Aggregator
Over 10,000 Zimbra servers vulnerable to ongoing XSS attacks
СМС, которую вы никогда не прочитаете. Как спецслужбы находят «важных персон» за пару часов
AI Phishing Is No. 1 With a Bullet for Cyberattackers
UK Biobank Data Breach: Health Data of 500,000 Listed for Sale in China
G.O.S.S.I.P 阅读推荐 2026-04-24 这不是一颗真星
Hackers Use Pastebin-Hosted PowerShell Script to Steal Telegram Sessions
Cybersecurity researchers have uncovered a purpose-built PowerShell script hosted on Pastebin that is designed to silently steal Telegram session data from both desktop and web-based clients. The script is disguised as a routine Windows system update, making it easy for unsuspecting users to run it without raising any alarms. The malicious script is titled “Windows […]
The post Hackers Use Pastebin-Hosted PowerShell Script to Steal Telegram Sessions appeared first on Cyber Security News.
第一本CodeBuddy书上市了,强烈推荐!
CVE-2026-41044 | Apache ActiveMQ up to 5.19.5/6.2.4 DestinationView MBean privilege escalation (EUVD-2026-25412 / WID-SEC-2026-1258)
CVE-2025-62233 | Apache DolphinScheduler 3.2.x/3.3.0 RPC deserialization (EUVD-2025-209572)
CVE-2026-4313 | C&F AdaptiveGRC up to 5.499.112 Authentication Token cross site scripting (EUVD-2026-25414)
CVE-2026-23902 | Apache DolphinScheduler up to 3.4.0 behavioral workflow (EUVD-2026-25413)
CVE-2026-6043 | Perforce Helix Core Server up to 2025.2 insecure default initialization of resource (EUVD-2026-25415)
CVE-2023-27351
CVE-2024-27199
Lockbit
You must login to view this content
CVE-2026-41126 | BigBlueButton up to 3.0.23 Requests logoutURL redirect (GHSA-cvwj-4pcp-f3g8 / CNNVD-202604-4539)
North Korea's Lazarus Targets macOS Users via ClickFix
Users advised to drop passwords and make room for passkeys
In a decisive move that could reshape how users log in online, the National Cyber Security Centre (NCSC) is urging consumers to abandon passwords in favour of passkeys, positioning them as the future of authentication. “Passkeys should become consumers’ first choice for logging into digital services,” NCSC said. Overhauling decades of security guidance, the agency will no longer recommend passwords where passkeys are available, citing their weaker resistance to current cyber threats. Since most breaches … More →
The post Users advised to drop passwords and make room for passkeys appeared first on Help Net Security.