Aggregator
CVE-2025-41439 | Ricoh Streamline NX SLNX Help Documentation cross site scripting (icoh-2025-000008)
CVE-2025-40734 | Daily Expense Manager 1.0 /register.php password/confirm_password cross site scripting (EUVD-2025-19522)
RIFT: New open-source tool from Microsoft helps analyze Rust malware
Microsoft’s Threat Intelligence Center has released a new tool called RIFT to help malware analysts identify malicious code hidden in Rust binaries. While Rust is becoming more popular for its speed and memory safety, those same qualities make malware written in Rust harder to analyze. RIFT is designed to cut through that complexity and make the job easier. Overview of RIFT Static Analyzer (Source: Microsoft) Why Rust malware is hard to analyze To show the … More →
The post RIFT: New open-source tool from Microsoft helps analyze Rust malware appeared first on Help Net Security.
CVE-2025-40733 | Daily Expense Manager 1.0 /login.php Username cross site scripting (EUVD-2025-19523)
CVE-2025-40732 | Daily Expense Manager 1.0 POST Request /check.php Name information exposure (EUVD-2025-19563)
CVE-2025-40731 | Daily Expense Manager 1.0 /update.php pname/pprice/id sql injection (EUVD-2025-19562)
Scattered Spider Targets Tech Companies with Phishing Frameworks like Evilginx and Social Engineering Tactics
The notorious hacking collective Scattered Spider, also known as UNC3944 or Octo Tempest, has emerged as a formidable threat to high-value industries, with a particular focus on technology, finance, and retail sectors. Recent research reveals that 81% of the group’s registered domains impersonate technology vendors, aiming to harvest credentials from high-value targets such as system […]
The post Scattered Spider Targets Tech Companies with Phishing Frameworks like Evilginx and Social Engineering Tactics appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.