Aggregator
CVE-2024-53862 | argoproj argo-workflows up to 3.5.12/3.6.1 GET Workflow Endpoint {name} information disclosure (GHSA-h36c-m3rf-34h9)
CVE-2024-54091 | Siemens Parasolid PAR File out-of-bounds write (ssa-979056)
CVE-2025-21628 | Chatwoot up to 3.15.x API query_operator sql injection (GHSA-g8f9-hh83-rcq9)
CVE-2024-29971 | Scontain SCONE 5.8.0 Signal injection
CVE-2024-10395 | zephyrproject-rtos Zephyr up to 3.7 http_server_get_content_type_from_extension buffer under-read (GHSA-hfww-j92m-x8fv)
CVE-2025-26495 | Salesforce Tableau Server up to 2022.1.2 Personal Access Token cleartext storage
CVE-2024-30148 | HCL Leap up to 9.3.7 Import access control (KB0119900)
CVE-2023-52998 | Linux Kernel up to 6.1.8 fec page_pool_release_retry reference count (WID-SEC-2025-0649)
CVE-2024-58248 | nopCommerce up to 4.79.x race condition (EUVD-2025-11283)
CVE-2025-21800 | Linux Kernel up to 6.12.12/6.13.1 mlx5 HWS_SET32 out-of-bounds (Nessus ID 240805 / WID-SEC-2025-0461)
Sweet Security Brings Runtime-CNAPP Power to Windows
【资料】开源情报的政策考虑:Bellingcat在线调查模式研究(2014-2024)
全球漏洞情报统一枢纽网站
Hikvision Exploiter – An Automated Exploitation Toolkit Targeting Hikvision IP Cameras
A new open-source tool called HikvisionExploiter has emerged, designed to automate attacks on vulnerable Hikvision IP cameras. Released on GitHub in mid-2024 but gaining renewed attention amid 2025’s surge in camera exploits, this Python-based utility targets unauthenticated endpoints in cameras running outdated firmware, such as version 3.1.3.150324. Developed for researchers and red teamers, it streamlines […]
The post Hikvision Exploiter – An Automated Exploitation Toolkit Targeting Hikvision IP Cameras appeared first on Cyber Security News.
首发 | 五眼联盟网络武器承包商Trenchant总经理为澳大利亚信号情报局前黑客
Cybersecurity Awareness Month 2025: Customer-Centric Innovation from ColorTokens
Bringing frictionless implementation [Progressive Segmentation™ and EDR integration] and rapid value realization to an award-winning and peer-recognized technology platform demystifies, simplifies, and makes it extremely easy for our customers to achieve cyber resilience. As a student of innovation and technology, I’ve seen time and again that raw technological prowess alone rarely sparks widespread adoption. The […]
The post Cybersecurity Awareness Month 2025: Customer-Centric Innovation from ColorTokens appeared first on ColorTokens.
The post Cybersecurity Awareness Month 2025: Customer-Centric Innovation from ColorTokens appeared first on Security Boulevard.