Aggregator
CVE-2000-0061 | Microsoft Internet Explorer 4.0/4.0.1/5.0/5.0.1 Security Zone privileges management (EDB-19719 / BID-923)
CVE-2007-6614 | Agares Media phpAutoVideo 2.21 frontpage_right.php loadadminpage code injection (EDB-4782 / BID-27023)
Sustaining Digital Certificate Security - Upcoming Changes to the Chrome Root Store
HPE security advisory (AV25-303)
Cybersecurity Firm SentinelOne Suffers Major Outage
Cybersecurity vendor SentinelOne suffered a major, global outage for about six hours on Thursday that disrupted its monitoring of managed response service customers' endpoints and networks, interrupted software updates and kept administrators from accessing consoles for troubleshooting purposes.
BSidesLV24 – PasswordsCon – Cloud Attack: Dissecting Attack Paths With Graph-Mode
Author/Presenter: Filipi Pires
Our sincere appreciation to BSidesLV, and the Presenters/Authors for publishing their erudite Security BSidesLV24 content. Originating from the conference’s events located at the Tuscany Suites & Casino; and via the organizations YouTube channel.
The post BSidesLV24 – PasswordsCon – Cloud Attack: Dissecting Attack Paths With Graph-Mode appeared first on Security Boulevard.
Detecting Deepfake Threats in Authentication and Verification Systems
As digital transformation accelerates, the integrity of authentication and verification systems faces an unprecedented challenge: hyper-realistic deepfakes. These AI-generated forgeries, which manipulate faces, voices, and documents, have evolved from niche curiosities to sophisticated tools for bypassing security protocols. By mid-2025, the global financial sector reported a 393% year-over-year increase in deepfake-enabled phishing attacks, with losses […]
The post Detecting Deepfake Threats in Authentication and Verification Systems appeared first on Cyber Security News.
CVE-2024-35388 | Totolink NR1800X 9.1.0u.6681_B20230703 urldecode Password stack-based overflow
CVE-2025-48136 | Estatik Mortgage Calculator Plugin up to 2.0.12 on WordPress filename control
CVE-2025-48137 | proxymis Interview Plugin up to 1.01 on WordPress sql injection
CVE-2025-48135 | aptivadadev Aptivada for WP Plugin up to 2.0.0 on WordPress cross site scripting
CVE-2025-48134 | ShapedPlugin WP Tabs Plugin up to 2.2.11 on WordPress deserialization
CVE-2025-48132 | pencilwp X Addons for Elementor Plugin up to 1.0.14 on WordPress cross site scripting
CVE-2025-5330 | FreeFloat FTP Server 1.0 RETR Command buffer overflow
CVE-2025-5331 | PCMan FTP Server 2.0.7 NLST Command buffer overflow
CVE-2025-5332 | 1000 Projects Online Notice Board 1.0 /index.php email sql injection
CVE-2024-3767 | PHPGurukul News Portal 4.1 /admin/edit-post.php posttitle/category sql injection
CVE-2024-28811 | Infinera hiT 7300 5.60.50 HTTP Invocation code injection
Beware: Weaponized AI Tool Installers Infect Devices with Ransomware
Cisco Talos has uncovered a series of malicious threats masquerading as legitimate AI tool installers, targeting unsuspecting users and businesses across multiple industries. These threats, including the CyberLock and Lucky_Gh0$t ransomware families, along with a newly identified destructive malware dubbed “Numero,” exploit the growing popularity of AI solutions in sectors like B2B sales, technology, and […]
The post Beware: Weaponized AI Tool Installers Infect Devices with Ransomware appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.