Aggregator
dMSAs Are the New AD Privilege Escalation Target — Here’s What You Need to Know
Introduction Windows Server 2025 introduced delegated managed service accounts (dMSAs) to improve security by linking service authentication to device identities. But attackers have already found a way to twist this new feature into a dangerous privilege escalation technique. The BadSuccessor attack lets adversaries impersonate any user — even domain admins — without triggering traditional alerts. … Continued
Dell Data Breach – Test Lab Platform Hacked by World Leaks Group
Dell Technologies has confirmed a security breach of its Customer Solution Centers platform by the World Leaks extortion group, marking another high-profile attack by the newly rebranded threat actor. The incident, which occurred earlier this month, targeted Dell’s isolated product demonstration environment used for showcasing solutions to commercial customers. Key Takeaways1. Dell data breach, synthetic […]
The post Dell Data Breach – Test Lab Platform Hacked by World Leaks Group appeared first on Cyber Security News.
CVE-2025-41674 | MB Connect Line mbNET.mini up to 2.3.2 os command injection (VDE-2025-058 / EUVD-2025-22069)
CVE-2025-41676 | MB Connect Line mbNET.mini up to 2.3.2 HTTP POST Request resource consumption (VDE-2025-058 / EUVD-2025-22067)
CVE-2025-7924 | PHPGurukul Online Banquet Booking System 1.0 /admin/admin-profile.php adminname cross site scripting (EUVD-2025-22079)
CVE-2025-4569 | ASUS MyASUS hard-coded credentials (EUVD-2025-22065)
CVE-2025-4570 | ASUS MyASUS hard-coded credentials (EUVD-2025-22064)
CVE-2023-5455 | ipa 3.0 cross-site request forgery (RHSA-2024:0137 / EUVD-2023-57769)
CVE-2025-7354 | WP Shortcodes Plugin up to 7.4.2 on WordPress Shortcode cross site scripting (EUVD-2025-22051)
CVE-2025-7354 | WP Shortcodes Plugin up to 7.4.2 on WordPress Shortcode preview cross-site request forgery (EUVD-2025-22051)
NETSCOUT’s Arbor DDoS Protection Earns Four G2 Badges for Summer 2025
Critical CrushFTP vulnerability exploited. Have you been targeted? (CVE-2025-54309)
Unknown attackers have exploited a vulnerability (CVE-2025‑54309) in the CrushFTP enterprise file-transfer server solution to gain administrative access to vulnerable deployments. It’s currently unclear what the attackers are using this access for, but data theft looks most likely. According to the Shadowserver Foundation, there are currently around 1,040 exposed and unpatched CrushFTP instances vulnerable to CVE-2025-54309, predominantly located in the US, Europe, and Canada. How many have been compromised since the attacks began is difficult … More →
The post Critical CrushFTP vulnerability exploited. Have you been targeted? (CVE-2025-54309) appeared first on Help Net Security.
Attackers Exploit Zero-Day Flaws in On-Premises SharePoint
Hackers have been exploiting two zero-day vulnerabilities in on-premises installations of Microsoft SharePoint to gain remote access, and steal cryptographic keys and data. As Microsoft rolls out patches against "ToolShell," experts warn administrators to also rotate keys, to help eject attackers.
PHP PDO Flaw Allows Attackers to Inject Malicious SQL Commands
A critical vulnerability in PHP’s widely-used PDO (PHP Data Objects) library has been discovered that enables attackers to inject malicious SQL commands even when developers implement prepared statements correctly. The security flaw, revealed through analysis of a DownUnderCTF capture-the-flag challenge, exploits weaknesses in PDO’s SQL parser and affects millions of web applications worldwide. Technical Overview […]
The post PHP PDO Flaw Allows Attackers to Inject Malicious SQL Commands appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
CISA Warns of Microsoft SharePoint Server 0-Day RCE Vulnerability Exploited in Wild
CISA has issued an urgent warning about a critical zero-day remote code execution vulnerability affecting Microsoft SharePoint Server on-premises installations that threat actors are actively exploiting in the wild. The vulnerability, tracked as CVE-2025-53770, poses a significant security risk to organizations running SharePoint infrastructure and has prompted immediate action requirements from federal agencies, as well […]
The post CISA Warns of Microsoft SharePoint Server 0-Day RCE Vulnerability Exploited in Wild appeared first on Cyber Security News.
Думали, искусство — это про душу? Робот нарисовал короля лучше человека
Lighthouse Studio RCE Vulnerability Let Attackers Gain Access to Hosting Servers
A critical remote code execution vulnerability has been discovered in Lighthouse Studio, one of the most widely deployed yet relatively unknown survey software platforms developed by Sawtooth Software. The flaw, designated CVE-2025-34300, affects the Perl CGI scripts that power web-based surveys, potentially exposing thousands of hosting servers to complete compromise by attackers who possess nothing […]
The post Lighthouse Studio RCE Vulnerability Let Attackers Gain Access to Hosting Servers appeared first on Cyber Security News.