Aggregator
CVE-2025-3856 | xxyopen Novel-Plus 5.1.0 /book/searchByPage sort sql injection
Michelson Realty Company LLC Falls Victim to Qilin Ransomware
CVE-2025-3855 | CodeCanyon RISE Ultimate Project Manager 3.8.2 Profile Picture save_profile_image profile_image_file resource injection
CVE-2024-0545 | CodeCanyon RISE Ultimate Project Manager 3.5.3 /index.php/signin redirect
Submit #557011: https://github.com/201206030/novel-plus novel-plus 5.1.0 SQL Injection [Accepted]
CVE-2025-43916 | Sonos api.sonos.com up to 2025-04-21 RFC 6819 /login/v3/oauth redirect_uri non-canonical url paths for authorization decisions
Submit #556871: codecanyon RISE - Ultimate Project Manager & CRM 3.8.2 Broken/Incorrect Access Control [Accepted]
Hackers Exploit Stolen Certificates and Private Keys to Breach Organizations
Recent research has unveiled a concerning vulnerability within the realm of containerized applications, where threat actors are leveraging stolen certificates and private keys to infiltrate organizations. This tactic not only allows hackers to bypass security measures but also potentially permits them to remain undetected for extended periods, posing significant risks to corporate security. The Stealth […]
The post Hackers Exploit Stolen Certificates and Private Keys to Breach Organizations appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Дуров: «Лучше уйдём из Франции, чем сдадим шифрование»
VibeScamming: Hackers Leverage AI to Craft Phishing Schemes and Functional Attack Models
Cybersecurity researchers at Guardio Labs have unveiled a troubling new trend dubbed “VibeScamming,” where cybercriminals are using AI tools to create sophisticated phishing campaigns with unprecedented ease. This development, which allows even novice hackers to craft convincing scams, marks a significant shift in the cyber threat landscape, facilitated by the democratization of AI technology. The […]
The post VibeScamming: Hackers Leverage AI to Craft Phishing Schemes and Functional Attack Models appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
CVE-2025-3854 | H3C GR-3000AX up to V100R006 HTTP POST Request /goform/aspForm param buffer overflow
Ransomware Attacks Cost Banks $6.08 Million on Average, Triggering Downtime and Reputation Damage
In an era where cybersecurity has become paramount, the banking and financial sectors are facing an alarming escalation in ransomware attacks. According to recent findings, each ransomware attack costs banks an average of $6.08 million, excluding the additional expenses on cybersecurity upgrades and regulatory fines. These cyber threats not only drain finances but also cause […]
The post Ransomware Attacks Cost Banks $6.08 Million on Average, Triggering Downtime and Reputation Damage appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Cybercriminals Deploy FOG Ransomware Disguised as DOGE via Malicious Emails
A new variant of the FOG ransomware has been identified, with attackers exploiting the name of the Department of Government Efficiency (DOGE) to mislead victims. This operation, which came to light through the analysis of nine malware samples uploaded to VirusTotal between March 27 and April 2, demonstrates a cunning approach to ransomware distribution. Infiltration […]
The post Cybercriminals Deploy FOG Ransomware Disguised as DOGE via Malicious Emails appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.