Aggregator
Webinar | Rethinking Workforce Access: Aligning Passwordless Innovation with Real-World Needs
Cybersecurity Firm SentinelOne Suffers Major Outage
Cybersecurity vendor SentinelOne suffered a major, global outage for about six hours on Thursday that disrupted its monitoring of managed response service customers' endpoints and networks, interrupted software updates and kept administrators from accessing consoles for troubleshooting purposes.
Autonomous Payment or Anarchy? AI Gets Purchasing Power
When AI assistants order groceries or book flights, who's responsible when something goes wrong? That question is no longer hypothetical. As Visa and Mastercard enable AI agents to perform transactions on behalf of cardholders, experts weigh the legal, security and privacy stakes.
ISMG Editors: Are We Less Secure Despite the AI Buzz?
In this week's update, Information Security Media Group editors questioned whether we’re less secure today despite agentic AI and platformization, examined Veo 3’s alarming leap in deepfake realism, and dug into Anthropic’s powerful yet problematic Claude Opus 4.
SecWiki News 2025-05-30 Review
Germany doxxes Conti ransomware and TrickBot ring leader
CVE-2011-2404 | HP Easy Printer Care Software up to 2.5 ActiveX Control HPTicketMgr.dll code injection (EDB-17697 / Nessus ID 55832)
尊界 S800,没有手工没有血统,华为「科」出百万价格
CVE-2002-0313 | Essen Essentia Web Server 2.1 URL memory corruption (EDB-21298 / XFDB-8249)
Threat Actors Exploit Google Apps Script to Host Phishing Sites
The Cofense Phishing Defense Center has uncovered a highly strategic phishing campaign that leverages Google Apps Script a legitimate development platform within Google’s ecosystem to host deceptive phishing pages. This attack, masquerading as an invoice email, exploits the inherent trust users place in Google’s trusted environment to trick recipients into divulging sensitive information. A Sophisticated […]
The post Threat Actors Exploit Google Apps Script to Host Phishing Sites appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
US military IT specialist arrested for allegedly trying to leak secrets to foreign government
CVE-2007-5190 | Alcatel-Lucent OmniVista 4760 R4.2 php-bin/Webclient.php Langue cross site scripting (EDB-30691 / BID-26128)
企业安全建设方法论
CVE-2007-2168 | AimStats 3.2 process.php databasehost privileges management (EDB-3762 / XFDB-33742)
【AI挖情报】美国“生物防御计划”的本质是:生物攻击
Alleged data sale of TotalEnergies Power & Gas – 22.25 Million Records
CVE-2025-22252
Dadsec Hacker Group Uses Tycoon2FA Infrastructure to Steal Office365 Credentials
Cybersecurity researchers from Trustwave’s Threat Intelligence Team have uncovered a large-scale phishing campaign orchestrated by the notorious hacker group Storm-1575, also known as “Dadsec.” Since September 2023, this group has been leveraging a Phishing-as-a-Service (PhaaS) platform called Tycoon2FA to target Microsoft 365 users, aiming to harvest credentials through meticulously crafted phishing pages. This campaign, active […]
The post Dadsec Hacker Group Uses Tycoon2FA Infrastructure to Steal Office365 Credentials appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.