Aggregator
CVE-2025-11799 | Affiliate AI Lite Plugin up to 1.0.1 on WordPress Shortcode asin cross site scripting
CVE-2025-12660 | Padlet Shortcode Plugin up to 1.3 on WordPress wallwisher key cross site scripting
CVE-2025-12135 | WPBookit Plugin up to 1.0.6 on WordPress save_custome_code css_code cross site scripting
CVE-2025-11801 | AudioTube Plugin up to 0.0.3 on WordPress Shortcode caption cross site scripting
CVE-2025-11885 | EchBay Admin Security Plugin up to 1.3.0 on WordPress _ebnonce cross site scripting
CVE-2025-11802 | Bulma Shortcodes Plugin up to 1.0 on WordPress Shortcode type cross site scripting
CVE-2025-11800 | Surbma Plugin up to 2.0 on WordPress Shortcode minicrm ID cross site scripting
AI as Cyberattacker
From Anthropic:
In mid-September 2025, we detected suspicious activity that later investigation determined to be a highly sophisticated espionage campaign. The attackers used AI’s “agentic” capabilities to an unprecedented degree—using AI not just as an advisor, but to execute the cyberattacks themselves.
The threat actor—whom we assess with high confidence was a Chinese state-sponsored group—manipulated our Claude Code tool into attempting infiltration into roughly thirty global targets and succeeded in a small number of cases. The operation targeted large tech companies, financial institutions, chemical manufacturing companies, and government agencies. We believe this is the first documented case of a large-scale cyberattack executed without substantial human intervention...
The post AI as Cyberattacker appeared first on Security Boulevard.
AI as Cyberattacker
CISA Adds One Known Exploited Vulnerability to Catalog
CISA has added one new vulnerability to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation.
- CVE-2025-61757 Oracle Fusion Middleware Missing Authentication for Critical Function Vulnerability
This type of vulnerability is a frequent attack vector for malicious cyber actors and poses significant risks to the federal enterprise.
Binding Operational Directive (BOD) 22-01: Reducing the Significant Risk of Known Exploited Vulnerabilities established the KEV Catalog as a living list of known Common Vulnerabilities and Exposures (CVEs) that carry significant risk to the federal enterprise. BOD 22-01 requires Federal Civilian Executive Branch (FCEB) agencies to remediate identified vulnerabilities by the due date to protect FCEB networks against active threats. See the BOD 22-01 Fact Sheet for more information.
Although BOD 22-01 only applies to FCEB agencies, CISA strongly urges all organizations to reduce their exposure to cyberattacks by prioritizing timely remediation of KEV Catalog vulnerabilities as part of their vulnerability management practice. CISA will continue to add vulnerabilities to the catalog that meet the specified criteria.
APIs Are the Retail Engine: How to Secure Them This Black Friday
Can you ever imagine the impact on your business if it went offline on Black Friday or Cyber Monday due to a cyberattack? Black Friday is the biggest day in the retail calendar. It’s also the riskiest. As you gear up for huge surges in online traffic, ask yourself: have you protected the APIs on [...]
The post APIs Are the Retail Engine: How to Secure Them This Black Friday appeared first on Wallarm.
The post APIs Are the Retail Engine: How to Secure Them This Black Friday appeared first on Security Boulevard.
APIs Are the Retail Engine: How to Secure Them This Black Friday
CVE-2025-5646 | Radare2 5.9.9 radiff2 /libr/cons/pal.c r_cons_rainbow_free -T memory corruption (Issue 24235 / EUVD-2025-16974)
CVE-2025-5643 | Radare2 5.9.9 radiff2 /libr/cons/cons.c cons_stack_load -T memory corruption (Issue 24232 / EUVD-2025-16971)
CVE-2025-5644 | Radare2 5.9.9 radiff2 /libr/cons/cons.c r_cons_flush -T use after free (Issue 24233 / EUVD-2025-16970)
CVE-2025-5645 | Radare2 5.9.9 radiff2 /libr/cons/pal.c r_cons_pal_init -T memory corruption (Issue 24234 / EUVD-2025-16975)
CVE-2025-5647 | Radare2 5.9.9 radiff2 /libr/cons/cons.c r_cons_context_break_pop -T memory corruption (Issue 24237 / EUVD-2025-16978)
«У нас тут 0Day, а у вас нет патча». Mazda, NHS и Harvard стали жертвами халатности Oracle
China-linked APT24 Hackers New BadAudio Compromised Legitimate Public Websites to Attack Users
APT24, a sophisticated cyber espionage group linked to China’s People’s Republic, has launched a relentless three-year campaign delivering BadAudio, a highly obfuscated first-stage downloader that enables persistent network access to targeted organizations. The threat actor has demonstrated remarkable adaptability by shifting from broad strategic web compromises to precision-targeted attacks focusing on Taiwan-based entities. The group’s […]
The post China-linked APT24 Hackers New BadAudio Compromised Legitimate Public Websites to Attack Users appeared first on Cyber Security News.