Aggregator
Zed теперь и на Windows — редактор кода без визуального мусора и фоновых пожирателей ОЗУ
Ukraine Warns of Weaponized XLL Files Delivering CABINETRAT Malware via Zip Archives
Ukraine’s national cyber incident response team, CERT-UA, has issued an urgent warning about a new malware campaign that weaponizes Excel add-in (XLL) files to deploy the CABINETRAT backdoor. Throughout September 2025, CERT-UA analysts discovered multiple malicious XLL files masquerading as benign documents, including “Звернення УБД.xll” and “recept_ruslana_nekitenko.xll,” which exploit Excel’s Add-in Manager and the xlAutoOpen […]
The post Ukraine Warns of Weaponized XLL Files Delivering CABINETRAT Malware via Zip Archives appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Announcing the HYPR Help Desk Application: Turn Your Biggest Risk into Your Strongest Defense
The call comes in at 4:55 PM on a Friday. It’s the CFO, and she’s frantic. She’s locked out of her account, needs to approve payroll, and her flight is boarding in ten minutes. She can’t remember the name of her first pet, and the code sent to her phone isn’t working. The pressure is immense. What does your help desk agent do? Do they bypass security to help the executive, or do they hold the line, potentially disrupting a critical business function?
This isn’t a hypothetical scenario; it's a daily, high-stakes gamble for support teams everywhere. And it’s a gamble that attackers are counting on. They know your help desk is staffed by humans who are measured on their ability to resolve problems quickly. They exploit this pressure, turning your most helpful employees into unwitting accomplices in major security breaches. It's time to stop gambling.
The post Announcing the HYPR Help Desk Application: Turn Your Biggest Risk into Your Strongest Defense appeared first on Security Boulevard.
CVE-2025-40648 | Issabel 5.0.0 index.php?menu=conferencia numero_conferencia cross site scripting
CVE-2025-40647 | Issabel 5.0.0 index.php?menu=address_book email cross site scripting
CVE-2023-53512 | Linux Kernel up to 5.10.172/5.15.98/6.1.15/6.2.2 scsi kfree memory leak
CVE-2023-53455 | Linux Kernel up to 6.1.15/6.2.2 vc4_hdmi_reset_link deadlock
CVE-2022-50454 | Linux Kernel up to 5.4.219/5.10.149/5.15.74/5.19.16/6.0.2 nouveau_gem_prime_import_sg_table use after free
CVE-2023-53486 | Linux Kernel up to 5.15.112/6.1.79/6.3.3 ntfs3 run_unpack out-of-bounds
MatrixPDF Attacks Gmail Users Bypassing Email Filters and Fetch Malicious Payload
In recent weeks, a novel malware campaign dubbed MatrixPDF has surfaced, targeting Gmail users with carefully crafted emails that slip past conventional spam and phishing filters. This campaign has been active since mid-September 2025 and leverages PDF attachments that, when opened, initiate a stealthy infection chain designed to exfiltrate sensitive information and deliver additional payloads. […]
The post MatrixPDF Attacks Gmail Users Bypassing Email Filters and Fetch Malicious Payload appeared first on Cyber Security News.