Aggregator
《东渡黄河之前》
SecWiki News 2025-08-16 Review
Google Awards $250,000 Bounty for Chrome RCE Vulnerability Discovery
Google has awarded a record-breaking $250,000 bounty to security researcher “Micky” for discovering a critical remote code execution vulnerability in Chrome’s browser architecture. The vulnerability allowed malicious websites to escape Chrome’s sandbox protection and execute arbitrary code on victim systems. Key Takeaways1.Google paid researcher "Micky" a record amount for finding a critical Chrome vulnerability.2.The bug […]
The post Google Awards $250,000 Bounty for Chrome RCE Vulnerability Discovery appeared first on Cyber Security News.
克罗地亚将数字游民签证有效期延长至三年
Microsoft IIS Web Deploy Vulnerability Let Attackers Execute Remote Code
A critical vulnerability in the Microsoft Web Deploy tool could allow authenticated attackers to execute remote code on affected systems. The vulnerability, tracked as CVE-2025-53772, was disclosed on August 12, 2025, and carries a CVSS score of 8.8, indicating high severity. The flaw stems from the deserialization of untrusted data in Web Deploy, classified under […]
The post Microsoft IIS Web Deploy Vulnerability Let Attackers Execute Remote Code appeared first on Cyber Security News.
222 часа непрерывного полёта. США превращает разведку в вечную охоту, где жертвой становится каждый, кто под прицелом
CVE-2018-5315 | Wachipi WP Events Calendar Plugin 1.0 on WordPress event.php event_id sql injection (ID 145833 / EDB-43479)
CVE-2018-7543 | SnapCreek Duplicator Plugin 1.2.32 on Windows view.step4.php json cross site scripting (EDB-44288)
CVE-2018-9035 | Contact Form 7 to Database Extension Plugin 2.10.32 on WordPress ExportToCsvUtf8.php Spreadsheet input validation (EDB-44367)
CVE-2018-7747 | Caldera Forms Plugin up to 1.5.x on WordPress cross site scripting (EDB-44489)
CVE-2018-11526 | WordPress Comments Import / Export up to 2.0.3 on WordPress injection (EDB-44940)
CVE-2018-20556 | Booking Calendar Plugin 8.4.3 on WordPress booking_id sql injection (EDB-46377)
CVE-2018-9118 | 99 Robots WP Background Takeover Advertisements Plugin exports/download.php path traversal (EDB-44417)
CVE-2025-8933 | 1000 Projects Sales Management System 1.0 sales.php ssalescat cross site scripting (EUVD-2025-24658)
CVE-2025-8934 | 1000 Projects Sales Management System 1.0 /sales.php select2112 cross site scripting (EUVD-2025-24656)
CVE-2025-8935 | 1000 Projects Sales Management System 1.0 /superstore/custcmp.php Username sql injection (EUVD-2025-24655)
BSidesSF 2025: Round And Around We Go: Interviews, What Do You Know?
Creator, Author and Presenter: Erin Barry
Our deep appreciation to Security BSides - San Francisco and the Creators, Authors and Presenters for publishing their BSidesSF 2025 video content on YouTube. Originating from the conference’s events held at the lauded CityView / AMC Metreon - certainly a venue like no other; and via the organization's YouTube channel.
Additionally, the organization is welcoming volunteers for the BSidesSF Volunteer Force, as well as their Program Team & Operations roles. See their succinct BSidesSF 'Work With Us' page, in which, the appropriate information is to be had!
The post BSidesSF 2025: Round And Around We Go: Interviews, What Do You Know? appeared first on Security Boulevard.