Aggregator
CVE-2025-21932 | Linux Kernel up to 6.12.18/6.13.6 mm vma_modify allocation of resources
CVE-2025-21931 | Linux Kernel up to 6.12.18/6.13.6 memory_hotplug /include/linux/swapops.h state issue
The Baby Rattlesnake of Cyberattacks: Why Layer 7 DDoS Can Be More Dangerous Than Larger Threats
Layer 7 DDoS attacks are stealthy, potent, and often more dangerous than massive traffic floods. Learn why these “baby rattlesnakes” are so hard to stop.
The post The Baby Rattlesnake of Cyberattacks: Why Layer 7 DDoS Can Be More Dangerous Than Larger Threats appeared first on Security Boulevard.
大语言模型黑盒越狱攻击之模板补全
Банки хотят блокировать тех, кто слишком умён для их бонусных программ
NeuroSA: когда компьютер мыслит как мозг, невозможное становится возможным
Apple fined €150 million over App Tracking Transparency issues
Древний оазис в марсианской пустыне: под толщей песка нашли океан глубиной почти 4 км
Dark Storm Team Targeted the Website of FBI
Akira
Akira
Unlocking the Next Wave of Edge Computing with Serverless WebAssembly
为维持竞争优势 DeepMind 推迟发布 AI 研究论文
SecWiki News 2025-04-01 Review
模型上下文协议 (MCP)- 现状剖析、安全威胁与未来研究方向 by ourren
人工智能间谍恶意软件自动化攻击样本分析 by ourren
2024年美军网络安全项目发展动向研究 by ourren
更多最新文章,请访问SecWiki
Attackers are targeting CrushFTP vulnerability with public PoC (CVE-2025-2825)
Exploitation attempts targeting the CVE-2025-2825 vulnerability on internet-facing CrushFTP instances are happening, the Shadowserver Foundation has shared on Monday, and the attackers have been leveraging publicly available PoC exploit code. What can be done? CVE-2025-2825, affecting CrushFTP versions 10.0.0 through 10.8.3 and 11.0.0 through 11.3.0, is an authentication bypass vulnerability that may allow unauthenticated attackers to access CrushFTP servers through an exposed HTTP(S) port. The vulnerability was privately disclosed to CrushFTP customers via email on … More →
The post Attackers are targeting CrushFTP vulnerability with public PoC (CVE-2025-2825) appeared first on Help Net Security.
ADCS攻击指北-权限维持
Enterprise Gmail Users Can Now Send End-to-End Encrypted Emails to Any Platform
March Recap: New AWS Sensitive Permissions and Services
As March 2025 comes to a close, we’re back with the latest round of AWS sensitive permission updates, newly supported services, and key developments across the cloud landscape. Staying current with these changes is essential for maintaining a secure and well-governed environment—especially as new permissions continue to emerge with the potential to impact everything from […]
The post March Recap: New AWS Sensitive Permissions and Services appeared first on Security Boulevard.