Aggregator
【年终盛典】全员有奖!OSRC年终盛典狂撒20w+福利,人人都有机会瓜分5w礼品池!
GoldFactory Hits Southeast Asia with Modified Banking Apps Driving 11,000+ Infections
CVE-2024-21413
Hackers Leverage Velociraptor DFIR Tool for Stealthy C2 & Ransomware Delivery
Legitimate administrative tools are increasingly becoming the weapon of choice for sophisticated threat actors aiming to blend in with normal network activity. A recent campaign has highlighted this dangerous trend, where attackers are weaponizing Velociraptor, a widely respected Digital Forensics and Incident Response (DFIR) tool. By deploying this software, adversaries effectively establish stealthy Command and […]
The post Hackers Leverage Velociraptor DFIR Tool for Stealthy C2 & Ransomware Delivery appeared first on Cyber Security News.
Cloudflare mitigates record 29.7 Tbps DDoS attack by the AISURU botnet
漏洞预警 | React/Next.js组件存在RCE漏洞(CVE-2025-58360)
一、漏洞概述
漏洞类型
远程代码执行
漏洞等级
高
漏洞编号
CVE-2025-55182
漏洞评分
10.0
利用复杂度
低
影响版本
React/Next.js多个版本利用方式
远程
POC/EXP
已公开
近日,React 核心团队确认了一个存在于 React Server Components (RSC) 实现中的严重远程代码执行 (RCE) 漏洞。该漏洞被分配了 CVE-2025-55182(Next.js 对应编号 CVE-2025- 66478),攻击者无需任何身份验证,仅通过一个 HTTP 请求,即可在你的服务器上执行任意代码。React是一个用于构建用户界面的JavaScript库,广泛用于开发单页应用程序和移动应用程序。
据描述,受影响版本的React 服务器组件实现的应用程序可能会以允许攻击者执行远程代码的方式处理不受信任的输入,在特定条件下,精心构造的请求可能导致远程代码执行。
漏洞影响的产品和版本:
二、漏洞复现
三、资产测绘
据daydaymap数据显示互联网存在8,209,309个资产,国内风险资产分布情况如下。
四、解决方案
▪ 临时缓解方案
1.在 WAF 中拦截异常 RSC 请求2.对 RSC 端点实施IP 白名单或速率限制▪ 升级修复
目前官方已发布修复安全补丁https://react.dev/blog/2025/12/03/critical-security-vulnerability-in-react-server-component
五、参考链接
https://github.com/ejpir/CVE-2025-55182-poc
漏洞预警 | React/Next.js组件存在RCE漏洞(CVE-2025-58360)
Звонки отменяются. Владельцы iPhone остаются без FaceTime из-за решения РКН
Akira
You must login to view this content
Devman
You must login to view this content
核弹级漏洞?请看CVE-2025-55182真实测验分析
Hackers Actively Exploiting Worpress Plugin Vulnerability to Execute Remote Code
A critical remote code execution vulnerability in the Sneeit Framework WordPress plugin has come under active exploitation by threat actors, posing an immediate risk to thousands of websites worldwide. The vulnerability, tracked as CVE-2025-6389 with a CVSS score of 9.8, exists in versions 8.3 and earlier of the plugin, which maintains approximately 1,700 active installations […]
The post Hackers Actively Exploiting Worpress Plugin Vulnerability to Execute Remote Code appeared first on Cyber Security News.
美国驱逐了偷拍 SpaceX 机密材料的俄罗斯宇航员
美国驱逐了偷拍 SpaceX 机密材料的俄罗斯宇航员
OAuthSeeker: Red Team Tool for OAuth Phishing Attacks Against Azure and Office365
OAuthSeeker is an red team tool for performing phishing attacks using malicious OAuth applications to compromise user identities within
The post OAuthSeeker: Red Team Tool for OAuth Phishing Attacks Against Azure and Office365 appeared first on Penetration Testing Tools.
GPT-5.2 или GPT-5.5 уже в начале 2025 года. Microsoft готовит удар по Google под кодовым названием Garlic
Vim for Windows Vulnerability Let Attackers Execute Arbitrary Code
A critical security vulnerability has been discovered in Vim for Windows that could allow attackers to execute malicious code on users’ computers. The vulnerability, identified as CVE-2025-66476, affects Vim versions before 9.1.1947 and has been rated high severity, with a CVSS score of 7.8. The flaw lies in how Vim searches for external programs on […]
The post Vim for Windows Vulnerability Let Attackers Execute Arbitrary Code appeared first on Cyber Security News.
Akamai Patches HTTP Request Smuggling Vulnerability in Edge Servers
A critical HTTP request smuggling vulnerability in Akamai’s edge server infrastructure has been successfully fixed. The vulnerability, identified as CVE-2025-66373, stemmed from improper processing of HTTP requests containing invalid chunk-encoded bodies, potentially exposing thousands of customers to sophisticated attacks. Understanding HTTP Chunked Transfer Encoding HTTP chunked transfer encoding is an HTTP/1.1 standard that breaks message […]
The post Akamai Patches HTTP Request Smuggling Vulnerability in Edge Servers appeared first on Cyber Security News.