Aggregator
Introducing Workers Observability: logs, metrics, and queries – all in one place
Network performance update: Developer Week 2025
Cloudflare Snippets are now Generally Available
Introducing Cloudflare Secrets Store (Beta): secure your secrets, simplify your workflow
Shopware Security Plugin Exposes Systems to SQL Injection Attacks
A plugin designed to patch security vulnerabilities in older versions of Shopware has itself been found vulnerable to SQL injection attacks. The flaw, discovered in Shopware Security Plugin 6 version 2.0.10, affects Shopware installations below versions 6.5.8.13 and 6.6.5.1, potentially allowing attackers to compromise database systems with read and write permissions. The vulnerability arises from […]
The post Shopware Security Plugin Exposes Systems to SQL Injection Attacks appeared first on Cyber Security News.
Phishing kits now vet victims in real-time before stealing credentials
LeakedData
Linux USB音频驱动漏洞正被恶意USB设备在野利用
Meta в суде: Цукерберг купил друзей, чтобы не подросли враги
INC
Bert
Police detains Smokeloader malware customers, seizes servers
黑客宣称入侵WooCommerce电商平台,兜售440万用户数据
Forescout eyeScope provides organizations with insight into their security posture
Forescout announced new Forescout eyeScope cloud visibility and monitoring solution, expanding the Forescout 4D Platform to the cloud. Forescout also announced a new, small footprint, edge data collector for enterprises that require Forescout’s asset intelligence capabilities managed from the cloud for streamlined deployment and faster time to value. Forescout’s asset intelligence and control for managed, unmanaged, and agentless devices has never been more essential. As the latest “Riskiest Connected Devices in 2025” report from Forescout … More →
The post Forescout eyeScope provides organizations with insight into their security posture appeared first on Help Net Security.
[CISSP] [9] 安全漏洞,威胁和对策
G.O.S.S.I.P 阅读推荐 2025-04-09 编译器的安全之道
G.O.S.S.I.P 阅读推荐 2025-04-09 编译器的安全之道
«Это не я, это Джим»: суд не оценил цифровую подмену истца
Attackers Exploits SourceForge Software Hosting Platform to Deliver Malware
Cybercriminals have devised a sophisticated scheme exploiting SourceForge, a popular software hosting platform, to distribute malicious software disguised as legitimate office applications. The attack leverages the platform’s feature that automatically assigns sourceforge.io domains to projects, creating convincing facades for malware distribution campaigns that primarily target Russian-speaking users. The attackers created a project called “officepackage” on […]
The post Attackers Exploits SourceForge Software Hosting Platform to Deliver Malware appeared first on Cyber Security News.