Aggregator
Под ледяной шапкой Марса что-то светится — либо вода, либо космос смеется над земными учеными
夯实能力、强化责任、构建托底机制——《大型网络平台个人信息保护规定》的监管逻辑与国际比较
CVE-2023-29331 | Microsoft .NET/.NET Framework/Visual Studio denial of service (Nessus ID 276191)
CVE-2023-32032 | Microsoft .NET/Visual Studio Local Privilege Escalation (Nessus ID 276191)
CVE-2023-33128 | Microsoft .NET/Visual Studio Local Privilege Escalation (Nessus ID 276191)
CVE-2024-26606 | Linux Kernel up to 6.8-rc2 Binder epoll_wait denial of service (Nessus ID 276179)
CVE-2023-24936 | Microsoft .NET/.NET Framework/Visual Studio Remote Code Execution (Nessus ID 276191)
CVE-2022-49013 | Linux Kernel up to 5.4.225/5.10.157/5.15.81/6.0.11 sctp_stream_outq_migrate memory leak (Nessus ID 276192 / WID-SEC-2024-3251)
CVE-2022-2553 | Booth Authfile Directive improper authentication (Nessus ID 276203)
CVE-2023-34968 | Samba up to 4.16.10/4.17.9/4.18.4 Spotlight information disclosure (FEDORA-2023-bcd91bfcd3 / EUVD-2023-39007)
CVE-2023-34967 | Samba up to 4.16.10/4.17.9/4.18.4 mdssvc RPC Request dalloc_value_for_key type confusion (FEDORA-2023-bcd91bfcd3 / Nessus ID 276207)
CVE-2023-37463 | cmark-gfm prior 0.29.0.gfm.12 resource consumption (GHSA-w4qg-3vf7-m9x5 / Nessus ID 276208)
CVE-2025-52887 | yhirose cpp-httplib 0.21.0 resource consumption (GHSA-xjhg-gf59-p92h / EUVD-2025-19196)
What happens when vulnerability scores fall apart?
Security leaders depend on vulnerability data to guide decisions, but the system supplying that data is struggling. An analysis from Sonatype shows that core vulnerability indexes no longer deliver the consistency or speed needed for the current software environment. A system that no longer keeps pace The CVE program still serves as the industry’s naming backbone, and the NVD remains a primary source for severity ratings. These tools were built for an era of slower … More →
The post What happens when vulnerability scores fall apart? appeared first on Help Net Security.
CVE-2023-53481 | Linux Kernel up to 6.2.4 ubi ubi_wl_put_peb use after free (WID-SEC-2025-2187)
CVE-2023-53478 | Linux Kernel up to 6.1.23/6.2.10 last_cmd use after free (WID-SEC-2025-2187)
CVE-2023-53479 | Linux Kernel up to 6.1.42/6.4.7 CXL Driver cxl_parse_cfmws use after free (Nessus ID 269643 / WID-SEC-2025-2187)
Email blind spots are back to bite security teams
The threat landscape is forcing CISOs to rethink what they consider normal. The latest Cybersecurity Report 2026 by Hornetsecurity, based on analysis of more than 70 billion emails and broad threat telemetry, shows attackers adopting automation, AI driven social engineering, and new evasion techniques at scale. Email becomes a more dangerous channel Email remains the primary entry point for compromise. Malware in email increased by more than 130% year over year. Scams rose by more … More →
The post Email blind spots are back to bite security teams appeared first on Help Net Security.
AI Agent Does the Hacking: First Documented AI-Orchestrated Cyber Espionage
In this episode, we discuss the first reported AI-driven cyber espionage campaign, as disclosed by Anthropic. In September 2025, a state-sponsored Chinese actor manipulated the Claude Code tool to target 30 global organizations. We explain how the attack was executed, why it matters, and its implications for cybersecurity. Join the conversation as we examine the […]
The post AI Agent Does the Hacking: First Documented AI-Orchestrated Cyber Espionage appeared first on Shared Security Podcast.
The post AI Agent Does the Hacking: First Documented AI-Orchestrated Cyber Espionage appeared first on Security Boulevard.