Aggregator
朋友们,新春快乐! 我们给大家准备了一个拼手气红包,感谢大家的关注和支持! 支付宝口令: 在最坚硬的石头上刻朵小花
CISA Adds One Known Exploited Vulnerability to Catalog
CISA has added one new vulnerability to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation, as confirmed by Fortinet.
- CVE-2025-24085 Apple Multiple Products Use-After-Free Vulnerability
These types of vulnerabilities are frequent attack vectors for malicious cyber actors and pose significant risks to the federal enterprise.
Binding Operational Directive (BOD) 22-01: Reducing the Significant Risk of Known Exploited Vulnerabilities established the Known Exploited Vulnerabilities Catalog as a living list of known Common Vulnerabilities and Exposures (CVEs) that carry significant risk to the federal enterprise. BOD 22-01 requires Federal Civilian Executive Branch (FCEB) agencies to remediate identified vulnerabilities by the due date to protect FCEB networks against active threats. See the BOD 22-01 Fact Sheet for more information.
Although BOD 22-01 only applies to FCEB agencies, CISA strongly urges all organizations to reduce their exposure to cyberattacks by prioritizing timely remediation of Catalog vulnerabilities as part of their vulnerability management practice. CISA will continue to add vulnerabilities to the catalog that meet the specified criteria.
朋友们,新春快乐! 我们给大家准备了一个拼手气红包,感谢大家的关注和支持! 支付宝口令: 在最坚硬的石头上刻朵小花
朋友们,新春快乐! 我们给大家准备了一个拼手气红包,感谢大家的关注和支持! 支付宝口令: 在最坚硬的石头上刻朵小花
Chinese GenAI Startup DeepSeek Sparks Global Privacy Debate
PoC Exploit Released for Actively Exploited Windows CLFS Buffer Overflow
A proof-of-concept (PoC) exploit for the actively exploited Windows Common Log File System (CLFS) vulnerability, tracked as CVE-2024-49138 has been released. This vulnerability, which Microsoft patched on December 10, 2024, with update KB5048685 for Windows 11 versions 23H2 and 22H2, has already been exploited in the wild. Security researchers and organizations are now closely analyzing […]
The post PoC Exploit Released for Actively Exploited Windows CLFS Buffer Overflow appeared first on Cyber Security News.
Windows CLFS 漏洞 (CVE-2024-49138) 的 PoC 利用代码发布
AI in Cybersecurity: What's Effective and What’s Not – Insights from 200 Experts
AI in Cybersecurity: What's Effective and What’s Not – Insights from 200 Experts
CVE-2024-41140 | Zoho ManageEngine Applications Manager up to 174000 authorization
CVE-2025-0353 | badhonrocks Divi Torque Lite Plugin up to 4.1.0 on WordPress cross site scripting
CVE-2024-13561 | sovica Target Video Easy Publish Plugin up to 3.8.3 on WordPress Shortcode brid_override_yt cross site scripting
«Псевдоохотники»: как хакеры-призраки годами шпионят за Южной Кореей
Credential Dumping: AD User Comment
9 - CVE-2024-54488
65 тысяч звонков, 12,5 тысяч жертв: приговор создателям OTP.Agency
New Aquabot Malware Actively Exploiting Mitel SIP phones injection vulnerability
Akamai’s Security Intelligence and Response Team (SIRT) has uncovered a novel variant of the Mirai-based botnet malware, dubbed Aquabotv3, actively targeting Mitel SIP phones via a critical vulnerability. This marks the third observed iteration of Aquabot, which now showcases unique capabilities not previously seen in Mirai derivatives. The malware exploits CVE-2024-41710, a command injection vulnerability […]
The post New Aquabot Malware Actively Exploiting Mitel SIP phones injection vulnerability appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
CVE-2025-0617 | Trellix HX Console 5.1.1 Data xml entity expansion
Hackers Attacking Windows, macOS, and Linux systems With SparkRAT
Researchers have uncovered new developments in SparkRAT operations, shedding light on its persistent use in malicious campaigns targeting macOS users and government organizations. The findings, detailed in a recent report, underscore the evolving tactics of threat actors leveraging SparkRAT’s modular framework and cross-platform capabilities across Windows, macOS, and Linux. SparkRAT’s Communication Originally released on GitHub […]
The post Hackers Attacking Windows, macOS, and Linux systems With SparkRAT appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.