Aggregator
Cybersecurity jobs available right now: August 5, 2025
CW – OT Security Officer SSE | United Kingdom | On-site – View job details As a CW – OT Security Officer, you will lead and prioritise a programme of security audits and assurance to identify vulnerabilities within existing controls. You will monitor and audit supply chain to ensure security requirements are included within contracts and that suppliers deliver against these commitments. Cyber Security Architect (Application Security) ASIC | Australia | Hybrid – View job … More →
The post Cybersecurity jobs available right now: August 5, 2025 appeared first on Help Net Security.
PivotTables For InfoSec Dummies
«Окей, Siri»: теперь ты знаешь, как заменить Google — и Apple готова это сделать
Last Week in Security (LWiS) - 2025-08-04
美国 VS 俄国 | 如果可以为对方建一座使馆,你会怎么做?
微软是真不在乎各种Windows 11激活工具:MAS脚本就托管在Azure上
CVE-2025-44957 | Ruckus Virtual SmartZone/Network Director JWT Signing Key hard-coded key
CVE-2025-44962 | Ruckus Virtual SmartZone/Network Director path traversal
CVE-2025-44954 | Ruckus Virtual SmartZone/Network Director SSH default key
CVE-2025-44960 | Ruckus Virtual SmartZone/Network Director API Route os command injection
CVE-2025-44963 | Ruckus Virtual SmartZone/Network Director JWT Token hard-coded key
CVE-2025-44958 | Ruckus Virtual SmartZone/Network Director storing passwords in a recoverable format
CVE-2025-8517 | givanz Vvveb 1.0.6.1 session fixiation (Issue 312)
Critical Squid Flaw Allows Remote Code Execution & Data Leakage
A critical vulnerability has been discovered in the Squid proxy server, enabling remote execution of arbitrary code. The flaw affects nearly all actively used versions, and given the widespread deployment of Squid, millions of...
The post Critical Squid Flaw Allows Remote Code Execution & Data Leakage appeared first on Penetration Testing Tools.
Lazarus Group’s Covert Supply Chain Attack: North Korean APT Poisons Open Source to Steal Developer Secrets
In the first half of 2025, Sonatype uncovered a large-scale, ongoing assault on the open-source software ecosystem, orchestrated by the North Korean threat actor known as Lazarus. Sonatype’s automated malware detection systems were the...
The post Lazarus Group’s Covert Supply Chain Attack: North Korean APT Poisons Open Source to Steal Developer Secrets appeared first on Penetration Testing Tools.
2025年中漏洞态势研究报告
PlayPraetor: New Android RAT Infects 11,000+ Devices with Real-Time On-Device Fraud
A new large-scale threat has emerged on the Android horizon, dubbed PlayPraetor—a sophisticated piece of malware capable of seizing full control over compromised devices. To date, over 11,000 devices have fallen under its sway,...
The post PlayPraetor: New Android RAT Infects 11,000+ Devices with Real-Time On-Device Fraud appeared first on Penetration Testing Tools.
Luxembourg Hit by “Sophisticated” Cyberattack: Huawei Equipment Targeted, Mobile Networks Down for Hours
The government of Luxembourg has launched an official investigation into an unprecedented disruption of the national telecommunications system that occurred on July 23. The cause of the outage, which left 4G and 5G mobile...
The post Luxembourg Hit by “Sophisticated” Cyberattack: Huawei Equipment Targeted, Mobile Networks Down for Hours appeared first on Penetration Testing Tools.