Aggregator
CVE-2026-25128 | NaturalIntelligence fast-xml-parser up to 5.3.3 denial of service
CVE-2026-25050 | vendurehq vendure up to 3.5.2 native-authentication-strategy.ts NativeAuthenticationStrategy.authenticate information exposure
CVE-2025-7964 | Silabs Zigbee Stack up to 4.4.6/2025.6.1 values
CVE-2026-24854 | ChurchCRM up to 6.7.1 /PaddleNumEditor.php PerID sql injection
从天空涂鸦到真实威胁:ADS-B恶作剧 vs 真正的无线电攻击
Submit #742421: D-Link DSL6641K version N8.TR069.20131126 Cross Site Scripting [Accepted]
Weekly Threat Landscape Digest – Week 5
Week 05 maintained a high operational tempo across the cybersecurity landscape, with defenders balancing routine hardening and monitoring activities against […]
The post Weekly Threat Landscape Digest – Week 5 appeared first on HawkEye.
144 кубита, два измерения и ритм вместо структуры. IBM собрала самый сложный временной кристалл в истории
Labyrinth Chollima Evolves into Three North Korean Hacking Groups
【资料】湾湾太空产业发展协会会员名录
【实战】追踪绘制美国深海关键矿产资源分布的测量船
Google’s disruption rips millions out of devices out of malicious network
The actions impaired some of IPIDEA’s proxy infrastructure, but not all of it. The effort underscores the back-and-forth struggle of taking out pieces of cybercriminals’ vast and growing infrastructure.
The post Google’s disruption rips millions out of devices out of malicious network appeared first on CyberScoop.
UAT-8099 Targets Vulnerable IIS Servers Using Web Shells, PowerShell, and Region-Customized BadIIS
A new wave of targeted attacks has emerged against Internet Information Services (IIS) servers across Asia, with threat actors deploying sophisticated malware designed to compromise vulnerable systems. The campaign, active from late 2025 through early 2026, focuses primarily on victims in Thailand and Vietnam, marking a strategic shift toward region-specific operations. The attackers exploit unpatched […]
The post UAT-8099 Targets Vulnerable IIS Servers Using Web Shells, PowerShell, and Region-Customized BadIIS appeared first on Cyber Security News.
Arsink Spyware Posing as WhatsApp, YouTube, Instagram, TikTok Hits 143 Countries
This month in security with Tony Anscombe – January 2026 edition
175,000 Exposed Ollama Hosts Enable Code Execution and External System Access
A significant security discovery reveals that approximately 175,000 Ollama servers remain publicly accessible across the internet, creating a serious risk for widespread code execution and unauthorized access to external systems. Ollama, an open-source framework designed to run artificial intelligence models locally, has become unexpectedly exposed due to simple configuration changes that administrators make without fully […]
The post 175,000 Exposed Ollama Hosts Enable Code Execution and External System Access appeared first on Cyber Security News.