Aggregator
Троян в консоли Windows: поддельные пути стали инструментом взлома
【安全圈】国际刑警“红牌行动”收获:非洲多国联手破获特大跨国网络犯罪集团
【安全圈】Cloudflare R2服务中断事件:密码轮换错误引发全球故障
【安全圈】Cloudflare推出AI迷宫用于应对AI爬虫,以AI治AI师夷长技以制夷
【安全圈】谷歌Chrome在线安装程序出现错误导致Windows 10/11安装都提示无法运行
慢雾:深入探讨 EIP-7702 与最佳实践
慢雾:深入探讨 EIP-7702 与最佳实践
慢雾:深入探讨 EIP-7702 与最佳实践
慢雾:深入探讨 EIP-7702 与最佳实践
慢雾:深入探讨 EIP-7702 与最佳实践
APT Hackers Exploit Google Chrome Zero-Day in Operation ForumTroll to Bypass Sandbox Protections
In mid-March 2025, Kaspersky researchers uncovered a sophisticated APT attack, dubbed Operation ForumTroll, which leveraged a previously unknown zero-day exploit in Google Chrome. This exploit allowed attackers to bypass Chrome’s sandbox protections, a critical security feature designed to isolate and contain malicious code. The attack was initiated through personalized phishing emails, which directed victims to […]
The post APT Hackers Exploit Google Chrome Zero-Day in Operation ForumTroll to Bypass Sandbox Protections appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
警惕!多阶段信息窃取型恶意软件 SnakeKeylogger 攻击个人与企业以窃取登录信息
H5N1 禽流感在英国传播到绵羊
Weekoverzicht Defensieoperaties
Google fixes exploited Chrome sandbox bypass zero-day (CVE-2025-2783)
Google is in the process of rolling out Chrome v134.0.6998.178 to Windows users to fix CVE-2025-2783, a zero-day vulnerability that allowed attackers to to bypass Chrome sandbox protections. The vulnerability was flagged by Kaspersky researchers, who discovered it being exploited by a suspected state-sponsored APT group to target media outlets and educational institutions in Russia. About CVE-2025-2783 Google explains the source of the flaw thus: “Incorrect handle provided in unspecified circumstances in Mojo on Windows.” … More →
The post Google fixes exploited Chrome sandbox bypass zero-day (CVE-2025-2783) appeared first on Help Net Security.
New Sophisticated Linux Backdoor Targets OT Systems via 0-Day RCE Exploit
Researchers at QiAnXin XLab have uncovered a sophisticated Linux-based backdoor dubbed OrpaCrab, specifically targeting industrial systems associated with ORPAK, a company involved in gas stations and oil transportation. The malware, which was uploaded to VirusTotal in January 2024 from the U.S., employs advanced techniques to evade detection and maintain persistence on compromised systems. Exploitation of […]
The post New Sophisticated Linux Backdoor Targets OT Systems via 0-Day RCE Exploit appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.