Aggregator
CVE-2026-1110 | cijliu librtsp up to 2ec1a81ad65280568a0c7c16420d7c10fde13b04 rtsp_parse_method buffer overflow (EUVD-2026-3188 / CNNVD-202601-2966)
1340 亿美元豪赌:马斯克起诉 OpenAI,加州监管重拳同时砸向 xAI
CVE-2026-0695:ConnectWise PSA 2026.1 修复高危跨站脚本(XSS)漏洞
虚假生产力工具:5 款恶意 Chrome 扩展劫持企业会话
未修补的远程代码执行漏洞:Livewire Filemanager 文件上传缺陷(CVE-2025-14894)影响 Laravel 应用
Deno 高危漏洞可导致密钥泄露(CVE-2026-22863)与代码执行(CVE-2026-22864)
2026 年会迎来微芯片植入的 “ChatGPT 时刻” 吗?
大规模清理行动:X 平台禁用 “信息金融”,彻底打击 AI 生成的加密垃圾帖
五款恶意 Chrome 扩展程序伪装成 Workday 与 NetSuite 以劫持账户
AI 系统将攻击重建时间从数周缩短至数小时
CVE-2026-1105 | EasyCMS up to 1.6 /UserAction.class.php _order sql injection (EUVD-2026-3192 / CNNVD-202601-2970)
CVE-2026-1107 | EyouCMS up to 1.7.1/5.0 Member Avatar Diyajax.php check_userinfo viewfile unrestricted upload (EUVD-2026-3190 / CNNVD-202601-2971)
CVE-2026-1106 | Chamilo LMS up to 2.0.0 Beta 1 Legal Consent SocialController.php deleteLegal userId improper authorization (EUVD-2026-3191 / CNNVD-202601-2972)
OpenStack 管理员权限伪造漏洞:CVE-2026-22797 允许用户 “申请” root 权限
Linux SUID提权:从内核原理到实战利用
New Spear-Phishing Attack Abusing Google Ads to Deliver EndRAT Malware
A new spear-phishing campaign known as Operation Poseidon has emerged, exploiting Google’s advertising infrastructure to distribute EndRAT malware while evading traditional security measures. he attack leverages legitimate ad click tracking domains to disguise malicious URLs, making them appear as trustworthy advertising traffic. This technique effectively bypasses email security filters and reduces user suspicion during the […]
The post New Spear-Phishing Attack Abusing Google Ads to Deliver EndRAT Malware appeared first on Cyber Security News.
Испанская Атлантида. На окраине Кордовы нашли легендарный город, потерянный 1000 лет наза
Tuinman in Zuid-Korea en Japan: “We moeten elkaar vasthouden”
Hacker Pleads Guilty to Access Supreme Court, AmeriCorps, VA Systems
Nicholas Moore, a 24-year-old Tennessee man, pleaded guilty to using stolen credentials of authorized users to hack into computer systems of the Supreme Court, VA, and AmeriCorps, obtaining sensitive information and then posting it online to his Instagram account.
The post Hacker Pleads Guilty to Access Supreme Court, AmeriCorps, VA Systems appeared first on Security Boulevard.