Aggregator
Submit #491927: Devika Agentic AI Software Engineer Latest Version Path Traversal [Duplicate]
CVE-2025-1114 | newbee-mall 1.0 Add Category Page /admin/categories/save categoryName cross site scripting
Submit #489903: RT-Thread v5.1.0 Improper Handling of Parameters [Accepted]
Submit #489744: https://github.com/newbee-ltd/newbee-mall newbee-mall 1.0 Stored XSS [Accepted]
CVE-2025-1113 | taisan tarzan-cms up to 1.0.0 Add Theme /admin#themes upload deserialization (IBHZ0J)
CVE-2024-55214 | dhtmlxFileExplorer 8.4.6 File Download file inclusion
CVE-2024-57707 | DataEase Privilege Escalation
CVE-2024-55213 | dhtmlxFileExplorer 8.4.6 File Listing path traversal
CVE-2024-52883 | AudioCodes One Voice Operations Center up to 8.4.581 path traversal
CVE-2024-10383 | GitLab VSCode Fork prior 1.89.1-1.0.0-dev-20241118094343 cross site scripting (Issue 500785)
CVE-2024-52882 | AudioCodes One Voice Operations Center up to 8.4.581 Devices API cross site scripting
CVE-2024-9661 | Soflyy WP All Import Pro Plugin up to 4.9.7 on WordPress delete_and_edit cross-site request forgery
CVE-2024-52884 | AudioCodes Mediant Session Border Controller prior 7.40A.501.841 Configuration Export inadequate encryption
Autonomous LLMs Reshaping Pen Testing: Real-World AD Breaches and the Future of Cybersecurity
Large Language Models (LLMs) are transforming penetration testing (pen testing), leveraging their advanced reasoning and automation capabilities to simulate sophisticated cyberattacks. Recent research demonstrates how autonomous LLM-driven systems can effectively perform assumed breach simulations in enterprise environments, particularly targeting Microsoft Active Directory (AD) networks. These advancements mark a significant departure from traditional pen testing methods, […]
The post Autonomous LLMs Reshaping Pen Testing: Real-World AD Breaches and the Future of Cybersecurity appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
CVE-2024-9664 | Soflyy WP All Import Pro Plugin up to 4.9.7 on WordPress deserialization
CVE-2024-57249 | Gleamtech FileVista 9.2.0.0 improper authorization
CVE-2024-48091 | Tally Prime Edit Log 2.1 TextShaping.dll uncontrolled search path
CVE-2024-52881 | AudioCodes One Voice Operations Center up to 8.4.581 hard-coded key
Yahoo Finance: U.S. Lawmakers Push to Ban China’s DeepSeek AI Over Security Risks – Feroot Security Analysis
Washington, D.C. – U.S. lawmakers announced a bill to ban DeepSeek, the Chinese AI chatbot app, from government devices following a security analysis by Feroot Security that revealed alarming privacy and national security risks. The research suggests that DeepSeek collects user data, including digital fingerprints, login credentials, and behavioral information, potentially sending it to servers […]
The post Yahoo Finance: U.S. Lawmakers Push to Ban China’s DeepSeek AI Over Security Risks – Feroot Security Analysis appeared first on Feroot Security.
The post Yahoo Finance: U.S. Lawmakers Push to Ban China’s DeepSeek AI Over Security Risks – Feroot Security Analysis appeared first on Security Boulevard.