Aggregator
Gunra
9 months 2 weeks ago
cohenido
Gunra
9 months 2 weeks ago
cohenido
Беглый учёный + немного физики = свежая угроза для старой монополии Китая
9 months 2 weeks ago
Что получится, если смешать ржавое железо с воздухом и бросить вызов китайскому рынку редкозёмов.
CVE-2025-3886 | Cato Client on macOS Helper Service toctou
9 months 2 weeks ago
A vulnerability was found in Cato Client on macOS. It has been classified as critical. This affects an unknown part of the component Helper Service. The manipulation leads to time-of-check time-of-use.
This vulnerability is uniquely identified as CVE-2025-3886. It is possible to launch the attack on the local host. There is no exploit available.
vuldb.com
CVE-2025-3967 | itwanger paicoding 1.0.3 Article /article/api/post articleId improper authorization
9 months 2 weeks ago
A vulnerability was found in itwanger paicoding 1.0.3. It has been classified as critical. This affects an unknown part of the file /article/api/post of the component Article Handler. The manipulation of the argument articleId leads to improper authorization.
This vulnerability is uniquely identified as CVE-2025-3967. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-3968 | codeprojects News Publishing Site Dashboard 1.0 /api.php cat_id sql injection
9 months 2 weeks ago
A vulnerability was found in codeprojects News Publishing Site Dashboard 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /api.php. The manipulation of the argument cat_id leads to sql injection.
This vulnerability was named CVE-2025-3968. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
M-Trends 2025 报告揭示:网络攻击愈发复杂,防御体系亟待加强
9 months 2 weeks ago
安全客
CVE-2025-3963 | withstars Books-Management-System 1.0 Background Interface /admin/article/list authorization
9 months 2 weeks ago
A vulnerability, which was classified as critical, has been found in withstars Books-Management-System 1.0. This issue affects some unknown processing of the file /admin/article/list of the component Background Interface. The manipulation leads to missing authorization. This vulnerability only affects products that are no longer supported by the maintainer.
The identification of this vulnerability is CVE-2025-3963. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-3964 | withstars Books-Management-System 1.0 Article /api/article/del cross-site request forgery
9 months 2 weeks ago
A vulnerability, which was classified as problematic, was found in withstars Books-Management-System 1.0. Affected is an unknown function of the file /api/article/del of the component Article Handler. The manipulation leads to cross-site request forgery. This vulnerability only affects products that are no longer supported by the maintainer.
This vulnerability is traded as CVE-2025-3964. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-3965 | itwanger paicoding 1.0.3 /article/app/post content cross site scripting
9 months 2 weeks ago
A vulnerability has been found in itwanger paicoding 1.0.3 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file /article/app/post. The manipulation of the argument content leads to cross site scripting.
This vulnerability is known as CVE-2025-3965. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-3966 | itwanger paicoding 1.0.3 Browsing History home?userId=1&homeSelectType=read information disclosure
9 months 2 weeks ago
A vulnerability was found in itwanger paicoding 1.0.3 and classified as problematic. Affected by this issue is some unknown functionality of the file /user/home?userId=1&homeSelectType=read of the component Browsing History Handler. The manipulation leads to information disclosure.
This vulnerability is handled as CVE-2025-3966. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
【安全圈】CVE-2025-3248:Langflow 开源平台严重远程代码执行漏洞威胁 AI 工作流安全
9 months 2 weeks ago
关键词安全漏洞网络安全研究人员在 Langflow 中发现了一个严重的远程代码执行(RCE)漏洞。
【安全圈】多架构攻击!RustoBot 僵尸网络恶意软件威胁网络安全
9 months 2 weeks ago
关键词恶意软件一种使用 Rust 编程语言编写的复杂新型僵尸网络恶意软件已被发现,其目标是全球范围内存在漏洞的
【安全圈】新型 Cookie-Bite 攻击使黑客能够绕过 MFA 并保持对云服务器的访问
9 months 2 weeks ago
关键词网络攻击一种被称为 “Cookie-Bite” 的复杂攻击技术,使网络犯罪分子能够在悄无声息中绕过多因素
【安全圈】新的 Inception 越狱攻击绕过了 ChatGPT、DeepSeek、Gemini、Grok 和 Copilot
9 months 2 weeks ago
IEEE AloTSys 2025 CFP
9 months 2 weeks ago
The 2025 AIoTSys is dedicated to exploring the intersection of AI and IoT.
IEEE AloTSys 2025 CFP
9 months 2 weeks ago
The 2025 AIoTSys is dedicated to exploring the intersection of AI and IoT.
360 以省代制重构渠道生态 开启安全产业共赢时代!
9 months 2 weeks ago
安全客
Identity is the New Perimeter: CybeReady’s Analysis of IBM’s X-Force 2025 Threat Intelligence Index
9 months 2 weeks ago
The New Dawn Returns – Horizon Shifts in Cyberattack Trends Following our in-depth analysis of IBM’s 2025 Threat Intelligence Index, CybeReady’s research team has identified a significant “Back to the Future” moment in cyberattack trends that validates our longstanding approach to cyber readiness training. Our examination reveals a clear return to older but increasingly dominant […]
The post Identity is the New Perimeter: CybeReady’s Analysis of IBM’s X-Force 2025 Threat Intelligence Index appeared first on CybeReady.
The post Identity is the New Perimeter: CybeReady’s Analysis of IBM’s X-Force 2025 Threat Intelligence Index appeared first on Security Boulevard.
Mike Polatsek