Aggregator
CVE-2025-29801 | Microsoft AutoUpdate on macOS default permission (EUVD-2025-10136)
CVE-2025-21204 | Microsoft Windows up to Server 2025 Process Activation link following (EUVD-2025-10245)
BidenCash darknet forum taken down by US, Dutch law enforcement
针对 glibc 中 realloc() 函数源码在 2.2x ~ 2.3x 版本的深度解析
Cisco warns of ISE and CCP flaws with public exploit code
java之jdk17反射机制绕过深入剖析
Lumma Stealer Malware Resurgence Challenges Global Takedown
Just days after a global takedown disrupted over 2,300 Lumma-linked domains, the info-stealing malware-as-a-service operation resurfaced, exposing how modular malware and resilient infrastructure allow cybercriminals to rapidly rebound and evade law enforcement.
Zero Networks Lands $55M Series C to Drive Zero Trust Growth
With $55 million in Series C funding led by Highland Europe, Zero Networks aims to expand its zero trust architecture through identity segmentation and zero trust network access. The Orlando, Fla.-based microsegmentation startup aims to double headcount and target a $100 million ARR goal by 2027.
Unpatched Buffer Overflow in Schneider Home Devices
When the lights start flickering in homes equipped with Schneider Electric end-of-life smart switches, it could be hackers, now that the French company disclosed a remotely exploitable vulnerability that won't receive a patch. No hacking has been reported to date.
LockBit Crackdown Fragmented Russian Cybercrime Groups
An international law enforcement crackdown on the LockBit ransomware group caused fragmentation and distrust among Russian-speaking cybercrime groups, paving the way for English-speaking hacking groups to gain prominence, experts said Tuesday during a London conference.
OffensiveCon25 – Garbage Collection In V8
Authors/Presenters: Richard Abou Chaaya and John Stephenson
Our sincere appreciation to OffensiveCon by Binary Gecko, and the Presenters/Authors for publishing their outstanding OffensiveCon 2025 video content. Originating from the conference’s events located at the Hilton Berlin; and via the organizations YouTube channel.
Thanks and a Tip O' The Hat to Verification Labs :: Penetration Testing Specialists :: Trey Blalock GCTI, GWAPT, GCFA, GPEN, GPCS, GCPN, CRISC, CISA, CISM, CISSP, SSCP, CDPSE for recommending the OffensiveCon 25 conference.
The post OffensiveCon25 – Garbage Collection In V8 appeared first on Security Boulevard.
Fortinet VPN Access to Israeli Real Estate Firm Offered on Darknet Marke
You must login to view this content
CVE-2024-39722: Ollama 模型/文件存在性漏洞成因探究及完整利用过程
CVE-2022-34706 | Microsoft Windows up to Server 2022 Local Security Authority privilege escalation (EUVD-2022-37656)
Квантовая нить реальности: учёные увидели, как распадается связь между частицами
CVE-2017-7061 | Apple Safari up to 10.1.1 WebKit memory corruption (HT207921 / EDB-42666)
Salesforce customers duped by series of social-engineering attacks
Google Threat Intelligence Group said about 20 organizations have been hit by a cybercrime group it tracks as UNC6040.
The post Salesforce customers duped by series of social-engineering attacks appeared first on CyberScoop.