Aggregator
Google Warns Multiple Hacker Groups Are Exploiting React2Shell to Spread Malware
Google Threat Intelligence Group (GTIG) has issued a warning regarding the widespread exploitation of a critical security flaw in React Server Components. Known as React2Shell (CVE-2025-55182), this vulnerability allows attackers to take control of servers remotely without needing a password. Since the vulnerability was disclosed on December 3, 2025, Google has observed multiple distinct hacker groups […]
The post Google Warns Multiple Hacker Groups Are Exploiting React2Shell to Spread Malware appeared first on Cyber Security News.
CVE-2025-14668 | campcodes Advanced Online Examination System 1.0 /query/loginExe.php Username sql injection (EUVD-2025-203305)
CVE-2025-14667 | itsourcecode COVID Tracking System 1.0 /admin/?page=system_info meta_value sql injection (EUVD-2025-203306)
CVE-2025-14666 | itsourcecode COVID Tracking System 1.0 /admin/?page=user Username sql injection (EUVD-2025-203304)
Submit #714806: campcodes Advanced Online Examination System V1.0 SQL Injection [Accepted]
Empire 6.3.0 Launches With New Features for Red Teams and Penetration Testers
BC Security has announced the release of Empire 6.3.0, the latest iteration of the widely used post-exploitation and adversary emulation framework. This update reinforces Empire’s position as a premier tool for Red Teams and penetration testers, offering a flexible, modular server architecture written in Python 3 along with extensive agent support. Unified Architecture and Expanded Agent […]
The post Empire 6.3.0 Launches With New Features for Red Teams and Penetration Testers appeared first on Cyber Security News.