Aggregator
6 Okta security settings you might have overlooked
Researchers Uncover “Haxor” SEO Poisoning Marketplace
CVE-2026-1444 | iJason-Liu Books_Manager up to 298ba736387ca37810466349af13a0fdf828e99c add_book_check.php mark cross site scripting
800K+ Telnet Servers Exposed to RCE Attacks – PoC Released
A critical authentication bypass vulnerability in the telnetd component of GNU Inetutils has exposed approximately 800,000 internet-accessible Telnet instances to unauthenticated remote code execution (RCE). Tracked as CVE-2026-24061 with a CVSS score of 9.8, the flaw allows attackers to gain root-level access without valid credentials, posing a severe risk to exposed infrastructure worldwide. Vulnerability Details […]
The post 800K+ Telnet Servers Exposed to RCE Attacks – PoC Released appeared first on Cyber Security News.
Submit #736971: https://github.com/iJason-Liu/Books_Manager Books_Manager 1.0 File Upload [Accepted]
Romania probes two suspects over alleged hitman-for-hire website
EU opens new investigation into Grok on X
The European Commission has opened a new formal investigation into X under the Digital Services Act over risks linked to the deployment of its AI tool Grok in the EU. Regulators are examining whether X properly assessed and mitigated risks tied to the spread of illegal content following Grok’s introduction on the platform. The content under scrutiny includes manipulated sexually explicit images and material that may amount to child sexual abuse content. The Commission states … More →
The post EU opens new investigation into Grok on X appeared first on Help Net Security.
Заглянуть «под капот» материнки без фонарика. CERT выпустила парсер для тех, кому мало просто обновить BIOS
Submit #736968: https://github.com/iJason-Liu/Books_Manager Books_Manager 1.0 Stored XSS [Accepted]
Curl to End Bug Bounty Following Low-Quality AI-Generated Vulnerability Reports
The curl project ended its bug bounty program in January 2026 because it received too many low-quality and useless bug reports. The decision reflects growing frustration within the open-source security community regarding the unintended consequences of financial incentive structures on vulnerability disclosure practices. The program, which was designed to encourage responsible vulnerability disclosure, paradoxically generated […]
The post Curl to End Bug Bounty Following Low-Quality AI-Generated Vulnerability Reports appeared first on Cyber Security News.
RMS 认为版权是非正义的
CVE-2026-1443 | code-projects Online Music Site 1.0 AdminDeleteUser.php ID sql injection
CVE-2026-1284 | Dassault Systèmes SOLIDWORKS eDrawings 2025/2026 EPRT File Parser out-of-bounds write
CVE-2026-1283 | Dassault Systèmes SOLIDWORKS eDrawings 2025/2026 EPRT File Parser heap-based overflow
Submit #736967: code-projects Online Music Site V1.0 SQL Injection [Accepted]
Upwind secures $250 million to expand runtime-first cloud security for AI workloads
Upwind has raised $250 million in Series B funding, bringing its total funding to $430 million. The round was led by Bessemer Venture Partners, with participation from Salesforce Ventures and Picture Capital. Existing investors include Greylock, Cyberstarts, Leaders Fund, Craft Ventures, TCV, Alta Park, Cerca Partners, Swish Ventures and Penny Jar Capital. The Series B marks the beginning of what Upwind calls “The Next Wave,” its next phase of growth focused on scaling runtime-first cloud … More →
The post Upwind secures $250 million to expand runtime-first cloud security for AI workloads appeared first on Help Net Security.