Aggregator
CVE-2025-14166 | WPMasterToolKit Plugin up to 2.13.0 on WordPress Code Snippets Feature code injection
Announced pick for No. 2 at NSA won’t get the job as another candidate surfaces
CVE-2025-14265 | ConnectWise ScreenConnect up to 25.7 Extension Subsystem code download (EUVD-2025-202687)
Google Chrome security advisory (AV25-829)
CVE-2025-13124 | Netiket ApplyLogic up to 01.12.2025 authorization (EUVD-2025-202686)
Drupal security advisory (AV25-828)
VMP的手动分析和AI还原
浅谈SQL注入手工测试思路
GitLab security advisory (AV25-827)
New ConsentFix attack hijacks Microsoft accounts via Azure CLI
Gogs 0-Day Vulnerability Exploited in the Wild to Hack 700+ Instances
A critical zero-day vulnerability in Gogs, a widely used self-hosted Git service, is currently being exploited in the wild. Designated as CVE-2025-8110, this flaw allows authenticated users to execute a symlink bypass, leading to Remote Code Execution (RCE). As of this writing, no patch is available, and researchers estimate that over 50% of public-facing Gogs […]
The post Gogs 0-Day Vulnerability Exploited in the Wild to Hack 700+ Instances appeared first on Cyber Security News.
AI is accelerating cyberattacks. Is your network prepared?
Как превратить углерод в азот с помощью Солнца? Ответ нашли в лаборатории на глубине двух километров
UK fines LastPass £1.2 million for data breach affecting 1.6 million people
Nederland beschermt logistiek knooppunt voor steun aan Oekraïne
1inch Named Exclusive Swap Provider at Launch for Ledger Multisig
Road Town, British Virgin Islands, December 11th, 2025, CyberNewsWire 1inch, the leading DeFi ecosystem, has been selected as the exclusive swap provider at launch for Ledger Multisig, deepening the collaboration between the two projects. By integrating the 1inch Swap API into its security-first multisig architecture, Ledger, the world leader in digital asset security for consumers […]
The post 1inch Named Exclusive Swap Provider at Launch for Ledger Multisig appeared first on Cyber Security News.
New DroidLock Malware Locks Android Devices and Demands a Ransom
A dangerous new malware called DroidLock is targeting Android users, particularly in Spanish-speaking regions, through phishing websites. This threat combines ransomware tactics with remote-control capabilities, posing a severe risk to users of personal and corporate devices. Once installed, DroidLock transforms a smartphone into a hostile endpoint that attackers can manipulate at will, making it a […]
The post New DroidLock Malware Locks Android Devices and Demands a Ransom appeared first on Cyber Security News.