Aggregator
记一次项目中拿下某oa过程
⚡ Weekly Recap: APT Campaigns, Browser Hijacks, AI Malware, Cloud Breaches and Critical CVEs
Прорыв в архитектуре ИИ вытаскивает со дна рынка видеокарты из супермаркета
CVE-2002-2029 | Apache HTTP Server 1.3.20 on Windows /php/ privileges management (EDB-21204 / Nessus ID 10839)
D-Link Routers Exposed by Hard-Coded Telnet Credential
A recently disclosed vulnerability (CVE-2025-46176) exposes critical security flaws in D-Link’s DIR-605L and DIR-816L routers, revealing hardcoded Telnet credentials that enable remote command execution. The vulnerability affects firmware versions 2.13B01 (DIR-605L) and 2.06B01 (DIR-816L), scoring 6.5 on the CVSS v3.1 scale with medium severity. Security researchers identified improper command neutralization (CWE-77) as the root cause, […]
The post D-Link Routers Exposed by Hard-Coded Telnet Credential appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
TA-ShadowCricket: Sophisticated Hacker Group Targeting Government and Enterprise Networks
A decade-long cyber espionage campaign orchestrated by the advanced persistent threat (APT) group TA-ShadowCricket has been exposed through a joint investigation by South Korea’s AhnLab and the National Cyber Security Center (NCSC). The group, previously identified as Shadow Force, has systematically compromised over 2,000 systems across 72 countries since 2012, with primary targets in government […]
The post TA-ShadowCricket: Sophisticated Hacker Group Targeting Government and Enterprise Networks appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
漏洞通告 | Grafana 开放重定向与服务端请求伪造漏洞
GitLab хотел сэкономить время — а получил ИИ, который шпионит в комментариях
NIST Introduces New Metric to Measure Likelihood of Vulnerability Exploits
CVE-2005-2846 | CMS Made Simple up to 0.10 lang.php nls[file][vx][vxsfx] file inclusion (EDB-26217 / Nessus ID 19551)
CVE-2019-16645 | EmbedThis GoAhead 2.5.0 goform/login HTTP Host Header injection (ID 154652 / EDB-47439)
Всё, что вы загрузили в интернет, может исчезнуть без суда и следствия — по чужому требованию
服务台成黑客新靶点:如何筑牢人工防线?
英伟达准备推出新款中国专用 AI 芯片
上周关注度较高的产品安全漏洞(20250519-20250525)
CNVD漏洞周报2025年第19期
CVE-2025-5196 | Wing FTP Server up to 7.4.3 Lua Admin Console unnecessary privileges
Турнир Mecha King: китайцы дали роботам перчатки и сказали «давайте по-взрослому»
Privilege Escalation Flaws Found in Tenable Network Monitor
Tenable has released version 6.5.1 of its Network Monitor, a key passive vulnerability scanning solution, to address several high-severity vulnerabilities discovered in both its codebase and bundled third-party libraries. The update comes after security researchers identified vulnerabilities in widely used components such as OpenSSL, expat, curl, libpcap, and libxml2, all of which provide essential underlying […]
The post Privilege Escalation Flaws Found in Tenable Network Monitor appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.