Aggregator
IPTV电视直播源更新工具
Фишинг нового поколения: как антибот-сервисы обходят «красную страницу» Google
在线制作电子印章的工具(DrawStampUtils)
不再依赖 Adobe 软件,安卓用户轻松查看 AI 格式文件(矢量图片格式)
GHOSTPULSE Hides Within PNG File Pixel Structure To Evade Detections
Recent campaigns targeting victims through social engineering tactics utilize LUMMA STEALER with GHOSTPULSE as its loader. By tricking victims into executing a series of Windows keyboard shortcuts, malicious JavaScript is executed, leading to the execution of a PowerShell script. The script downloads and executes a GHOSTPULSE payload, which is now a single executable file containing […]
The post GHOSTPULSE Hides Within PNG File Pixel Structure To Evade Detections appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
CVE-2024-10189 | Anchor Episodes Index Plugin up to 2.1.10 on WordPress Shortcode anchor_episodes cross site scripting
CVE-2024-9231 | WP-Members Membership Plugin up to 3.4.9.5 on WordPress cross site scripting
New AI Tool To Discover 0-Days At Large Scale With A Click Of A Button
Vulnhuntr, a static code analyzer using large language models (LLMs), discovered over a dozen zero-day vulnerabilities in popular open-source AI projects on Github (over 10,000 stars) within hours. These vulnerabilities include Local File Inclusion (LFI), Cross-Site Scripting (XSS), Server-Side Request Forgery (SSRF), Remote Code Execution (RCE), Insecure Direct Object Reference (IDOR), and Arbitrary File Overwrite […]
The post New AI Tool To Discover 0-Days At Large Scale With A Click Of A Button appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
15个实用SEO技巧:从入门到进阶的完整指南
PT Data Security: как защитить данные, где бы они ни находились
Невидимые воры: как APT41 скрывала следы своей активности почти год
学会配置 Fontconfig,让 Linux 中文字体更顺心
不明威胁方利用 Roundcube Webmail 漏洞发起网络钓鱼活动
与谷歌审核间的矛盾日益激化:安卓开源文件同步应用Syncthing停止开发
网传首尔间谍机构是如何披露朝军队在大鹅
分析:胡塞武装的领导结构
研究人员发现主要 E2EE 云存储提供商存在严重安全漏洞
IcePeony Hackers Exploiting Public Web Servers To Inject Webshells
IcePeony, a China-nexus APT group, has been active since 2023, targeting India, Mauritius, and Vietnam by exploiting SQL injection vulnerabilities to compromise systems using webshells and backdoors, leveraging a custom IIS malware called IceCache. The attackers accidentally exposed a server containing sensitive data, including a zsh_history file that revealed their detailed attack timeline and techniques. […]
The post IcePeony Hackers Exploiting Public Web Servers To Inject Webshells appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.