Aggregator
MintsLoader Drops GhostWeaver via Phishing, ClickFix — Uses DGA, TLS for Stealth Attacks
Seven Malicious Packages Exploit Gmail SMTP to Run Harmful Commands
A major supply chain security incident has rocked the Python open-source community as researchers at Socket’s Threat Research Team uncovered seven interconnected malicious packages published on the Python Package Index (PyPI). These packages Coffin-Codes-Pro, Coffin-Codes-NET2, Coffin-Codes-NET, Coffin-Codes-2022, Coffin2022, Coffin-Grave, and cfc-bsb-were ingeniously designed to exploit Gmail’s SMTP service, establishing covert command-and-control tunnels and enabling attackers to execute […]
The post Seven Malicious Packages Exploit Gmail SMTP to Run Harmful Commands appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
CVE-2024-11142 | Gosoft Proticaret E-Commerce up to 5.x cross-site request forgery
CVE-2024-27876
CVE-2025-1094
Одна кнопка — и ты в матрице: детский режим в Китае вышел на системный уровень
Тим Кук сказал 'нет', Цукерберг ответил Llamа: история конфликта, создавшего ИИ-гиганта
U.S. CISA adds SonicWall SMA100 and Apache HTTP Server flaws to its Known Exploited Vulnerabilities catalog
教育部战略性新兴领域“十四五”教材建设项目重点新书 | 两位国家级教学名师领衔创作:网络空间安全导论(微课版)
教育部战略性新兴领域“十四五”教材建设项目重点新书 | 两位国家级教学名师领衔创作:网络空间安全导论(微课版)
CVE-2025-47201 | Intrexx Portal Server up to 12.0.3 cross site scripting
CVE-2025-3514 | SureForms Plugin up to 1.4.3 on WordPress Form Setting cross site scripting
CVE-2025-3513 | SureForms Plugin up to 1.4.3 on WordPress Form Setting cross site scripting
Ты загрузил фотку, чтобы сделать новую аватарку, а теперь кто-то тренирует ChatGPT на твоем лице
Opsera improves GitHub security management
Opsera announced new Advanced Security Dashboard capabilities that, available as an extension of Opsera’s Unified Insights for GitHub Copilot, help enterprises maximize the benefits of GitHub Advanced Security (GHAS). Opsera now connects and provides a comprehensive view of security alongside software development performance, enabling the monitoring of vulnerabilities, tracking of remediation, and fostering a stronger security culture across development teams, all without slowing down software delivery. “Our Advanced Security Dashboard complements our existing GitHub solutions … More →
The post Opsera improves GitHub security management appeared first on Help Net Security.
Microsoft makes all new accounts passwordless by default
Лабораторный стенд для NGFW: когда честность важнее высоких цифр
Meta хочет легализовать кражу идей. Даже судья опешил от такой наглости
CISA Issues New ICS Advisories Addressing Critical Vulnerabilities and Exploits
The Cybersecurity and Infrastructure Security Agency (CISA) has issued two new advisories revealing critical vulnerabilities found in widely used Industrial Control Systems (ICS). Released on May 1, 2025, the advisories spotlight severe security risks affecting KUNBUS GmbH’s Revolution Pi devices and the MicroDicom DICOM Viewer, with some vulnerabilities scoring the highest possible rating for risk […]
The post CISA Issues New ICS Advisories Addressing Critical Vulnerabilities and Exploits appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.