Aggregator
Submit #567688: PHPGurukul Directory Management System V2.0 SQL Injection [Duplicate]
CVE-2025-3742 | Responsive Lightbox & Gallery Plugin up to 2.5.0 on WordPress cross site scripting (EUVD-2025-15142)
Haowang Guarantee: рынок, где продавалось всё — миллиарды, власть и люди. И всё — исчезло за один день
Submit #567683: PHPGurukul Cyber Cafe Management System V1.0 SQL Injection [Accepted]
Submit #567673: PHPGurukul Cyber Cafe Management System V1.0 SQL Injection [Accepted]
Google Chrome Zero-Day Vulnerability (CVE-2025-4664) Actively Exploited in The Wild
Google has rolled out a fresh Stable Channel update for the Chrome browser across desktop platforms, including Windows, Mac, and Linux. This update elevates Chrome to version 136.0.7103.113/.114 for Windows and Mac, and 136.0.7103.113 for Linux. The deployment will occur gradually over the next few days and weeks, ensuring users worldwide receive the latest enhancements. […]
The post Google Chrome Zero-Day Vulnerability (CVE-2025-4664) Actively Exploited in The Wild appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Submit #567592: PHPGurukul Cyber Cafe Management System V1.0 SQL Injection [Duplicate]
CVE-2025-4123 | Grafana Custom Frontend Plugin cross site scripting
CVE-2025-47539 | Eventin Plugin up to 4.0.26 on WordPress import_items authorization
CVE-2025-4564 | TicketBAI Facturas para WooCommerce Plugin up to 3.18 on WordPress wp-config.php denial of service
CVE-2024-45436:Ollama ZIP文件解压导致的命令执行漏洞
New Weaponized PyPI Package Attacking Developers to Steal Source Code
A newly discovered malicious Python package, solana-token, has been weaponized to steal source code and sensitive secrets from developers working on Solana blockchain applications. Uploaded to the Python Package Index (PyPI), the module masqueraded as a legitimate utility for Solana-based projects but harbored code designed to exfiltrate critical data to a remote server. ReversingLabs researchers […]
The post New Weaponized PyPI Package Attacking Developers to Steal Source Code appeared first on Cyber Security News.
Valve 否认 Steam 被黑客入侵
AI技术驱动下的网络安全变局:以ChatGPT为例的威胁与机遇分析
锦行科技2025网安创意课第五站:在广州市工贸技师学院顺利开展!
The Growing and Changing Threat of Deepfake Attacks
Enterprises should extend deepfake-awareness training and mitigation techniques beyond C-suite executives to address the increasingly likely threat against other roles in the company.
The post The Growing and Changing Threat of Deepfake Attacks appeared first on Security Boulevard.
介绍《Artificial Intelligence for Security - Enhancing Protection》
Linux Security Essentials – Protecting Servers from Supply Chain Attacks
The Linux ecosystem, long celebrated for its open-source ethos and robust security architecture, faces an escalating threat landscape dominated by sophisticated supply chain attacks. Recent incidents, including the near-catastrophic XZ Utils backdoor, malicious Go modules delivering disk-wiping payloads, and compromised PyPI packages, highlight systemic vulnerabilities in software distribution networks. As attackers increasingly exploit trust in […]
The post Linux Security Essentials – Protecting Servers from Supply Chain Attacks appeared first on Cyber Security News.