Aggregator
CVE-2025-6299 | TOTOLINK N150RT 3.4.0-B20190525 /boa/formWSC targetAPSsid os command injection
CVE-2025-6302 | TOTOLINK EX1200T 4.1.2cu.5232_B20210713 /cgi-bin/cstecgi.cgi setStaticDhcpConfig Comment stack-based overflow (EUVD-2025-18714)
CVE-2025-48058 | powsybl-core up to 6.7.1 redos (GHSA-rqpx-f6rc-7hm5 / EUVD-2025-18708)
CVE-2025-49715 | Microsoft Dynamics 365 FastTrack Implementation exposure of private personal information to an unauthorized actor
CVE-2025-6288 | PHPGurukul Bus Pass Management System 1.0 Profile Page /admin/admin-profile.php profile name cross site scripting
CVE-2025-6291 | D-Link DIR-825 2.03 HTTP POST Request do_file stack-based overflow
CVE-2025-6292 | D-Link DIR-825 2.03 HTTP POST Request sub_4091AC stack-based overflow (EUVD-2025-18710)
【已复现】Linux 本地提权漏洞利用链(CVE-2025-6018、CVE-2025-6019)安全风险通告
Personal Data of Oxford City Council Officers Exposed
Hackers Exploit ComfyUI 700+ AI Image Generation Servers to Deploy Malware
A sophisticated malware campaign targeting ComfyUI, a popular AI image generation framework, has successfully compromised at least 695 servers worldwide, security researchers have discovered. The attack represents a significant escalation in threats against AI infrastructure, exploiting vulnerabilities in ComfyUI to deploy a lightweight but highly persistent backdoor dubbed “Pickai.” The campaign first emerged in February […]
The post Hackers Exploit ComfyUI 700+ AI Image Generation Servers to Deploy Malware appeared first on Cyber Security News.
System Update
某站点getshell
New Mocha Manakin Malware Deploys NodeInitRAT via Clickfix Attack
【五分钟玩转AI】第4课:生活智能体的“5秒救命术”全解读
G.O.S.S.I.P 阅读推荐 2025-06-20 Picachv~
Мошенники молчат. СМИ кричат. А вы снова меняете пароли из-за хайпа
NIST Names Shyam Sunder Associate Director for Laboratory Programs
Microsoft boosts default security of Windows 365 Cloud PCs
Windows 365 Cloud PCs now come with new default settings aimed at preventing / minimizing data exfiltration and malicious exploits, Microsoft has announced. Windows 365 Cloud PCs are Azure (i.e., Windows 365 service)-hosted virtual Windows PCs the company offers as a service. They are accessible from any modern device with internet access, and provide users with their own “always-on” Cloud PC with saved state and settings. They are often provisioned by enterprises who offer remote … More →
The post Microsoft boosts default security of Windows 365 Cloud PCs appeared first on Help Net Security.