Aggregator
CVE-2025-40675 | Bagisto 2.2.2 /search Query cross site scripting (EUVD-2025-17448)
CVE-2025-27709 | Zoho ManageEngine ADAudit Plus up to 8510 Service Account Auditing Report sql injection (EUVD-2025-17452)
Bitter Malware Employs Custom-Built Tools to Evade Detection in Advanced Attacks
In a recent research by Proofpoint and Threatray has unveiled the intricate and evolving malware arsenal of the Bitter group, also known as TA397, believed to be a state-backed actor aligned with the interests of the Indian government. Active since 2016, Bitter has transformed its operations from deploying rudimentary downloaders to orchestrating sophisticated Remote Access […]
The post Bitter Malware Employs Custom-Built Tools to Evade Detection in Advanced Attacks appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Alleged data breach of IMS Consultores
PayU Plugin Flaw Allows Account Takeover on 5000 WordPress Sites
Linux 基金会试图和解围绕 WordPress 的纠纷
Security in the Age of AI with Anand Oswal
At this year’s RSAC Conference, one theme loomed large: AI isn’t just a tool anymore—it’s a battleground. Industry veteran Anand Oswal discussed how AI is reshaping both sides of the cybersecurity equation: It’s amplifying the speed and scale of attacks while simultaneously offering new ways to fight back. The complexity of securing AI applications is..
The post Security in the Age of AI with Anand Oswal appeared first on Security Boulevard.
CVE-2025-5925 | Bunnys Print CSS Plugin up to 0.95 on WordPress Setting pcss_options_subpanel cross-site request forgery
CVE-2025-4601 | Real Estate Theme Plugin up to 4.4.0/4.4.1 on WordPress inspiry_update_profile privilege escalation
CVE-2025-5935 | Open5GS up to 2.7.3 AMF/MME src/mme/emm-sm.c common_register_state ran_ue_id denial of service (Issue 3874)
Билет на фестиваль? Проверь ещё раз. Иначе в этом году ты поёшь без денег
CVE-2025-5934 | Netgear EX3700 up to 1.0.0.88 /mtd sub_41619C stack-based overflow
Submit #589354: Open5GS <=2.7.3 Reachable Assertion [Accepted]
[Control systems] CISA ICS security advisories (AV25–326)
RipperSec Targeted the Website of Vice President of India
Submit #588258: Netgear EX3700 before 1.0.0.88 Stack-based buffer overflow [Accepted]
Major food wholesaler says cyberattack impacting distribution systems
Over 70 Organizations Across Multiple Sectors Targeted by China-Linked Cyber Espionage Group
Skitnet Malware Actively Adopted by Ransomware Gangs to Enhance Operational Efficiency
Skitnet malware, also referred to as Bossnet, has emerged as a critical tool for ransomware gangs in 2025, showcasing a marked increase in operational efficiency for cybercriminals. First advertised on underground forums like RAMP on April 19, 2024, by a threat actor known as LARVA-306, Skitnet was initially positioned as a compact, user-friendly post-exploitation package […]
The post Skitnet Malware Actively Adopted by Ransomware Gangs to Enhance Operational Efficiency appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.