Aggregator
CVE-2024-25938 | Foxit Reader 2024.1.0.23997 PDF Document use after free (TALOS-2024-1958)
CVE-2024-25648 | Foxit Reader 2024.1.0.23997 PDF Document use after free (TALOS-2024-1959)
CVE-2024-25575 | Foxit Reader 2024.1.0.23997 PDF Document type confusion (TALOS-2024-1963)
CVE-2023-49606 | Tinyproxy 1.10.0/1.11.1 HTTP Connection Header use after free (TALOS-2023-1889 / Nessus ID 211167)
На экране — поиск угроз, по факту — тотальная слежка. Антивирус с гербом РФ оказался шпионом
Arch Linux 遭遇 DDoS 攻击
CVE-2024-8266 | GitLab Community Edition/Enterprise Edition up to 17.5.x unnecessary privileges (Issue 481531 / Nessus ID 253576)
CVE-2025-45765 | ruby-jwt 3.0.0.beta1 inadequate encryption (Issue 668 / Nessus ID 253579)
CVE-2025-55014 | StarDict YouDao Plugin up to 3.0.7+git20220909+dfsg-6 transmission of private resources into a new sphere ('resource leak') (Nessus ID 253578)
CVE-2024-7102 | GitLab Community Edition/Enterprise Edition up to 17.4.x unnecessary privileges (Issue 474414 / Nessus ID 253580)
CVE-2025-50952 | OpenJPEG 2.5.0 /openjp2/dwt.c null pointer dereference (Issue 1505 / Nessus ID 253586)
CVE-2025-47183 | GStreamer up to 1.26.1 MP4 File Parser qtdemux_parse_tree information disclosure (Nessus ID 253584 / WID-SEC-2025-1171)
CVE-2025-8585 | libav up to 12.3 DSS File Demuxer /avtools/avconv.c main double free (ID 11680 / Nessus ID 253581)
Help TDS Hacks Legitimate Websites, Using PHP Templates to Display Fake Microsoft Security Alerts
GoDaddy Security researchers have unveiled a detailed analysis of Help TDS, a sophisticated Traffic Direction System operational since at least 2017, which exploits compromised websites to funnel traffic toward malicious scams. This operation supplies affiliates with PHP code templates that are injected into legitimate sites, primarily WordPress installations, to redirect visitors to fraudulent pages mimicking […]
The post Help TDS Hacks Legitimate Websites, Using PHP Templates to Display Fake Microsoft Security Alerts appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Google 数据中心的用水量
CVE-2023-20089 | Cisco Nexus 9000 ACI Mode Link Layer Discovery Protocol denial of service (cisco-sa-aci-lldp-dos-ySCNZOpX / EUVD-2023-24268)
20-year-old Scattered Spider Member Sentenced to 10 Years in Prison
Noah Michael Urban, a 20-year-old Florida man, was sentenced for his role as a member of the notorious Scattered Spider threat group in a series of phishing and other scams between 2022 and 2023 in which they got victims' credentials and used them to steal corporate information, customer data, and cryptocurrency.
The post 20-year-old Scattered Spider Member Sentenced to 10 Years in Prison appeared first on Security Boulevard.
Аренда квартир, фишинг и кража данных. Как работает крупнейшая экосистема киберпреступников в 2025 году
Interpol-led crackdown disrupts cybercrime networks in Africa that caused $485 million in losses
Operation Serengeti 2.0 dismantled almost 11,500 malicious infrastructures between June and August. Officials arrested more than 1,200 alleged cybercriminals.
The post Interpol-led crackdown disrupts cybercrime networks in Africa that caused $485 million in losses appeared first on CyberScoop.