Aggregator
CVE-2025-6605 | SourceCodester Best Salon Management System 1.0 /panel/edit-staff.php editid sql injection (EUVD-2025-19090)
CVE-2025-6606 | SourceCodester Best Salon Management System 1.0 /panel/add-services.php Type sql injection (EUVD-2025-19091)
CVE-2023-4870 | SourceCodester Contact Manager App 1.0 Contact Information index.php contactID cross site scripting (EUVD-2023-54709)
CVE-2023-4873 | Byzoro Smart S45F Multi-Service Secure Gateway Intelligent Management Platform /importexport.php os command injection (EUVD-2023-54712)
Medical Center of Marin Falls Victim to INC RANSOM
Кто стоит за ZeroDayX? Тайны цифровой войны Ирана и Израиля, где хакеры говорят на русском
Hundreds of MCP Servers Expose AI Models to Abuse, RCE
CVE-2008-5759 | FlatnuX 2008-12-11 index.php Name cross site scripting (EDB-7461 / XFDB-47367)
Trend Micro security advisory (AV25-373)
Threat Actors Distribute Compromised SonicWall SSL VPN NetExtender to Steal Sensitive Data
Threat actors were discovered disseminating a malicious, altered version of SonicWall’s SSL VPN NetExtender application in a complex cyberattack that was discovered through a partnership between SonicWall and Microsoft Threat Intelligence (MSTIC). NetExtender, a critical tool for remote users, facilitates secure connections to corporate networks, enabling seamless access to applications, file transfers, and network resources […]
The post Threat Actors Distribute Compromised SonicWall SSL VPN NetExtender to Steal Sensitive Data appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Replacing a GitHub Personal Access Token With a GitHub Application
5 min readFollow this hands-on walkthrough to create a GitHub App, generate installation tokens, and swap fragile PATs out of your workflows.
The post Replacing a GitHub Personal Access Token With a GitHub Application appeared first on Aembit.
The post Replacing a GitHub Personal Access Token With a GitHub Application appeared first on Security Boulevard.
TeamViewer security advisory (AV25-372)
CVE-2014-9098 | Apptha Contus Video Gallery up to 2.4 videoadssearchQuery cross site scripting (ID 127611 / EDB-34161)
Multiple Brother Devices Vulnerabilities Open Devices for Hacking
A comprehensive security research investigation has unveiled eight critical vulnerabilities affecting 742 printer and multifunction device models across four major manufacturers. The discovery, stemming from a zero-day research project conducted by cybersecurity firm Rapid7, exposes severe security flaws in Brother Industries’ printer ecosystem that extend beyond the manufacturer’s own devices to impact models from FUJIFILM […]
The post Multiple Brother Devices Vulnerabilities Open Devices for Hacking appeared first on Cyber Security News.
The Best CAPTCHA is No CAPTCHA: Introducing Vercel BotID, Powered by Kasada
We're excited to partner with Vercel to launch a seamless, CAPTCHA-free bot protection to stop modern threats and preserve the user experience.
The post The Best CAPTCHA is No CAPTCHA: Introducing Vercel BotID, Powered by Kasada appeared first on Security Boulevard.
Alleged Data Sale of Bizouk.com
【已复现】Gogs 远程命令执行漏洞
Rubrik acquires AI startup Predibase to boost agentic AI offerings
Rubrik executives say the startup will help the company deliver “radical simplicity” in AI models and data management.
The post Rubrik acquires AI startup Predibase to boost agentic AI offerings appeared first on CyberScoop.
Fortanix Adds Dashboard to Better Prioritize Remediation Efforts for PQC Era
Fortanix today added a tool to its portfolio to better prioritize remediation efforts, whenever the PQC era arrives.
The post Fortanix Adds Dashboard to Better Prioritize Remediation Efforts for PQC Era appeared first on Security Boulevard.