Aggregator
CVE-2024-28870 | OISF Suricata up to 6.0.16/7.0.3 SSH Banner Parser allocation of resources (GHSA-mhhx-xw7r-r5c8)
CVE-2024-44570 | Relyum RELY-PCIe up to 23.1.0 phpinf.php getParams code injection
CVE-2024-20368 | Cisco Identity Services Engine Software 2.7.0/3.0.0/3.1.0/3.2.0/3.3.0 Web-based Management Interface cross-site request forgery (cisco-sa-ise-csrf-NfAKXrp5)
CVE-2024-35362 | Ecshop 3.6 ecshop/article_cat.php cross site scripting
CVE-2024-46101 | GDidees CMS up to 3.9.1 unrestricted upload
CVE-2024-42024 | Veeam ONE up to 12.1.0.3208 Agent Service unnecessary privileges (kb4649)
CVE-2024-42023 | Veeam ONE up to 12.1.0.3208 access control (kb4649)
CVE-2024-42021 | Veeam ONE up to 12.1.0.3208 Access Token access control (kb4649)
CVE-2024-42022 | Veeam ONE up to 12.1.0.3208 Configuration File access control (kb4649)
Плати или рискуй: Microsoft будет брать плату за обновления Windows
Вместо допинга — иголка с ниткой: как лыжники пытались сшить себе победу… и провалились
RansomHub Ransomware Deploys Malware to Breach Corporate Networks
The eSentire’s Threat Response Unit (TRU) in early March 2025, a sophisticated cyberattack leveraging SocGholish malware, also known as FakeUpdates, was uncovered targeting corporate networks. This attack, orchestrated by affiliates of RansomHub-a notorious Ransomware-as-a-Service (RaaS) group emerging in 2024-demonstrates a calculated approach to infiltrate high-profile organizations. SocGholish Malware as Initial Vector RansomHub markets its illicit […]
The post RansomHub Ransomware Deploys Malware to Breach Corporate Networks appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
19 APT Hackers Target Asia-based Company Servers Using Exploited Vulnerabilities and Spear Phishing Email
The NSFOCUS Fuying Laboratory’s global threat hunting system identified 19 sophisticated Advanced Persistent Threat (APT) attack campaigns, predominantly targeting regions across South Asia, East Asia, Eastern Europe, and South America. These incursions highlighted a continuation of targeted cyber espionage and sabotage activities, primarily focusing on government agencies, critical infrastructure, and prominent industry sectors through a […]
The post 19 APT Hackers Target Asia-based Company Servers Using Exploited Vulnerabilities and Spear Phishing Email appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Blackpoint Cyber Extends MDR Service to Improve Cyber Resiliency
Blackpoint Cyber today at the 2025 RSA Conference unveiled a unified security posture and response platform that is based on the company’s managed detection and response (MDR) service. Company CTO Manoj Srivastava said the CompassOne platform provides organizations the tool to discover assets along with the guidance needed to improve their security posture. The overall..
The post Blackpoint Cyber Extends MDR Service to Improve Cyber Resiliency appeared first on Security Boulevard.