Aggregator
CVE-2025-5639 | PHPGurukul Notice Board System 1.0 /forgot-password.php email sql injection (EUVD-2025-16969)
CVE-2025-5638 | PHPGurukul Notice Board System 1.0 /admin-profile.php mobilenumber sql injection (EUVD-2025-16963)
Hundreds of GitHub Malware Repos Targeting Novice Cybercriminals Linked to Single User
A sophisticated malware distribution campaign has weaponized over 140 GitHub repositories to target inexperienced cybercriminals and gaming cheat users, representing one of the largest documented cases of supply chain attacks on the platform. The repositories, masquerading as legitimate malware tools and game cheats, contain elaborate backdoors designed to infect users who compile the seemingly authentic […]
The post Hundreds of GitHub Malware Repos Targeting Novice Cybercriminals Linked to Single User appeared first on Cyber Security News.
Arkana
You must login to view this content
CVE-2023-51073 | Buffalo LS210D 1.78-0.03 Firmware Update Script update_notifications.sh privilege escalation
CVE-2024-22900 | Vinchin Backup & Recovery 7.2 setNetworkCardInfo command injection
CVE-2024-24262 | ireader media-server 1.0.0 sip-uac-transaction.c sip_uac_stop_timer use after free
CVE-2025-31027 | Tiger Theme up to 2.0 on WordPress cross site scripting
CVE-2025-47544 | acowebs Dynamic Pricing With Discount Rules for WooCommerce Plugin sql injection
CVE-2025-39507 | NasaTheme Nasa Core Plugin up to 6.3.2 on WordPress filename control
CVE-2025-39482 | imithemes Eventer Plugin up to 3.9.6 on WordPress authorization
CVE-2025-39493 | ValvePress Rankie Plugin up to 1.8.0 on WordPress authorization
CVE-2025-39509 | ThemeNcode TNC FlipBook Plugin up to 12.1.0 on WordPress cross site scripting
CVE-2025-48146 | Michael Lups SEO Flow by LupsOnline Plugin up to 2.2.0 on WordPress cross-site request forgery
Trump cyber executive order takes aim at prior orders, secure software, identity
President Donald Trump signed an executive order Friday that rolls back parts of two executive orders from the Biden and Obama administrations.
The post Trump cyber executive order takes aim at prior orders, secure software, identity appeared first on CyberScoop.
5 SaaS Blind Spots that Undermine HIPAA Security Safeguards
Hidden SaaS risks can quietly undermine HIPAA security safeguards. Discover how SaaS visibility and control help protect ePHI and ensure HIPAA compliance.
The post 5 SaaS Blind Spots that Undermine HIPAA Security Safeguards appeared first on Security Boulevard.
Attackers exploit Fortinet flaws to deploy Qilin ransomware
ISMG Editors: Infosecurity Europe Conference 2025 Wrap-Up
Live from Infosecurity Europe 2025 in London, ISMG editors and guest CISO Ian Thornton-Trump wrap up a week of standout insights - from AI-driven security and operational resilience to supply chain risk and mental health in cyber. A celebration of community, innovation and cybersecurity basics.
'There Will Be Pain': CISA Cuts Spark Bipartisan Concerns
The Trump administration’s 2026 budget proposal would eliminate over 1,000 positions and nearly $425 million from CISA, gutting cyber ops, risk modeling and election security - prompting warnings that the U.S. is weakening its national cyber defense amid rising global threats.