Aggregator
一图了解 | 中国信息安全测评中心2025年度公开招聘实习生公告
CVE-2025-12779 | Amazon WorkSpaces Client up to 2024.8 on Linux Authentication Token exposure of sensitive system information to an unauthorized control sphere (AWS-2025-025)
CVE-2025-64171 | 3scale-sre marin3r up to 0.13.3 DiscoveryServiceCertificate authorization (GHSA-gf93-xccm-5g6j)
CVE-2025-55278 | HCL DevOps Loop 1.0.2 API Authentication Middleware session expiration (KB0124203)
CVE-2025-64163 | DataEase up to 2.10.14 server-side request forgery (GHSA-8397-v66p-539m / CNNVD-202511-470)
CVE-2025-60784 | XiaozhangBang Voluntary Like System 8.8 Pay Module /topfirst.php zhekou improper authorization
CVE-2025-64164 | Dataease up to 2.10.14 JNDI deserialization (GHSA-q754-4pc2-wjqw)
CMMC Subcontractors and Service Providers
OCI признала FreeBSD. Спустя годы неофициального использования FreeBSD стала полноценным стандартом для контейнеров
Apache взломали? Группировка Akira сделала громкое заявление
清华大学 | ScannerGrouper:面向开放世界通用有效的扫描组织识别系统
Binary Architect: ELFSPIRIT Framework Analyzes, Patches, and Camouflages ELF Files
ELFSPIRIT is a comprehensive static analysis and injection framework designed to parse, manipulate, patch, and camouflage ELF files.
The post Binary Architect: ELFSPIRIT Framework Analyzes, Patches, and Camouflages ELF Files appeared first on Penetration Testing Tools.
Convenience or Risk? Chrome Adds Autofill for Passports & Driver’s Licenses
Google is expanding the autofill capabilities of its Chrome browser, adding support for sensitive personal data such as
The post Convenience or Risk? Chrome Adds Autofill for Passports & Driver’s Licenses appeared first on Penetration Testing Tools.
Beyond Checkboxes: Google reCAPTCHA Updates to Risk-Based Scoring & Flexible Security Policies
Google has unveiled an updated version of its reCAPTCHA system — now markedly more flexible and intelligent in
The post Beyond Checkboxes: Google reCAPTCHA Updates to Risk-Based Scoring & Flexible Security Policies appeared first on Penetration Testing Tools.
Blackmail Ring Busted: Gang Stole Client Data to Threaten Victims with Fake Tapes
The South Korean police have uncovered an organized extortion ring that stole the personal data of massage parlor
The post Blackmail Ring Busted: Gang Stole Client Data to Threaten Victims with Fake Tapes appeared first on Penetration Testing Tools.
Paywall Problem: AI Browsers Bypass Content Walls by Mimicking Human Users
The emergence of new AI-powered “smart browsers” is challenging the very foundations of how online content is protected.
The post Paywall Problem: AI Browsers Bypass Content Walls by Mimicking Human Users appeared first on Penetration Testing Tools.
Пластырь, который перезапускает сердце. В MIT создали устройство, восстанавливающее миокард после инфаркта
Critical Crypto Flaw: AMD Zen 5 Bug Risks Predictable Encryption Keys (CVE-2025-62626)
A serious vulnerability has been discovered in AMD processors based on the Zen 5 architecture, posing a potential
The post Critical Crypto Flaw: AMD Zen 5 Bug Risks Predictable Encryption Keys (CVE-2025-62626) appeared first on Penetration Testing Tools.