Aggregator
CVE-2023-52968 | MariaDB Server up to 11.1.3 fix_fields_if_needed incorrect behavior order (Nessus ID 242740 / WID-SEC-2025-0507)
CVE-2025-5399 | cURL 8.13.0/8.14.0 WebSocket lib/ws.c curl_ws_send infinite loop (d1145df24de8f80e6b16 / EUVD-2025-17371)
Ukraine Hackers Attacking Russian Aerospace Companies and Other Defence-Related Sectors
Ukraine-linked hackers are stepping up cyberattacks against Russian aerospace and wider defence-related companies, using new custom malware to steal designs, schedules, and internal emails. The campaign targets both prime contractors and smaller suppliers, aiming to map production chains and expose weak points in Russia’s war industry. The tools used in this campaign are simple, but […]
The post Ukraine Hackers Attacking Russian Aerospace Companies and Other Defence-Related Sectors appeared first on Cyber Security News.
CVE-2025-50104 | Oracle MySQL Server up to 8.0.42/8.4.5/9.3.0 DDL denial of service (Nessus ID 242316 / WID-SEC-2025-1567)
CVE-2025-53032 | Oracle MySQL Server up to 9.1.0 Optimizer improper authorization (WID-SEC-2025-1567)
CVE-2025-53023 | Oracle MySQL Cluster/MySQL Server up to 7.6.34/8.0.42 Replication improper authorization (Nessus ID 242319 / WID-SEC-2025-1567)
CVE-2025-50102 | Oracle MySQL Server up to 8.0.42/8.4.5/9.3.0 Optimizer improper authorization (EUVD-2025-21478 / Nessus ID 242316)
CVE-2025-50101 | Oracle MySQL Server up to 8.0.42/8.4.5/9.3.0 Optimizer improper authorization (EUVD-2025-21479 / Nessus ID 242316)
CVE-2025-50099 | Oracle MySQL Server up to 8.0.42/8.4.5/9.3.0 InnoDB improper authorization (EUVD-2025-21481 / Nessus ID 253482)
CVE-2025-50103 | Oracle MySQL Server up to 9.3.0 LDAP Auth improper authorization (EUVD-2025-21477 / WID-SEC-2025-1567)
CVE-2025-50100 | Oracle MySQL Server up to 8.0.42/8.4.5/9.3.0 Thread Pooling denial of service (EUVD-2025-21480 / Nessus ID 244827)
ChatGPT is down worldwide, conversations disappeared for users
ChatGPT is down worldwide, conversations dissapeared for users
Hackers Leverage Evilginx to Undermine MFA Security Mimicking Legitimate SSO Sites
Hackers are turning to Evilginx, a powerful adversary-in-the-middle tool, to get around multi-factor authentication and take over cloud accounts. The framework acts as a reverse proxy between the victim and real single sign-on pages, so the login screen looks and behaves just like the real thing. To the user, the fake site feels normal, with […]
The post Hackers Leverage Evilginx to Undermine MFA Security Mimicking Legitimate SSO Sites appeared first on Cyber Security News.