Aggregator
CVE-2018-1002100 | Kubernetes up to 1.5.x/1.6.x/1.7.x/1.8.x/1.9.5 kubectl cp data processing (Bug 1564305 / EUVD-2022-2004)
CVE-2025-14894 | Bee Interactive Livewire Filemanager 0.x LivewireFilemanagerComponent.php unrestricted upload (EUVD-2026-2947)
CVE-2025-69581 | Chamillo LMS 1.11.2 User Information /personal_data information disclosure (EUVD-2026-2873)
CVE-2020-25816 | Hashicorp Vault Enterprise up to 1.5.3 Access Control privileges management (EUVD-2022-2522)
CVE-2025-56451 | Zhiyuan Collaborative Management Software 7.0 seeyon/main.do topValue cross site scripting (EUVD-2025-206297)
伪装成汽水音乐网站的银狐黑产最新钓鱼样本分析
Argus – Python-powered Toolkit for Information Gathering and Reconnaissance
Argus is a comprehensive Python-based toolkit designed for reconnaissance tasks in cybersecurity. The developers recently released version 2.0, expanding it to include 135 modules. This tool consolidates network analysis, web app scanning, and threat intelligence into one interface. Users access modules through an interactive CLI that supports searching, favorites, and batch runs. Network and infrastructure […]
The post Argus – Python-powered Toolkit for Information Gathering and Reconnaissance appeared first on Cyber Security News.
伊朗恢复互联网访问
Google’s Vertex AI Vulnerability Enables Low-Privileged Users to Gain Service Agent Roles
Google’s Vertex AI contains default configurations that allow low-privileged users to escalate privileges by hijacking Service Agent roles. XM Cyber researchers identified two attack vectors in the Vertex AI Agent Engine and Ray on Vertex AI, which Google deemed “working as intended. Service Agents are managed identities that Google Cloud attaches to Vertex AI instances […]
The post Google’s Vertex AI Vulnerability Enables Low-Privileged Users to Gain Service Agent Roles appeared first on Cyber Security News.