Aggregator
Hundreds of Malicious GitHub Repos Targeting Novice Cybercriminals Traced to Single User
Sophos X-Ops researchers have identified over 140 GitHub repositories laced with malicious backdoors, orchestrated by a single threat actor associated with the email address ischhfd83[at]rambler[.]ru. Initially sparked by a customer inquiry into the Sakura RAT, a supposed open-source malware touted for its “sophisticated anti-detection capabilities,” the investigation revealed a much broader and more insidious campaign. […]
The post Hundreds of Malicious GitHub Repos Targeting Novice Cybercriminals Traced to Single User appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
SecWiki News 2025-06-06 Review
IP也有“身份”:揭秘IP背后隐藏的组织真相 by ourren
基于大模型的威胁情报分析与知识图谱构建 by ourren
证券公司互联网终端一体化安全实践探索 by ourren
更多最新文章,请访问SecWiki
反通讯监控办公指南:吱吱软件实现通讯全流程隐私保护
从私有化部署到加密:吱吱构建不被监控的企业通讯办公系统
据称,谷歌即将推出的双子座 Kingfall 是一款编码怪兽
【资讯】全球特定国家每日动态2025.6.6
CVE-2025-4563
思科 IMC 漏洞攻击者利用提升的权限访问内部服务
ClickFix Attack Uses Fake Cloudflare Verification to Silently Deploy Malware
A newly identified social engineering attack dubbed “ClickFix” has emerged as a significant threat, leveraging meticulously crafted fake Cloudflare verification pages to trick users into executing malicious code on their devices. This phishing tactic, disguised as a routine security check, exploits the familiarity of Cloudflare’s Turnstile CAPTCHA interface to deceive users into running hidden PowerShell […]
The post ClickFix Attack Uses Fake Cloudflare Verification to Silently Deploy Malware appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
新 Eleven11bot 黑客攻击 86,000 台 IP 摄像机,发动大规模 DDoS 攻击
VMware NSX XSS 漏洞允许攻击者注入恶意代码
Kettering Health confirms Interlock ransomware behind cyberattack
美国电话电报公司(AT&T)再次遭遇大规模身份数据泄露事件
CVE-2025-41646 | Kunbus Revolution Pi Webstatus up to 2.4.5 type conversion (Kunbus-2025-000000 / EUVD-2025-17316)
CVE-2025-38002 | Linux Kernel up to 6.14.7 io_uring_show_fdinfo information disclosure
CVE-2025-38001 | Linux Kernel up to 6.15.0 net_sched cl_nactive infinite loop
美国 CISA 将谷歌 Chromium V8 漏洞列入已知漏洞目录
全球勒索软件攻击激增,人工智能加速了勒索软件的威胁
DragonForce Ransomware Reportedly Compromised Over 120 Victims in the Past Year
DragonForce, a ransomware group first identified in fall 2023, has claimed over 120 victims in the past year, marking its rapid ascent as a formidable player in the ransomware ecosystem. Initially operating under a Ransomware-as-a-Service (RaaS) model, DragonForce has since pivoted to a ransomware cartel structure, as announced in March 2025 on its data leak […]
The post DragonForce Ransomware Reportedly Compromised Over 120 Victims in the Past Year appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.