Aggregator
【安全圈】Glassworm 恶意软件爆发第三波攻击:24 个“李鬼”扩展包投毒,可窃取 GitHub 账号等
CVE-2025-66035 | Angular up to 19.2.15/20.3.13/21.0.0 insertion of sensitive information into sent data (GHSA-58c5-g7wp-6w37 / Nessus ID 276979)
CVE-2025-13507 | MongoDB Server up to 7.0.25/8.0.15/8.2.0 improper validation of specified quantity in input (EUVD-2025-199533 / Nessus ID 276981)
CVE-2025-55174 | KDE Skanpage up to 25.07.x QIODevice::ReadWrite incorrect provision of specified functionality (EUVD-2025-199713 / Nessus ID 276982)
Iran Hackers Take Inspiration From Snake Video Game
Iranian nation-state hackers took inspiration from a mobile phone time-killing mainstay, say security researchers who spotted hackers downloading malware masquerading as the Snake video game. A callback to the game isn't nostalgia, say researchers at Eset.
How I Built an AI-Powered Research Automation System with n8n, Groq, and 5 Academic APIs
Salty2FA & Tycoon2FA Hybrid: A New Phishing Threat to Enterprises
Phishing kits usually have distinct signatures in their delivery methods, infrastructure, and client-side code, which makes attribution fairly predictable. But recent samples began showing traits from two different kits at once, blurring those distinctions. That’s exactly what ANY.RUN analysts saw with Salty2FA and Tycoon2FA: a sudden drop in Salty activity, the appearance of Tycoon indicators inside Salty-linked chains, and eventually single […]
The post Salty2FA & Tycoon2FA Hybrid: A New Phishing Threat to Enterprises appeared first on ANY.RUN's Cybersecurity Blog.
CVE-2023-28180 | Apple macOS up to 13.2.1 dcerpc denial of service (HT213670 / EUVD-2023-31888)
CVE-2023-28181 | Apple iOS/iPadOS up to 16.3.1 CoreCapture memory corruption (HT213676 / EUVD-2023-31889)
CVE-2023-28181 | Apple tvOS up to 16.3.3 CoreCapture memory corruption (HT213674 / EUVD-2023-31889)
CVE-2023-28181 | Apple watchOS up to 9.3.1 CoreCapture memory corruption (HT213678 / EUVD-2023-31889)
CVE-2023-28177 | Mozilla Firefox up to 110 memory corruption (EUVD-2023-31885)
CVE-2023-28178 | Apple iOS/iPadOS up to 16.3.1 Sandbox information disclosure (HT213676 / EUVD-2023-31886)
CVE-2023-28178 | Apple macOS up to 13.2.1 Sandbox sandbox (HT213670 / EUVD-2023-31886)
How a noisy ransomware intrusion exposed a long-term espionage foothold
Getting breached by two separate and likely unconnected cyber attack groups is a nightmare scenario for any organization, but can result in an unexpected silver lining: the noisier intrusion can draw attention to a far stealthier threat that might otherwise linger undetected for months. A double whammy In a recently published report, threat researchers at Positive Technologies have detailed the findings of their investigation into two incidents at Russian companies, which they have tied to: … More →
The post How a noisy ransomware intrusion exposed a long-term espionage foothold appeared first on Help Net Security.