Aggregator
【安全圈】“Grafana Ghost”漏洞曝光,近四成公网实例仍未修复
【安全圈】“微软修复 Windows Hello 欺骗漏洞:黑暗中人脸识别功能被禁用”
【安全圈】多校禁用引发热搜,罗马仕大规模召回充电宝
【安全圈】新兴勒索软件 Anubis 具备文件擦除功能,即便支付赎金也难以恢复数据
ASUS Armoury Crate Vulnerability Lets Hackers Gain System-Level Access on Windows
A critical vulnerability in ASUS’s popular Armoury Crate software has exposed millions of Windows users to the risk of system-level compromise, according to a recent disclosure by Cisco Talos and confirmed by ASUS. The flaw, tracked as CVE-2025-3464, allows attackers to bypass security controls and gain the highest level of privileges on affected systems, potentially […]
The post ASUS Armoury Crate Vulnerability Lets Hackers Gain System-Level Access on Windows appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
CISA 将TP-Link 路由器高危漏洞纳入KEV
华硕 Armoury Crate漏洞可导致攻击者获取Windows 管理员权限
Attackers target Zyxel RCE vulnerability CVE-2023-28771
Hard-Coded 'b' Password in Sitecore XP Sparks Major RCE Risk in Enterprise Deployments
Backups Are Under Attack: How to Protect Your Backups
ФБР вернуло крипту SafeMoon. Но большая часть улетела… другому хакеру
美国最主要的新闻来源如今是社交媒体
发布 | 国家标准GB/T 45574—2025《数据安全技术 敏感个人信息处理安全要求》全文
警惕 | 境外间谍情报机关利用“钓鱼”邮件开展网攻窃密
智慧未来 少年守护丨第五届极客少年挑战赛正式启幕!
专题·网安人才评价体系 | 网络安全人才评价的分析与实践
Water Curse Hacker Group Uses 76 GitHub Accounts to Spread Multistage Malware
A newly identified threat actor known as Water Curse has been linked to a sprawling campaign utilizing at least 76 GitHub accounts to distribute weaponized repositories packed with multistage malware. This financially motivated group leverages the inherent trust in open-source platforms to target a diverse range of victims, including cybersecurity professionals, red teamers, penetration testers, […]
The post Water Curse Hacker Group Uses 76 GitHub Accounts to Spread Multistage Malware appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Critical sslh Vulnerabilities Allow Remote Denial-of-Service Attacks
Security researchers disclosed two critical vulnerabilities in sslh, a widely used protocol multiplexer that enables multiple services—such as SSH, HTTPS, and OpenVPN—to share a single network port. These flaws, tracked as CVE-2025-46807 and CVE-2025-46806, could allow remote attackers to crash sslh or render it unavailable, resulting in a denial-of-service (DoS) for legitimate users. CVE ID […]
The post Critical sslh Vulnerabilities Allow Remote Denial-of-Service Attacks appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.