Aggregator
CVE-2024-50637 | UnoPim up to 0.1.3 Create User cross site scripting
CVE-2024-48325 | Portabilis i-Educar 2.8.0 getDocuments instituicao_id sql injection
CVE-2020-3525 | Cisco Identity Services Engine Software Admin Portal information disclosure (cisco-sa-ise-pass-disclosure-K8p2Nsgg)
CVE-2024-45791 | Apache Hertzbeat up to 1.6.0 Query String information disclosure
CVE-2024-47208 | Apache OFBiz up to 18.12.16 Groovy Expression server-side request forgery
CVE-2024-45505 | Apache HertzBeat up to 1.6.0 command injection
CVE-2024-41151 | Apache HertzBeat up to 1.6.0 Notice Template deserialization
Почему наш мир ещё не рассыпался? Частицы играют в игру, правил которой нам не понять
Arlington Occupational Health and Wellness Falls Victim to Everest Ransomware
Windows 10 users can get extended security updates using Microsoft points
Bank of America, Netflix, and Microsoft Hacked to Inject Fake Phone Numbers
Jérôme Segura, cybercriminals are exploiting search parameter vulnerabilities to inject fake phone numbers into the legitimate websites of major brands like Apple, Bank of America, Facebook, HP, Microsoft, Netflix, and PayPal. This sophisticated attack, technically termed a “search parameter injection attack,” manipulates the search functionality of these trusted platforms, deceiving users into contacting scammers under […]
The post Bank of America, Netflix, and Microsoft Hacked to Inject Fake Phone Numbers appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Trezor’s support platform abused in crypto theft phishing attacks
Katz & Doorakian Law Firm, P.L. Falls Victim to Everest Ransomware
‘We moeten innoveren, leveren en ons verenigen’ (video)
Теперь торпеда — не оружие, а хищник. Шпионит, запоминает и возвращается за новой целью
New DRAT V2 Update Enhances C2 Protocol with Shell Command Execution Capabilities
A new variant of the DRAT remote access trojan (RAT), dubbed DRAT V2, has been uncovered as part of a TAG-140 campaign targeting Indian government entities. This threat actor, believed to overlap with SideCopy and linked to Transparent Tribe (aka APT36), demonstrates a consistent pattern of refining its malware arsenal. TAG-140 Evolves Malware Arsenal The […]
The post New DRAT V2 Update Enhances C2 Protocol with Shell Command Execution Capabilities appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.