Aggregator
Submit #620483: TOTOLINK A702R V4.0.0-B20230721.1521 Buffer Overflow [Accepted]
Submit #620482: TOTOLINK A702R V4.0.0-B20230721.1521 Buffer Overflow [Accepted]
Telegram 上的偷拍群组
MOON SAFARI Falls Victim to Qilin Ransomware
CVE-2025-8135 | itsourcecode Insurance Management System 1.0 /updateAgent.php agent_id sql injection
Cognizant Agents Gave Hackers Passwords, Clorox Says in Lawsuit
Clorox is suing Cognizant for $380 million, saying the IT services provider's service desk put in place to protect the multinational company from cyber risks in 2023 gave hackers password resets and other credentials when asked without verifying the identities of people making the requests.
The post Cognizant Agents Gave Hackers Passwords, Clorox Says in Lawsuit appeared first on Security Boulevard.
CVE-2025-8134 | PHPGurukul BP Monitoring Management System 1.0 bwdates-report-result.php fromdate/todate sql injection
Submit #619817: itsourcecode Insurance Management System V1.0 SQL Injection [Accepted]
CVE-2025-8133 | yanyutao0402 ChanCMS up to 3.1.2 gather.js getArticle targetUrl server-side request forgery (ICLP1K)
CVE-2025-8132 | yanyutao0402 ChanCMS up to 3.1.2 app/extend/utils.js delfile path traversal (ICLOT8)
Submit #619813: PHPGurukul BP Monitoring Management System 1.0 SQL Injection [Duplicate]
Submit #619810: PHPGurukul BP Monitoring Management System 1.0 SQL Injection [Accepted]
Malware Campaign Masquerades as Dating Apps to Steal Data
Submit #619777: yanyutao0402 https://gitee.com/yanyutao0402/ChanCMS <3.1.3 SSRF [Accepted]
Submit #619776: yanyutao0402 https://gitee.com/yanyutao0402/ChanCMS <3.1.3 Arbitrary File Deletion [Accepted]
Storm-2603 spotted deploying ransomware on exploited SharePoint servers
One of the groups that, in the past few weeks, has been exploiting vulnerabilities in on-prem SharePoint installation has been observed deploying Warlock ransomware, Microsoft shared on Wednesday. First attack spotted on July 7th On Saturday, Microsoft announced that attackers have been spotted exploiting a zero-day variant (CVE-2025-53770) of a SharePoint vulnerability (CVE-2025-49706) that the company partially addressed with updates released on July 8th, 2025. In the intervening days, some things have become clearer but … More →
The post Storm-2603 spotted deploying ransomware on exploited SharePoint servers appeared first on Help Net Security.