Aggregator
CVE-2025-27350 | Hugh Mungus Vice Versa Plugin up to 2.2.3 on WordPress cross site scripting
CVE-2025-22374 | Videx CyberAudit-Web up to 1.1.3 server-side request forgery
CVE-2025-22375 | Videx CyberAudit-Web up to 9.5 improper authentication
CVE-2025-31411 | Aribhour Linet ERP-Woocommerce Integration Plugin up to 3.5.12 on WordPress path traversal
CVE-2025-23386 | SUSE openSUSE Tumbleweed prior 2.5.0-1.1 default permission
CVE-2025-22279 | Crocoblock JetCompareWishlist Plugin up to 1.5.9 on WordPress filename control
FreeBuf早报 | APT组织瞄准国内企业用户;微软Exchange管理中心全球宕机
警惕!攻击者利用 SourceForge 软件托管平台传播恶意软件
HollowQuill Malware Attacking Government Agencies Worldwide Via Weaponized PDF Documents
A sophisticated malware campaign dubbed “HollowQuill” has emerged as a significant threat to academic institutions and government agencies worldwide. The attack leverages weaponized PDF documents disguised as research papers, grant applications, or official government communiques to entice unsuspecting victims into initiating the infection chain. The malware employs advanced social engineering tactics to increase its success […]
The post HollowQuill Malware Attacking Government Agencies Worldwide Via Weaponized PDF Documents appeared first on Cyber Security News.
PlayPraetor Reloaded: CTM360 Uncovers a Play Masquerading Party
SideCopy APT Hackers Mimic as Government Personnel to Deploy Open-Source XenoRAT Tool
A sophisticated campaign by the Pakistan-linked SideCopy Advanced Persistent Threat (APT) group has emerged since late December 2024, targeting critical Indian government sectors with enhanced tactics. The group has significantly expanded its scope beyond traditional defense and maritime sectors to now include entities under railway, oil & gas, and external affairs ministries, demonstrating an alarming […]
The post SideCopy APT Hackers Mimic as Government Personnel to Deploy Open-Source XenoRAT Tool appeared first on Cyber Security News.