Aggregator
3 Major Cyber Attacks in January 2025
Our cyber threat analysts detected and explored a number of malware campaigns this January. Here are the three most dangerous attacks dissected with the aid of ANY.RUN’s Interactive Sandbox and Threat Intelligence Lookup. Fake YouTube links redirect users to phishing pages Original post on X Using the Uniform Resource Identifier authority (URI), phishers obfuscate links […]
The post 3 Major Cyber Attacks in January 2025 appeared first on ANY.RUN's Cybersecurity Blog.
Woven City: первый в мире город, где люди и роботы живут в гармонии
SLAP и FLOP: две стороны одной 0day-бреши в процессорах Apple
authID PrivacyKey protects users’ biometric identities
authID released PrivacyKey, a solution for protecting user biometric data while also avoiding all the compliance issues and risks related to biometric information storage. With the addition of PrivacyKey, authID serves as the ideal partner for organizations that previously delayed or avoided implementation of biometric solutions due to concerns over liability or potential user apprehension regarding privacy. This technology also prevents duplicate registrations without storing actual images of users’ faces. authID’s Proof solution for onboarding … More →
The post authID PrivacyKey protects users’ biometric identities appeared first on Help Net Security.
德国数据保护机构《标准数据保护模式》中译文
CVE-2024-3620 | SourceCodester Kortex Lite Advocate Office Management System 1.0 /control/adds.php name/gender/dob/email/mobile/address sql injection
CVE-2024-46340 | TP-LINK TL-WR845N(UN) 4_190219/4_200909 Factory Reset missing encryption
CVE-2023-37008 | Open5GS MME up to 2.6.4 S1AP Packet deserialization
CVE-2024-24432 | Open5GS up to 2.6.4 NAS Packet ogs_kdf_hash_mme denial of service
CVE-2023-37007 | Open5GS MME up to 2.6.4 Handover Cancel Packet MME_UE_S1AP_ID denial of service
CVE-2025-24166 | Apple macOS Web denial of service (Nessus ID 214661)
CVE-2025-24166 | Apple visionOS Web denial of service (Nessus ID 214661)
CVE-2024-52949 | iptraf-ng Interface Length IFNAMSIZ buffer overflow (Nessus ID 213408)
CVE-2024-3913 | Phoenix Contact CHARX SEC-3150 1139012 up to 1.6.x System Startup file access (VDE-2024-022)
Утечки и сбои: NVIDIA выпускает критическое обновление безопасности
Zyxel CPE Zero-Day (CVE-2024-40891) Exploited in the Wild
Security researchers have raised alarms about active exploitation attempts targeting a newly discovered zero-day command injection vulnerability in Zyxel CPE Series devices, tracked as CVE-2024-40891. This critical vulnerability, which remains unpatched and undisclosed by the vendor, has left over 1,500 devices globally exposed to potential compromise, as reported by Censys. About the Vulnerability – CVE-2024-40891 CVE-2024-40891 […]
The post Zyxel CPE Zero-Day (CVE-2024-40891) Exploited in the Wild appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Bitwarden centralizes cryptographic key management
Bitwarden announced it has strengthened its Password Manager with secure shell management (SSH). This update centralizes cryptographic key management, enabling secure storage, import, and generation of SSH keys directly within the Bitwarden vault to enhance workflows for developers and IT professionals. Addressing SSH key management challenges SSH keys are essential for securing connections between devices and servers, enabling passwordless authentication for remote systems. Traditional SSH key workflows often require managing multiple keys across devices and … More →
The post Bitwarden centralizes cryptographic key management appeared first on Help Net Security.
Scores of Critical UK Government IT Systems Have Major Security Holes
Google Researchers Breakdowns Scatterbrain Behind PoisonPlug Malware
Google’s Threat Intelligence Group (GTIG) in collaboration with Mandiant has revealed critical insights into ScatterBrain, a sophisticated obfuscation tool utilized by China-nexus cyber espionage groups, specifically APT41, to deploy the advanced backdoor family POISONPLUG.SHADOW. This analysis underscores the significant evolution of obfuscation techniques from earlier counterparts like ScatterBee, making ScatterBrain a primary contributor to the […]
The post Google Researchers Breakdowns Scatterbrain Behind PoisonPlug Malware appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.