Aggregator
CVE-2025-10065 | itsourcecode POS Point of Sale System 1.0 dom_data_th.php scripts cross site scripting (EUVD-2025-27093)
CVE-2025-10066 | itsourcecode POS Point of Sale System 1.0 dymanic_table.php scripts cross site scripting (EUVD-2025-27091)
Minino: The “Mini Swiss Army Knife” for IoT Hacking
Minino is an original multiprotocol, and multiband board made for sniffing, communicating, and attacking IoT (Internet of Things)
The post Minino: The “Mini Swiss Army Knife” for IoT Hacking appeared first on Penetration Testing Tools.
Anthropic因下载盗版书训练模型向作者赔偿15亿美元 平均每本书约3,000美元
Kaspersky Details 14 Cyber Groups Actively Attacking Russian Organizations
Kaspersky Lab has published its first comprehensive technical analysis of cyber groups most actively targeting Russian organizations. The
The post Kaspersky Details 14 Cyber Groups Actively Attacking Russian Organizations appeared first on Penetration Testing Tools.
Microsoft Open-Sources Its Historic BASIC for the 6502 Processor
Microsoft has officially released the source code of its very first version of BASIC for the MOS 6502
The post Microsoft Open-Sources Its Historic BASIC for the 6502 Processor appeared first on Penetration Testing Tools.
Chrome 140’s New Features Are All About Privacy
Google has unveiled the new stable release of Chrome 140, accompanied by the open-source Chromium, which serves as
The post Chrome 140’s New Features Are All About Privacy appeared first on Penetration Testing Tools.
Rust Foundation Launches a New Lab to Support Key Projects
The Rust Foundation has announced the launch of the Rust Innovation Lab—a new initiative designed as a neutral
The post Rust Foundation Launches a New Lab to Support Key Projects appeared first on Penetration Testing Tools.
AI Hacking Is Here: The Tool That Weaponized a Zero-Day in Hours
On underground forums, cybercriminals have claimed they have begun deploying HexStrike AI—a new open-source penetration testing tool—against Citrix
The post AI Hacking Is Here: The Tool That Weaponized a Zero-Day in Hours appeared first on Penetration Testing Tools.
Android Issues Its Largest Patch of the Year, Fixing 2 Zero-Day Flaws
Android has released its most extensive patch bundle of the year, outpacing the traditional “Patch Tuesday” cycle. In
The post Android Issues Its Largest Patch of the Year, Fixing 2 Zero-Day Flaws appeared first on Penetration Testing Tools.
Your Wi-Fi and Bluetooth Devices Are a Global Tracking Network
Most people remain unaware that their Wi-Fi and Bluetooth devices have quietly become part of a vast, global
The post Your Wi-Fi and Bluetooth Devices Are a Global Tracking Network appeared first on Penetration Testing Tools.
The Grok Exploit: How Hackers Are Using AI to Bypass X’s Filters
Cybercriminals have discovered a method to bypass X’s restrictions on posting links by exploiting its built-in assistant, Grok.
The post The Grok Exploit: How Hackers Are Using AI to Bypass X’s Filters appeared first on Penetration Testing Tools.
Iran-Linked Cyber-Espionage Campaign Targets Diplomatic Organizations
In August 2025, specialists from Dream Threat Intelligence documented a large-scale phishing campaign attributed to actors linked to
The post Iran-Linked Cyber-Espionage Campaign Targets Diplomatic Organizations appeared first on Penetration Testing Tools.
Cloudflare’s 1.1.1.1 DNS Service Was Targeted by a Rogue Certificate Authority
On September 3, 2025, researcher Youfu Zhang reported to the Mozilla dev-security-policy mailing list that the certification authority
The post Cloudflare’s 1.1.1.1 DNS Service Was Targeted by a Rogue Certificate Authority appeared first on Penetration Testing Tools.
微软称红海多条海底电缆被切断后其云服务受影响 亚洲与欧洲连接性下降
CVE-2017-15965 | NS Download Shop 2.2.6 on Joomla invoice.create ID sql injection (File 144435/Joo / EDB-43094)
CVE-2017-15966 | Zh YandexMap 6.1.1.0 on Joomla index.php placemarklistid sql injection (File 144436/Joo / EDB-43093)
Mandiant Reveals Attack Exploiting a Publicly Known Sitecore Key
Mandiant researchers have uncovered an attack targeting legacy installations of the Sitecore platform. The attackers exploited a demonstration
The post Mandiant Reveals Attack Exploiting a Publicly Known Sitecore Key appeared first on Penetration Testing Tools.