Aggregator
Lynx
10 months 2 weeks ago
cohenido
Tria Stealer Malware Exploits Android Devices to Harvest SMS Data
10 months 2 weeks ago
Cybersecurity researchers have uncovered a sophisticated Android malware campaign known as “Tria Stealer,” which is targeting users in Malaysia and Brunei to collect sensitive information such as SMS data, call logs, WhatsApp messages, and emails. The malware campaign, which has been active since March 2024, uses wedding invitations as a lure to trick victims into […]
The post Tria Stealer Malware Exploits Android Devices to Harvest SMS Data appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Divya
2 - CVE-2024-50338
10 months 2 weeks ago
Currently trending CVE - hypeScore: 9 - Git Credential Manager (GCM) is a secure Git credential helper built on .NET that runs on Windows, macOS, and Linux. The Git credential protocol is text-based over standard input/output, and consists of a series of lines of key-value pairs in the format `key=value`. Git's documen
1 - CVE-2024-53263
10 months 2 weeks ago
Currently trending CVE - hypeScore: 9 - Git LFS is a Git extension for versioning large files. When Git LFS requests credentials from Git for a remote host, it passes portions of the host's URL to the `git-credential(1)` command without checking for embedded line-ending control characters, and then sends any credential
Comunicare per proteggere: strategie e strumenti per implementare i requisiti ISO 27001
10 months 2 weeks ago
Il requisito 7.4 della ISO/IEC 27001:2022 riveste un’importanza strategica nella protezione delle in
Bilanciare i rischi di security beneficiando di tecnologie di AI: fra opportunità e rischi
10 months 2 weeks ago
Investire e innovare mediante soluzioni di intelligenza artificiale può essere un valido volano di c
DeepSeek: i timori per la privacy e la cyber security
10 months 2 weeks ago
Sebbene le potenzialità di DeepSeek siano evidenti, tanto da essere diventata l’app gratuita di AI g
DeepSeek, serve cautela: ci sono pericoli per la sicurezza
10 months 2 weeks ago
DeepSeek, che in queste ore ha cambiato il mondo dell’IA, ha recentemente raggiunto la vetta della c
Smishing a tema Poste Italiane: i dettagli e come difendersi
10 months 2 weeks ago
Il CSIRT ha rilevato una campagna di phishing via SMS (smishing) a tema Poste Italiane, mirata a car
Più cyber attacchi nel 2024. E nel 2025 il trend non si fermerà
10 months 2 weeks ago
Le feste sono finite ma sembrerebbe che “la festa” di attacchi informatici non accenni a terminare.
UK Organizations Boost Cybersecurity Budgets
10 months 2 weeks ago
UK organizations are significantly increasing cybersecurity budgets, with a projected 31% growth in the next year
收藏 | dotNet安全矩阵 2024 年度外网入口打点阶段文章和工具汇总
10 months 2 weeks ago
国内最专业、最全面的 [ .NET 代码审计 ] 体系化学习交流社区
10 months 2 weeks ago
收藏 | dotNet安全矩阵 2024 年度目标权限维持阶段文章和工具汇总
10 months 2 weeks ago
CVE-2025-0874 | code-projects Simple Plugins Car Rental Management 1.0 /admin/approve.php id sql injection
10 months 2 weeks ago
A vulnerability, which was classified as critical, has been found in code-projects Simple Plugins Car Rental Management 1.0. Affected by this issue is some unknown functionality of the file /admin/approve.php. The manipulation of the argument id leads to sql injection.
This vulnerability is handled as CVE-2025-0874. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
Клавиатура под микроскопом: слежка за сотрудниками стала новой нормой
10 months 2 weeks ago
Работодатели превращают домашние офисы в зоны контроля, а сотрудники готовы платить за свою приватность.
CVE-2025-0873 | itsourcecode Tailoring Management System 1.0 /customeredit.php sql injection
10 months 2 weeks ago
A vulnerability classified as critical was found in itsourcecode Tailoring Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /customeredit.php. The manipulation of the argument id/address/fullname/phonenumber/email/city/comment leads to sql injection.
This vulnerability is known as CVE-2025-0873. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-0872 | itsourcecode Tailoring Management System 1.0 /addpayment.php id/amount/desc/inccat sql injection
10 months 2 weeks ago
A vulnerability classified as critical has been found in itsourcecode Tailoring Management System 1.0. Affected is an unknown function of the file /addpayment.php. The manipulation of the argument id/amount/desc/inccat leads to sql injection.
This vulnerability is traded as CVE-2025-0872. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-0861 | vruizg VR-Frases Plugin up to 3.0.1 on WordPress several sql injection
10 months 2 weeks ago
A vulnerability was found in vruizg VR-Frases Plugin up to 3.0.1 on WordPress. It has been rated as critical. This issue affects some unknown processing. The manipulation of the argument several leads to sql injection.
The identification of this vulnerability is CVE-2025-0861. The attack may be initiated remotely. There is no exploit available.
vuldb.com