Aggregator
Salesloft Drift compromised en masse, impacting all third-party integrations
Researchers said Google Workspace customers were hit, and noted other platforms are impacted as well. Fresh evidence proves impact was not limited to Salesforce, as Salesloft previously claimed.
The post Salesloft Drift compromised en masse, impacting all third-party integrations appeared first on CyberScoop.
Hackers Steal 4M+ TransUnion Customers' Data
CVE-2025-58049 | XWiki xwiki-platform up to 16.4.7/16.10.6/17.3.x improper removal of sensitive information before storage or transfer (GHSA-9m7c-m33f-3429 / WID-SEC-2025-1919)
CVE-2025-57759 | Contao CMS up to 5.3.37/5.6.0 privileges management (GHSA-qqfq-7cpp-hcqj / WID-SEC-2025-1920)
CVE-2025-57757 | Contao CMS up to 5.3.37/5.6.0 information disclosure (GHSA-w53m-gxvg-vx7p / WID-SEC-2025-1920)
CVE-2025-57758 | Contao CMS up to 5.3.37/5.6.0 Corresponding access control (GHSA-7m47-r75r-cx8v / WID-SEC-2025-1920)
CVE-2025-57756 | Contao CMS up to 4.13.55/5.3.37/5.6.0 information disclosure (GHSA-2xmj-8wmq-7475 / WID-SEC-2025-1920)
CISA Adds Citrix and Git Flaws to KEV Catalogue Amid Active Exploitation
Safepay
You must login to view this content
Windsurf MCP Integration: Missing Security Controls Put Users at Risk
Pear
You must login to view this content
CVE-2023-20644 | MediaTek MT8797 ril out-of-bounds (ALPS07628603 / EUVD-2023-24823)
CVE-2023-20641 | MediaTek MT6879/MT6895/MT6983/MT8791/MT8791T/MT8797 ril out-of-bounds write (ALPS07629574 / EUVD-2023-24820)
CVE-2023-20642 | MediaTek MT8797 ril out-of-bounds write (ALPS07628586 / EUVD-2023-24821)
CVE-2023-20643 | MediaTek MT8797 ril out-of-bounds write (ALPS07628584 / EUVD-2023-24822)
South Korea Arrests Suspected Chinese Hacker Stolen Tens of Millions of Dollars from Victims
South Korean authorities have successfully extradited a Chinese national suspected of orchestrating one of the most sophisticated hacking operations targeting high-profile individuals and financial institutions. The 34-year-old suspect, identified only as Mr. G, was repatriated from Bangkok, Thailand, on August 22, 2025, following a four-month international manhunt that resulted in his arrest for allegedly stealing […]
The post South Korea Arrests Suspected Chinese Hacker Stolen Tens of Millions of Dollars from Victims appeared first on Cyber Security News.