users and organizations at risk. From banking apps weaponized to steal personal data, to trusted domains abused for redirecting users to phishing traps, cybercriminals didn’t hold back. Their tactics are growing more creative and more dangerous. Here’s a breakdown of the three […]
The post Top 3 Cyber Attacks In March 2025 appeared first on Cyber Security News.
YouTube Creators Under Attack via Brand Collaborators Requests Using Clickflix Technique
A sophisticated phishing campaign dubbed the “Clickflix Technique” has emerged targeting YouTube content creators through seemingly legitimate brand collaboration requests. This new attack vector exploits creators’ eagerness to secure sponsorship deals by disguising malware payloads as partnership documentation. Cybercriminals initiate contact via email or social media, posing as marketing representatives from established brands offering lucrative […]
The post YouTube Creators Under Attack via Brand Collaborators Requests Using Clickflix Technique appeared first on Cyber Security News.
Alleged Sale of Unauthorized Access to a Major Airline in Iran
SecWiki News 2025-03-26 Review
Exploited! Kentico Xperience Staging Service Authentication Bypass Vulnerabilities (CVE-2025-2746 & CVE-2025-2747)
Recently, two critical security flaws were discovered in Kentico Xperience 13, a popular digital experience platform (CMS). Tracked as CVE-2025-2746 and CVE-2025-2747, these vulnerabilities allow unauthenticated attackers to bypass the Staging Sync Server’s authentication, potentially gaining administrative control over the CMS. Both issues carry a CVSS score of 9.8 (Critical) (Warning: Multiple Critical & High...
The post Exploited! Kentico Xperience Staging Service Authentication Bypass Vulnerabilities (CVE-2025-2746 & CVE-2025-2747) appeared first on IONIX.
The post Exploited! Kentico Xperience Staging Service Authentication Bypass Vulnerabilities (CVE-2025-2746 & CVE-2025-2747) appeared first on Security Boulevard.