Aggregator
CVE-2024-6072 | WP-FeedStats wp-cart-for-digital-products Plugin up to 8.5.4 on WordPress Attribute $_SERVER['REQUEST_URI'] cross site scripting
CVE-2024-6073 | WP-FeedStats wp-cart-for-digital-products Plugin up to 8.5.4 on WordPress cross site scripting
CVE-2024-6075 | WP-FeedStats wp-cart-for-digital-products Plugin up to 8.5.4 on WordPress cross-site request forgery
CVE-2024-6076 | WP-FeedStats wp-cart-for-digital-products Plugin up to 8.5.4 on WordPress cross site scripting
CVE-2024-6742 | AguardNet Space Management System prior 2024-04-09-3302 cross site scripting
Microsoft Warns of StilachiRAT Stealing Remote Desktop Protocol Session Data
Microsoft has recently issued a warning about a novel remote access trojan (RAT) known as StilachiRAT, which poses significant threats to system security by stealing sensitive data, including credentials and cryptocurrency information. This sophisticated malware was discovered by Microsoft Incident Response researchers in November 2024 and is notable for its advanced evasion techniques and persistence […]
The post Microsoft Warns of StilachiRAT Stealing Remote Desktop Protocol Session Data appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
How to Improve Okta Security in Four Steps
新型“规则文件后门”攻击:黑客通过AI代码编辑器注入恶意代码
SRC挖掘之302跳转登录劫持
New Ad Fraud Campaign Exploits 331 Apps with 60M+ Downloads for Phishing and Intrusive Ads
Unleashing improved context for threat actor activity with our Cloudforce One threat events platform
Sophisticated Phishing Attack Leverages Microsoft 365 Infrastructure to Target Users
A highly sophisticated phishing campaign has been uncovered exploiting Microsoft 365’s trusted infrastructure to facilitate credential harvesting and account takeover attempts. This attack leverages legitimate Microsoft domains and tenant misconfigurations to conduct Business Email Compromise (BEC) operations, effectively bypassing traditional email security controls by exploiting inherent trust mechanisms within the Microsoft ecosystem. Attack Mechanism The […]
The post Sophisticated Phishing Attack Leverages Microsoft 365 Infrastructure to Target Users appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.