Aggregator
CVE-2025-6982 | TP-Link Archer C50 V3/Archer C50 V4/Archer C50 V5 hard-coded credentials
CVE-2025-6983 | TP-Link Archer C1200 up to 1.1.5 Web Management Page ui layer (EUVD-2025-21737)
CVE-2025-53908 | rommapp romm up to 3.10.2/4.0.0-beta2 /api/raw path traversal (GHSA-fx9g-xw4j-jwc3)
CVE-2025-7729 | Scada-LTS up to 2.7.8.1 usersProfiles.shtm Username cross site scripting
CVE-2025-7728 | Scada-LTS up to 2.7.8.1 users.shtm Username cross site scripting
Submit #607950: SCADA-LTS 2.7.8.1 Cross Site Scripting [Accepted]
Submit #607949: SCADA-LTS 2.7.8.1 Cross Site Scripting [Accepted]
Chinese ‘Salt Typhoon’ Hackers Hijacked US National Guard Network for Nearly a Year
Chinese state-sponsored hackers known as Salt Typhoon successfully infiltrated and maintained persistent access to a U.S. state’s Army National Guard network for nearly ten months, from March 2024 through December 2024, according to a Department of Homeland Security memo obtained by NBC News. The sophisticated cyberespionage campaign represents a significant escalation in Beijing’s ongoing cyber […]
The post Chinese ‘Salt Typhoon’ Hackers Hijacked US National Guard Network for Nearly a Year appeared first on Cyber Security News.
CVE-2025-4941
Qilin
You must login to view this content
Cracked Apps Delivering Infostealers Identified as Leading Attack Vector in June 2025
The AhnLab Security Intelligence Center (ASEC) published a thorough analysis in June 2025 that identified infostealer malware masquerading as keygens and cracked software as a primary attack vector. This malware uses advanced search engine optimization (SEO) poisoning to elevate malicious distribution sites in search results. ASEC’s automated malware collection systems, including crack monitoring, email honeypots, […]
The post Cracked Apps Delivering Infostealers Identified as Leading Attack Vector in June 2025 appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Cisco security advisory (AV25-428)
Operation Eastwood disrupted operations of pro-Russian hacker group NoName057(16)
BADBOX 2.0 Found Preinstalled on Android IoT Devices Worldwide
CVE-2025-39561 | loginwp-pro Plugin up to 4.0.8.5 on WordPress authorization
CVE-2025-37107 | HPE AutoPass License Server up to 9.17 improper authentication (EUVD-2025-21732)
CVE-2025-37106 | HPE AutoPass License Server up to 9.17 improper authentication (EUVD-2025-21733)
HPE security advisory (AV25-427)
Hackers Leverage 607 Malicious Domains to Spread APK Malware with Remote Command Execution
PreCrime Labs at BforeAI discovered a complex cyber threat operation in which hackers have used a vast network of 607 rogue domains to spread fake Telegram Messenger application files (APKs) over the course of the last month. These domains, primarily registered via the Gname registrar and hosting content in Chinese, form part of a large-scale […]
The post Hackers Leverage 607 Malicious Domains to Spread APK Malware with Remote Command Execution appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.