Aggregator
CVE-2025-36846 | Eveo URVE Web Manager 27.02.2025 Endpoint /_internal/pc/vpro.php shell_exec os command injection
CVE-2025-52362 | PHProxy up to 1.1.1 URL _proxurl server-side request forgery (EUVD-2025-22144)
CVE-2025-36106 | IBM Cognos Analytics Mobile up to 1.1.22 on iOS inadequate encryption
Adversarial Exposure Validation (AEV) – The Missing Link in Your CTEM Program
Webinar | FAIK Everything: The Deepfake Playbook, Unleashed
AI Needs a Firewall and Cloud Needs a Rethink
The cloud was meant to be cheaper, but it's not. A bold new vision is emerging: one that slashes costs, decentralizes AI and secures APIs at the edge. From inference to firewalls, a reimagined internet is challenging hyperscaler dominance.
Hackers Target Zero-Day Vulnerability to Exploit CrushFTP
Managed file-transfer software developer CrushFTP said a zero-day vulnerability in its tool's web interface is being actively exploited to gain admin-level access to servers. The company urged immediate updating, saying all versions of its software released since July 1 are patched.
UK Sanctions 3 Russian Military Cyber Units
The U.K. government on Friday sanctioned three Russian Military Intelligence Service units 29155, 26165 and 74455 in the United Kingdom and Ukraine. The sanctions also targeted 18 Russian officials for their role in GRU cyber operations dating back to 2013.
UNG0002 Deploys Weaponized LNK Files with Cobalt Strike and Metasploit to Target Organizations
Seqrite Labs APT-Team has uncovered a persistent threat entity, UNG0002 (Unknown Group 0002), orchestrating espionage-driven operations across Asian jurisdictions, including China, Hong Kong, and Pakistan. Active since at least May 2024, this South-East Asia-based cluster has demonstrated a high degree of adaptability and technical prowess, targeting critical sectors such as defense, civil aviation, electrotechnical engineering, […]
The post UNG0002 Deploys Weaponized LNK Files with Cobalt Strike and Metasploit to Target Organizations appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Malicious Implants Are Coming to AI Components, Applications
After website hack, Arizona election officials unload on Trump’s CISA
As the state responded to a pro-Iranian attack, officials tell CyberScoop that it avoided reaching out to the federal agency, partly because it has been “politicized and weakened” under the president.
The post After website hack, Arizona election officials unload on Trump’s CISA appeared first on CyberScoop.
File transfer company CrushFTP warns of zero-day exploit seen in the wild
DeerStealer Malware Spread Through Weaponized .LNK and LOLBin Tools
A new wave of cyber-attacks has emerged, exploiting Windows shortcut files (.LNK) combined with legitimate system utilities collectively known as Living-off-the-Land Binaries and Scripts (LOLBin/S) to deliver the DeerStealer infostealer through highly obfuscated multi-stage chains. Recent campaigns begin with phishing emails or fraudulent file shares containing weaponized .LNK files camouflaged as seemingly benign documents, often […]
The post DeerStealer Malware Spread Through Weaponized .LNK and LOLBin Tools appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Китай оживляет двигатель Стирлинга 19 века — и выводит его за пределы Земли
Threat Actors Compromise Popular npm Packages to Steal Maintainers’ Tokens
Threat actors have leveraged a phishing campaign targeting npm package maintainers, resulting in the compromise of widely used JavaScript tooling libraries. The campaign, first reported on July 18, 2025, utilizes a typosquatted domain, npnjs.com, to mimic legitimate npm communications and trick developers into surrendering their authentication tokens. This multi-stage operation begins with automated emails scraped […]
The post Threat Actors Compromise Popular npm Packages to Steal Maintainers’ Tokens appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
CVE-2021-3731 | LedgerSMB clickjacking (Nessus ID 242338)
CVE-2021-3693 | LedgerSMB URL cross site scripting (Nessus ID 242338)
CVE-2021-3694 | LedgerSMB Error Message cross site scripting (Nessus ID 242338)
Beware of npm Phishing Emails Targeting Developer Credentials
An developer recently came across a highly advanced phishing email that spoofs the [email protected] address in order to impersonate npm, the Node.js package registry. The email directed recipients to a malicious link on npnjs.com, a domain cleverly typosquatted to mimic npmjs.com by swapping ‘m’ for ‘n’. This fake site hosted a complete clone or proxy […]
The post Beware of npm Phishing Emails Targeting Developer Credentials appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.