Aggregator
Electronics manufacturer Data I/O took offline operational systems following a ransomware attack
CVE-2025-50578 | LinuxServer.io Heimdall 2.6.3-ls307 HTTP Header X-Forwarded-Host/Referer redirect (ID 1451)
CVE-2025-54130 | Cursor up to 1.3.8 Setting vscode/settings.json improper authorization (GHSA-vqv7-vq92-x87f)
CVE-2025-54135 | Cursor up to 1.3.8 MCP File Parser /.Cursor/mcp.json os command injection (GHSA-4cxx-hrm3-49rm)
CVE-2025-8610 | AOMEI Cyber Backup missing authentication
CVE-2025-9298 | Tenda M3 1.0.0.12 /goform/QuickIndex formQuickIndex PPPOEPassword stack-based overflow
CVE-2025-9237 | CodeAstro Ecommerce Website 1.0 Edit Your Account Page my_account.php?edit_account Username cross site scripting (EUVD-2025-25380)
CVE-2025-54133 | Cursor up to 1.2 Model Context Protocol os command injection (GHSA-r22h-5wp2-2wfv / EUVD-2025-23406)
CVE-2025-54131 | Cursor up to 1.2 command injection (GHSA-534m-3w6r-8pqr / EUVD-2025-23408)
CVE-2025-54136 | Cursor up to 1.2.4 os command injection (GHSA-24mc-g4xr-4395 / EUVD-2025-23405)
CVE-2025-49663 | Microsoft Windows Server 2008 R2 SP1 up to Server 2022 23H2 Routing/Remote Access Service heap-based overflow (EUVD-2025-20581)
/r/ReverseEngineering's Weekly Questions Thread
Happy Birthday Linux! 34 Years of Open-Source Power
August 25, 2025, marks the 34th anniversary of Linux, a project that began as a modest hobby and has grown into the bedrock of modern digital infrastructure. On this day in 1991, 21-year-old Finnish student Linus Torvalds posted to the comp.os.minix newsgroup: “I’m doing a (free) operating system (just a hobby, won’t be big and […]
The post Happy Birthday Linux! 34 Years of Open-Source Power appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
CVE-2003-0078 | OpenSSL up to 0.9.7 Block Cipher Padding s3_pkt.c ssl3_get_record missing encryption (EDB-22264 / Nessus ID 13783)
CVE-2003-0083 | Apache HTTP Server up to 1.3.24/2.0.45 Escape Character privileges management (EDB-9887 / Nessus ID 11408)
CVE-2003-0084 | Red Hat Linux 2.1 mod_auth_any privileges management (Nessus ID 12383 / ID 86684)
Hackers Steal Windows Secrets and Credentials Undetected by EDR Detection
A cybersecurity researcher has unveiled a sophisticated new method for extracting Windows credentials and secrets that successfully evades detection by most Endpoint Detection and Response (EDR) solutions currently deployed in enterprise environments. The technique, dubbed “Silent Harvest,” leverages obscure Windows APIs to access sensitive registry data without triggering common security alerts. The breakthrough represents a […]
The post Hackers Steal Windows Secrets and Credentials Undetected by EDR Detection appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Миллиарды устройств сядут на световую диету. Батарейки больше не нужны?
NIST Releases Lightweight Cryptography Standard for IoT Security
The National Institute of Standards and Technology (NIST) has formally published Special Publication 800-232, “Ascon-Based Lightweight Cryptography Standards for Constrained Devices,” establishing the first U.S. government benchmark for efficient cryptographic algorithms tailored to resource-constrained environments such as the Internet of Things (IoT), embedded systems, and low-power sensors. In February 2023, NIST selected the Ascon family […]
The post NIST Releases Lightweight Cryptography Standard for IoT Security appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.