Aggregator
CVE-2025-9645 | itsourcecode Apartment Management System 1.0 r_all_info.php mid sql injection
CVE-2025-9644 | itsourcecode Apartment Management System 1.0 /setting/bill_setup.php txtBillType sql injection
CVE-2025-9643 | itsourcecode Apartment Management System 1.0 utility_bill_setup.php txtGasBill sql injection
Submit #636625: o2oa ≤ 10.0-410-g3d5e0d2 XSS [Accepted]
国家网络安全通报中心:重点防范境外恶意网址和恶意IP
新型AI攻击借助图像植入恶意提示词窃取用户数据
国家网络安全通报中心:重点防范境外恶意网址和恶意IP
新型AI攻击借助图像植入恶意提示词窃取用户数据
New framework aims to outsmart malware evasion tricks
Attackers have learned how to trick machine learning malware detectors with small but clever code changes, and researchers say they may finally have an answer. In a new paper, academics from Inria and the CISPA Helmholtz Center for Information Security describe a framework that can withstand these kinds of evasion attempts. Their work focuses on adversarial examples in malware detection, where attackers alter software in ways that preserve its function but confuse the model into … More →
The post New framework aims to outsmart malware evasion tricks appeared first on Help Net Security.
Submit #636506: itsourcecode Apartment Management System V1.0 SQL injection [Accepted]
Submit #636372: itsourcecode Apartment Management System V1.0 SQL injection [Accepted]
Submit #636371: itsourcecode Apartment Management System V1.0 SQL injection [Accepted]
CVE-2025-7719 | GE Vernova CIMPLICITY prior 2024 SIM 4 uncontrolled search path (icsa-25-240-06)
CVE-2025-7405 | Mitsubishi Electric MELSEC iQ-F FX5U-32MT-ES Modbus TCP missing authentication (icsa-25-240-01)
CVE-2025-7731 | Mitsubishi Electric MELSEC iQ-F FX5U-32MT-ES 3.1/7.5 SLMP Messages cleartext transmission (icsa-25-240-02)
Hackers Exploit Microsoft Teams, Posing as IT Help Desk for Screen Sharing and Remote Access
A sophisticated phishing campaign has been identified, where threat actors impersonate IT helpdesk personnel through Teams’ external communication features, exploiting the platform’s default configuration to bypass traditional email security measures and gain unauthorized screen-sharing and remote-control capabilities. The attacks leverage Teams’ external collaboration features, which are enabled by default in Microsoft 365 tenants, allowing attackers […]
The post Hackers Exploit Microsoft Teams, Posing as IT Help Desk for Screen Sharing and Remote Access appeared first on Cyber Security News.