Aggregator
云上安全态势报告-2025年10月
Clop
You must login to view this content
GitHub Copilot and Visual Studio Flaws Let Attackers Bypass Security Protections
Microsoft has disclosed two critical security vulnerabilities affecting GitHub Copilot and Visual Studio Code that could allow attackers to bypass important security protections. Both flaws were reported on November 11, 2025, and carry “Important” severity ratings, posing immediate risks to developers using these widely adopted tools. CVE ID Affected Product Impact Type Max Severity CVSS […]
The post GitHub Copilot and Visual Studio Flaws Let Attackers Bypass Security Protections appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Пять дней на уведомление. Минобороны ужесточает контроль за уволенными ИТ специалистами
Chrome Security Update Fixes Improper Implementation in V8 JavaScript Engine
Google has released a new stable Chrome update that addresses a serious flaw in its V8 JavaScript engine. The update, now available as version 142.0.7444.162/.163 for Windows, 142.0.7444.162 for Mac, and 142.0.7444.162 for Linux, will roll out to users over the coming days and weeks. CVE ID Severity Affected Component Description CVE-2025-13042 High V8 JavaScript […]
The post Chrome Security Update Fixes Improper Implementation in V8 JavaScript Engine appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
ClickFix Explosion: Cross-Platform Social Engineering Turns Users Into Malware Installers
Eric Parker, a recognized cybersecurity expert, has recently released a video on ClickFix attacks, their detection, analysis, and gathering threat intelligence. Here is our recap highlighting the key points and practical advice. ClickFix as the Signature Threat of 2025 In 2025 the internet saw a sharp surge in a deceptively simple but highly effective social-engineering […]
The post ClickFix Explosion: Cross-Platform Social Engineering Turns Users Into Malware Installers appeared first on ANY.RUN's Cybersecurity Blog.
Google Launches 'Private AI Compute' — Secure AI Processing with On-Device-Level Privacy
New KomeX Android RAT Advertised on Hacker Forums with Multiple Subscription Options
A newly identified Android remote access trojan (RAT) dubbed KomeX has surfaced on underground hacker forums, generating widespread concern within the cybersecurity community. Marketed by a threat actor under the alias “Gendirector,” KomeX is built atop the infamous BTMOB RAT codebase and presents a formidable arsenal of spying and device control features. Recognized for its […]
The post New KomeX Android RAT Advertised on Hacker Forums with Multiple Subscription Options appeared first on Cyber Security News.
КИИ под ударом: не перешёл, не классифицировал — плати. Минцифры вводит оборотные штрафы за иностранное ПО
CVE-2025-13046 | ViewLead Bacteriology Laboratory Reporting System sql injection
CVE-2025-12872 | aEnrich a+HRD/a+HCM up to 7.5 cross site scripting
CVE-2025-13047 | ViewLead Bacteriology Laboratory Reporting System sql injection
深入SleepObfs的检测与绕过
WIZ竞标赛 Perimeter Leak wp
CVE-2025-12871 | aEnrich a+HRD up to 7.5 weak authentication
CVE-2025-12870 | aEnrich a+HRD up to 7.5 Packets weak authentication
Cobalt Strike内存加载.NET程序集功能原理分析并重构
2025黄鹤杯网络安全人才创新大赛 江城校园新星赛道 wp
Crypto24
You must login to view this content