Aggregator
CISA Releases Five ICS Advisories Covering Vulnerabilities, and Exploits Surrounding ICS
The Cybersecurity and Infrastructure Security Agency released five critical Industrial Control Systems advisories on December 2, 2025, addressing significant security threats across industrial environments. These advisories cover vulnerabilities and active exploits affecting systems used in manufacturing, power generation, and medical device operations worldwide. The timing of this release highlights growing concerns about the targeted nature […]
The post CISA Releases Five ICS Advisories Covering Vulnerabilities, and Exploits Surrounding ICS appeared first on Cyber Security News.
网安聚力 赋能未来 | 2025年度“金智奖”评选结果重磅揭晓
【独家观察】我国IPv6活跃情况的运营商级观察报告
顶尖安全运营中心如何利用实时攻击数据抵御新兴威胁
网安聚力 赋能未来 | 2025年度“金智奖”评选结果重磅揭晓
【独家观察】我国IPv6活跃情况的运营商级观察报告
顶尖安全运营中心如何利用实时攻击数据抵御新兴威胁
CVE-2025-66448 | vLLM up to 0.11.0 get_class_from_dynamic_module code injection (GHSA-8fr4-5q9j-m8gm)
CVE-2025-58485 | Samsung Internet up to 28.0.0.59 injection
CVE-2025-58486 | Samsung Account up to 15.5.00.18 input validation
CVE-2025-58487 | Samsung Account up to 15.5.00.18 improper authorization
CVE-2025-13870 | Mattermost up to 10.5.12/10.11.4 missing authentication (WID-SEC-2025-2715)
CVE-2025-11778 | Circutor SGE-PLC1000/SGE-PLC50 9.0.2 TACACSPLUS read_packet heap-based overflow
CVE-2025-11780 | Circutor SGE-PLC1000/SGE-PLC50 9.0.2 showMeterReport buffer overflow (EUVD-2025-200236)
CVE-2025-11779 | Circutor SGE-PLC1000/SGE-PLC50 9.0.2 SetLan stack-based overflow
CVE-2024-45675 | IBM Informix Dynamic Server 14.10 password system for primary authentication (EUVD-2024-55112)
CVE-2025-20769 | MediaTek MT8793 Display stack-based overflow (MSV-4804 / ALPS10196993)
CVE-2025-66313 | ChurchCRM up to 6.2.0 1FieldSec sql injection (EUVD-2025-200114)
DeFi Exploit: Yearn Finance yETH Pool Hacked for $3 Million via ‘Super-Mint’ Flaw
Yearn Finance has suffered a serious attack on its yETH product, allowing an attacker to siphon off roughly
The post DeFi Exploit: Yearn Finance yETH Pool Hacked for $3 Million via ‘Super-Mint’ Flaw appeared first on Penetration Testing Tools.