Aggregator
CVE-2025-3158 | Open Asset Import Library Assimp 5.4.3 LWO File LWOAnimation.cpp UpdateAnimRangeSetup heap-based overflow (Issue 6023)
Submit #542437: Shenzhen Tenda Technology Co., Ltd. Tenda AC10 V4.0 V16.03.10.13 Router V16.03.10.13 Stack-based Buffer Overflow [Accepted]
GoResolver: A Powerful New Tool for Analyzing Golang Malware
Analyzing malware has become increasingly challenging, especially with the growing popularity of programming languages like Golang. Golang, or Go, has captivated developers for its extensive features but has also proven to be an attractive choice for malware authors, thanks to its embedded libraries, sizable binaries, and potential for obfuscation. To combat these challenges, Volexity has […]
The post GoResolver: A Powerful New Tool for Analyzing Golang Malware appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Submit #542248: Open Asset Import Library Assimp >=5.4.3 Out-of-Bounds Read [Accepted]
Submit #542247: Open Asset Import Library Assimp >=5.4.3 Heap-based Buffer Overflow [Accepted]
Submit #542246: Open Asset Import Library Assimp >=5.4.3 Heap-based Buffer Overflow [Accepted]
Новая эра преследования: как нейросети превращают обычных женщин в порнозвёзд без их ведома
Nintendo представила устройство, которое одновременно спасет и разрушит ваши выходные
CVE-2025-30485 | Century Systems FutureNet WXR-250 External Storage symlink
CVE-2025-2055 | MapPress Maps Plugin up to 2.94.8 on WordPress cross site scripting
Submit #525417: PHPGurukul Boat Booking System-PHP V1.0 SQL Injection [Duplicate]
The Evolution of Smishing: 3 Ways to Detect and Prevent Attacks
Smishing has evolved dramatically in recent years, with increased attack frequency and a much higher quality of the fraudulent landing pages.
The post The Evolution of Smishing: 3 Ways to Detect and Prevent Attacks appeared first on Security Boulevard.
Beware fake AutoCAD, SketchUp sites dropping malware
Malware peddlers are saddling users with the TookPS downloader and the Lapmon and TeviRat backdoors via malicious sites that mimic official ones and ostensibly offer legitimate software for download, Kaspersky researchers have warned. Malicious websites (Source: Kaspersky) The list of impersonated software includes: UltraViewer (remote desktop software) AutoCAD (2D and 3D computer-aided design software app) SketchUp (3D modeling software) Ableton (music production software) Quicken (personal finance app) “To protect against these attacks, users are advised … More →
The post Beware fake AutoCAD, SketchUp sites dropping malware appeared first on Help Net Security.
Cisco Smart Licensing Utility Flaws Allowed Attackers to Gain Admin Access
Cisco has disclosed critical vulnerabilities in its Smart Licensing Utility software, identified as CVE-2024-20439 and CVE-2024-20440, which could allow unauthenticated, remote attackers to gain administrative access or collect sensitive information from compromised systems. These flaws, rated with a severity score of 9.8 in the Common Vulnerability Scoring System (CVSS), pose significant security risks to organizations […]
The post Cisco Smart Licensing Utility Flaws Allowed Attackers to Gain Admin Access appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
New guidance on securing HTTP-based APIs
任天堂将第一方游戏售价提高到 70/80 美元
Непрерывная пассивная аутентификация — новый метод борьбы с кражей токенов сессии
Verizon Call Filter App Vulnerability Exposed Call Log Data of Customers
A vulnerability in Verizon’s Call Filter app for iOS has been discovered, allowing unauthorized access to customer call logs. This flaw allowed any individual with the requisite technical knowledge to retrieve incoming call data—complete with timestamps—for any Verizon phone number, posing serious risks to privacy and safety. The Vulnerability Unveiled The Verizon Call Filter app […]
The post Verizon Call Filter App Vulnerability Exposed Call Log Data of Customers appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.