Aggregator
Scattered Spider Targets Tech Companies with Phishing Frameworks like Evilginx and Social Engineering Tactics
The notorious hacking collective Scattered Spider, also known as UNC3944 or Octo Tempest, has emerged as a formidable threat to high-value industries, with a particular focus on technology, finance, and retail sectors. Recent research reveals that 81% of the group’s registered domains impersonate technology vendors, aiming to harvest credentials from high-value targets such as system […]
The post Scattered Spider Targets Tech Companies with Phishing Frameworks like Evilginx and Social Engineering Tactics appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
CVE-2025-38090 | Linux Kernel up to 6.16-rc1 drivers/rapidio/rio_cm.c cm_chan_msg_send allocation of resources
CVE-2025-38088 | Linux Kernel up to 6.16-rc1 memtrace out-of-bounds
Scattered Spider Actively Targeting Airlines, FBI Warns
CVE-2025-38087 | Linux Kernel up to 6.6.94/6.12.34/6.15.3/6.16-rc2 taprio_dev_notifier use after free
CVE-2025-38089 | Linux Kernel up to 6.6.94/6.12.34/6.15.3/6.16-rc2 sunrpc privilege escalation
Ваш сайт на Let's Encrypt? Готовьтесь к полной автоматизации или риску сбоев
上周关注度较高的产品安全漏洞(20250623-20250629)
CNVD漏洞周报2025年第24期
CVE-2004-0511 | SCO OpenServer 5.0.6/5.0.6a/5.0.7 denial of service (EDB-24293 / XFDB-16739)
Norwegian Dam Valve Forced Open for Hours in Cyberattack
中国数字安全产业年度报告(2025)公开版
CVE-2025-49180 | X.org X11 Server RandR Extension RRChangeProviderProperty integer overflow (EUVD-2025-18511 / Nessus ID 240228)
CVE-2025-49179 | X.org X11 Server TigerVNC RecordSanityCheckRegisterClients integer overflow (EUVD-2025-18500 / Nessus ID 240228)
CVE-2025-49176 | X.org X11 Server TigerVNC integer overflow (EUVD-2025-18503 / Nessus ID 240228)
Comparing Semgrep Community and Code for Static Analysis
Threat Actors Impersonate WPS Office and DeepSeek to Spread Sainbox RAT
A malicious campaign has emerged, targeting Chinese-speaking users through fake installers of popular software such as WPS Office, Sogou, and DeepSeek. This operation, attributed with medium confidence to the China-based adversary group Silver Fox, leverages phishing websites that mimic legitimate software portals to distribute malware payloads, primarily in the form of MSI files. Sophisticated Phishing […]
The post Threat Actors Impersonate WPS Office and DeepSeek to Spread Sainbox RAT appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.