Aggregator
Submit #634082: itsourcecode Apartment Management System V1.0 SQL injection [Accepted]
Submit #634081: itsourcecode Apartment Management System V1.0 SQL injection [Accepted]
Submit #634080: itsourcecode Apartment Management System V1.0 SQL injection [Accepted]
Submit #634079: itsourcecode Apartment Management System V1.0 SQL injection [Accepted]
Kimsuky APT Data Leak – GPKI Certificates, Rootkits and Cobalt Strike Personal Uncovered
In late June 2025, a significant operational dump from North Korea’s Kimsuky APT group surfaced on a dark-web forum, exposing virtual machine images, VPS infrastructure, customized malware and thousands of stolen credentials. This leak offers an unprecedented window into the group’s espionage toolkit, revealing how Kimsuky conducts phishing campaigns, maintains persistence and evades detection within […]
The post Kimsuky APT Data Leak – GPKI Certificates, Rootkits and Cobalt Strike Personal Uncovered appeared first on Cyber Security News.
BSidesSF 2025: One SOC, The Whole SOC, and Nothing But The SOC, So Help Me
Creator, Author and Presenter: Carson Zimmerman
Our deep appreciation to Security BSides - San Francisco and the Creators, Authors and Presenters for publishing their BSidesSF 2025 video content on YouTube. Originating from the conference’s events held at the lauded CityView / AMC Metreon - certainly a venue like no other; and via the organization's YouTube channel.
Additionally, the organization is welcoming volunteers for the BSidesSF Volunteer Force, as well as their Program Team & Operations roles. See their succinct BSidesSF 'Work With Us' page, in which, the appropriate information is to be had!
The post BSidesSF 2025: One SOC, The Whole SOC, and Nothing But The SOC, So Help Me appeared first on Security Boulevard.
大华智能物联管理平台1day分析
How AI is Changing the Game for SaaS Sales Teams
AI is transforming how SaaS companies find and convert customers. While traditional companies struggle with 32% conversion rates, AI-native firms hit 56%. Learn how automated GTM agents work 24/7 to spot prospects, track competitors, and optimize revenue—with real results.
The post How AI is Changing the Game for SaaS Sales Teams appeared first on Security Boulevard.
Chinese APT Leverages Proxy and VPN Services to Obfuscate Infrastructure
A significant data dump surfaced on DDoSecrets.com, purportedly extracted from a workstation belonging to a threat actor targeting organizations in South Korea and Taiwan. The leak, detailed in an accompanying article, attributes the activity to the North Korean advanced persistent threat (APT) group known as Kimsuky, a sophisticated actor previously highlighted in cybersecurity advisories for […]
The post Chinese APT Leverages Proxy and VPN Services to Obfuscate Infrastructure appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Only 7 Days Left for Early Bird Registration to the OpenSSL Conference 2025
CVE-2024-46413 | Rebuild 3.7.7 com.rebuild.web.admin.rbstore.RBStoreController loadDataIndex Type server-side request forgery
CVE-2025-29524 | DASAN GPON ONU H660WM H660WMR210825 system_diagnostic_main.asp access control
CVE-2025-29525 | DASAN PON ONU H660WM OS H660WMR210825 Modem Control Panel default credentials
ScreenConnect admins targeted with spoofed login alerts
ScreenConnect cloud administrators across all region and industries are being targeted with fake email alerts warning about a potentially suspicious login event. The goal of the attackers is to grab the login credentials and MFA tokens of Super Admins: users who have full control over their organization’s ScreenConnect deployment. The campaign ScreenConnect, by US company ConnectWise, is a popular remote support and access solution tailored for IT departments and managed service providers (MSPs). The platform … More →
The post ScreenConnect admins targeted with spoofed login alerts appeared first on Help Net Security.