Aggregator
Lazarus Hackers Attacking macOS Users With ‘Mach-O Man’ Malware Kit
3 months ago
North Korea’s state-sponsored Lazarus Group has unleashed a newly identified, modular macOS malware kit dubbed “Mach-O Man” a sophisticated, four-stage attack chain targeting fintech executives, crypto developers, and high-value enterprise users through fake meeting invitations and social engineering lures. Analyzed by Mauro Eldritch in collaboration with ANY.RUN’s interactive sandbox platform, Mach-O Man, is a Go-compiled […]
The post Lazarus Hackers Attacking macOS Users With ‘Mach-O Man’ Malware Kit appeared first on Cyber Security News.
Balaji N
CVE-2025-56534 | OpenNebula 6.10.0.1 Custom Authenticator Driver cross site scripting (EUVD-2025-209587)
3 months ago
A vulnerability, which was classified as problematic, was found in OpenNebula 6.10.0.1. The impacted element is an unknown function of the component Custom Authenticator Driver. The manipulation results in cross site scripting.
This vulnerability is known as CVE-2025-56534. It is possible to launch the attack remotely. No exploit is available.
vuldb.com
CVE-2026-30769 | EnTech TVicPort 4.0 IOCTL TVicPort64.sys privilege escalation (EUVD-2026-26240)
3 months ago
A vulnerability, which was classified as critical, has been found in EnTech TVicPort 4.0. The affected element is an unknown function in the library TVicPort64.sys of the component IOCTL Handler. The manipulation leads to privilege escalation.
This vulnerability is traded as CVE-2026-30769. Access to the local network is required for this attack to succeed. There is no exploit available.
vuldb.com
CVE-2025-56537 | OpenNebula up to 6.10.0.1 virtual network template cross site scripting
3 months ago
A vulnerability classified as problematic was found in OpenNebula up to 6.10.0.1. Impacted is an unknown function. Executing a manipulation of the argument virtual network template can lead to cross site scripting.
This vulnerability appears as CVE-2025-56537. The attack may be performed from remote. There is no available exploit.
Upgrading the affected component is advised.
vuldb.com
Submit #804027: BurtTheCoder @burtthecoder/mcp-dnstwist 1.0.4 Command Injection [Accepted]
3 months ago
Submit #804027 / VDB-360185
_Eternity_
CVE-2025-56536 | OpenNebula 6.10.0.1 user information cross site scripting (EUVD-2025-209589)
3 months ago
A vulnerability classified as problematic has been found in OpenNebula 6.10.0.1. This issue affects some unknown processing. Performing a manipulation of the argument user information results in cross site scripting.
This vulnerability is reported as CVE-2025-56536. The attack is possible to be carried out remotely. No exploit exists.
vuldb.com
CVE-2025-56535 | OpenNebula 6.10.0.1 zone attribute cross site scripting (EUVD-2025-209588)
3 months ago
A vulnerability described as problematic has been identified in OpenNebula 6.10.0.1. This vulnerability affects unknown code. Such manipulation of the argument zone attribute leads to cross site scripting.
This vulnerability is documented as CVE-2025-56535. The attack can be executed remotely. There is not any exploit available.
vuldb.com
CVE-2026-40230 | helpyio helpy 2.8.0 Knowledge Base Doc Rendering Logic body cross site scripting
3 months ago
A vulnerability marked as problematic has been reported in helpyio helpy 2.8.0. This affects an unknown part of the component Knowledge Base Doc Rendering Logic. This manipulation of the argument body causes cross site scripting.
This vulnerability is registered as CVE-2026-40230. Remote exploitation of the attack is possible. No exploit is available.
vuldb.com
CVE-2026-40229 | helpyio helpy 2.8.0 account name cross site scripting
3 months ago
A vulnerability labeled as problematic has been found in helpyio helpy 2.8.0. Affected by this issue is some unknown functionality. The manipulation of the argument account name results in cross site scripting.
This vulnerability is cataloged as CVE-2026-40229. The attack may be launched remotely. There is no exploit available.
vuldb.com
CVE-2026-2810 | Netskope Client up to 129.1.7/132.0.22/135.0.x/136.0 on Windows Endpoint DLP out-of-bounds (kpsa-2026-002)
3 months ago
A vulnerability identified as problematic has been detected in Netskope Client up to 129.1.7/132.0.22/135.0.x/136.0 on Windows. Affected by this vulnerability is an unknown functionality of the component Endpoint DLP Module. The manipulation leads to out-of-bounds read.
This vulnerability is listed as CVE-2026-2810. The attack must be carried out locally. There is no available exploit.
You should upgrade the affected component.
vuldb.com
CVE-2026-37555 | libsndfile 1.2.2 WAV File buffer overflow (Issue 833 / EUVD-2026-26241)
3 months ago
A vulnerability categorized as critical has been discovered in libsndfile 1.2.2. Affected is an unknown function of the component WAV File Handler. Executing a manipulation can lead to buffer overflow.
This vulnerability is tracked as CVE-2026-37555. The attack can be launched remotely. No exploit exists.
It is advisable to implement a patch to correct this issue.
vuldb.com
CVE-2026-42198 | pgjdbc up to 42.7.10 allocation of resources (GHSA-98qh-xjc8-98pq / EUVD-2026-26247)
3 months ago
A vulnerability was found in pgjdbc up to 42.7.10. It has been rated as problematic. This impacts an unknown function. Performing a manipulation results in allocation of resources.
This vulnerability is identified as CVE-2026-42198. The attack can be initiated remotely. There is not any exploit available.
Upgrading the affected component is advised.
vuldb.com
Threat Actor 0056113 Selling Compromised Law-Enforcement Emails and EDR-as-a-Service for Fraudulent Emergency Data Requests
3 months ago
Threat Actor 0056113 Selling Compromised Law-Enforcement Emails and EDR-as-a-Service for Fraudulent Emergency Data Requests
Dark Web Informer
Q-Day — день, когда рухнет всё шифрование. Квантовые компьютеры сократили путь к нему в 10 раз — защиты почти не осталось
3 months ago
Bitcoin, Ethereum и банковские карты: под угрозой всё.
SAP-Related npm Packages Compromised in Credential-Stealing Supply Chain Attack
3 months ago
Cybersecurity researchers are sounding the alarm about a new supply chain attack campaign targeting SAP-related npm Packages with credential-stealing malware.
According to reports from Aikido Security, Onapsis, OX Security, SafeDep, Socket, StepSecurity, and Google-owned Wiz, the campaign – calling itself the Mini Shai-Hulud – has affected the following packages associated with
The Hacker News
Polymarket Rejects Data Breach Claims as Hacker Alleges 300K Records Stolen
3 months ago
A hacker using the alias "Xorcat" claims to have breached Polymarket using API flaws, but research suggests the leak could be just data scraping incident.
Deeba Ahmed
手机取证:从 WhatsApp、Signal 和 Telegram 提取媒体和消息的简单方法
3 months ago
手机取证:从 WhatsApp、Signal 和 Telegram 提取媒体和消息的简单方法在数字调查取证的世
【微信附件命名规则大揭秘】
3 months ago
电子数据取证必知的关键技术
Защитить ПВО, не сломав интернет. Как прошли самые масштабные киберучения 2026 года
3 months ago
Тысячи экспертов проверили на прочность цифровой фундамент цивилизации.