Aggregator
Android Trojan Crocodilus Now Active in 8 Countries, Targeting Banks and Crypto Wallets
CVE-2025-5521 | WuKongOpenSource WukongCRM 9.0 updataPassword cross-site request forgery (EUVD-2025-16779)
New ModSecurity WAF Vulnerability Enables Attackers to Crash Systems
A high-severity denial-of-service (DoS) vulnerability (CVE-2025-48866) has been identified in ModSecurity’s Apache module (mod_security2), threatening web application firewall stability. Rated 7.5/10 on the CVSS scale, this flaw enables attackers to crash servers by exploiting argument sanitization logic, with patches now available in version 2.9.10. Sanitisation Logic Flaw The vulnerability stems from ModSecurity’s sanitiseArg action, designed […]
The post New ModSecurity WAF Vulnerability Enables Attackers to Crash Systems appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
逐梦网安 创领未来|第十届“创客中国”网络安全中小企业创新创业大赛再启新程
调查显示:维护安全工具耗时过多 半数团队陷运维困局
锻炼能显著降低结肠癌的复发和死亡风险
Submit #584636: WuKongOpenSource WukongCRM v9.0 Cross-Site Request Forgery [Accepted]
CNVD漏洞周报2025年第20期
CVE-2025-5520 | Open5GS up to 2.7.3 AMF/MME gmm_state_authentication/emm_state_authentication assertion (Issue 3910 / EUVD-2025-16763)
CVE-2004-2514 | PowerPortal 1.1b/1.3/1.3b index.php cross site scripting (EDB-24340 / Nessus ID 14178)
New Lyrix Ransomware Attacking Windows Users With New Evasion Tactics
A sophisticated new ransomware strain dubbed “Lyrix” has emerged in the cyberthreat landscape, targeting Windows systems with an arsenal of advanced evasion techniques that have caught the attention of security researchers worldwide. The malware represents a significant evolution in ransomware development, incorporating machine learning-based detection avoidance and novel persistence mechanisms that challenge traditional security approaches. […]
The post New Lyrix Ransomware Attacking Windows Users With New Evasion Tactics appeared first on Cyber Security News.