Aggregator
The Role of AI in Cybersecurity: Boon or Threat?
Think about it – everything’s online these days, right? Your photos, your bank stuff, your emails, and even your fridge probably connect to the internet now. It’s fantastic, but it also means there’s a whole bunch of sneaky folks out there – cybercriminals – trying to mess with it all. They want your data, your […]
The post The Role of AI in Cybersecurity: Boon or Threat? appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
VanHelsing, new RaaS in Town
Key Points VanHelsing RaaS In recent weeks, a new and rapidly expanding ransomware-as-a-service (RaaS) program called VanHelsingRaaS has been making waves in the cybercrime world. Launched on March 7, 2025, this service has already demonstrated its rapid growth and deadly potential, having infected three victims within just two weeks of its introduction. Reputable affiliates can […]
The post VanHelsing, new RaaS in Town appeared first on Check Point Research.
CVE-2025-2657 | projectworlds Apartment Visitors Management System 1.0 /front.php rid sql injection
Архитекторы памяти: как дендриты строят мосты между мгновениями нашей жизни
CVE-2024-4696 | Lenovo Service Bridge 4/4.1.0.1 os command injection
CVE-2024-38312 | Mozilla Firefox up to 126 on iOS Private Tab access control
CVE-2024-33253 | GUnet OpenEclass E-Learning Platform up to 3.15 Badge Template Edit title/description cross site scripting
CVE-2024-5924 | Dropbox Desktop 198.4.7615 Folder Sharing protection mechanism (ZDI-24-677)
CVE-2024-38313 | Mozilla Firefox up to 126 on iOS URL clickjacking
CVE-2024-23142 | Autodesk AutoCAD MODEL File Parser use after free
CVE-2025-2645 | PHPGurukul Art Gallery Management System 1.0 /product.php artname cross site scripting
CVE-2025-2646 | PHPGurukul Art Gallery Management System 1.0 /admin/admin-profile.php contactnumber sql injection
CVE-2025-2647 | PHPGurukul Art Gallery Management System 1.0 /search.php Search sql injection
俄测试网络主权,完全切断 Cloudflare 连接
先演习一下,这次在部分地区完全切断 Cloudflare,起初是中部的、与哈萨克斯坦接壤的新西伯利亚州。后来,不同 ISP 和地区的封锁有差异,大体上集中在俄罗斯中部和东部地区,该国的欧洲部分不受影响。用户报告所有使用了 Cloudflare CDN 的网站,都无法被打开。包括邻国的 DeepSeek、测速站 Speedtest、w3.org,以及臭打游戏的们的 Discord、EA、Nexus mods、VRChat。Cloudflare Radar 显示部分 ISP,比如 ZSTTKAS(AS21127)的 HTTP 流量接近清零。
“演习”结束,DeepSeek 率先被解封。这期间一名用户声称使用 chat.deepseek.com 作为 TLS hello,Discord 聊天就能“迅速打开”。本人推测这并不是已被 Cloudflare 禁止的域前置:封锁和解封与否是基于 IP 地址,而不是 HTTPS SNI。
可能的关联是:Roskomnadzor 在本月 20 日说要“对俄罗斯服务和电信运营商使用外国服务器基础设施进行定期技术检查”、以及“研究在确保网络主权的框架内制定改善上述服务的稳定性和安全性的措施”。不过本人看不出来封锁 IP 地址、导致俄国人上不去使用 Cloudflare CDN 的网站是如何改善稳定和安全的。
Cloudflare Status 记录了此次短暂封锁,现在其已被标记为“解决”。