Aggregator
AISS大模型安全社区-2025 Roadmap
How we estimate the risk from prompt injection attacks on AI systems
2025新春致谢 | 金蛇纳福启新程
3 Major Cyber Attacks in January 2025
Our cyber threat analysts detected and explored a number of malware campaigns this January. Here are the three most dangerous attacks dissected with the aid of ANY.RUN’s Interactive Sandbox and Threat Intelligence Lookup. Fake YouTube links redirect users to phishing pages Original post on X Using the Uniform Resource Identifier authority (URI), phishers obfuscate links […]
The post 3 Major Cyber Attacks in January 2025 appeared first on ANY.RUN's Cybersecurity Blog.
Woven City: первый в мире город, где люди и роботы живут в гармонии
SLAP и FLOP: две стороны одной 0day-бреши в процессорах Apple
authID PrivacyKey protects users’ biometric identities
authID released PrivacyKey, a solution for protecting user biometric data while also avoiding all the compliance issues and risks related to biometric information storage. With the addition of PrivacyKey, authID serves as the ideal partner for organizations that previously delayed or avoided implementation of biometric solutions due to concerns over liability or potential user apprehension regarding privacy. This technology also prevents duplicate registrations without storing actual images of users’ faces. authID’s Proof solution for onboarding … More →
The post authID PrivacyKey protects users’ biometric identities appeared first on Help Net Security.
德国数据保护机构《标准数据保护模式》中译文
CVE-2024-3620 | SourceCodester Kortex Lite Advocate Office Management System 1.0 /control/adds.php name/gender/dob/email/mobile/address sql injection
CVE-2024-46340 | TP-LINK TL-WR845N(UN) 4_190219/4_200909 Factory Reset missing encryption
CVE-2023-37008 | Open5GS MME up to 2.6.4 S1AP Packet deserialization
CVE-2024-24432 | Open5GS up to 2.6.4 NAS Packet ogs_kdf_hash_mme denial of service
CVE-2023-37007 | Open5GS MME up to 2.6.4 Handover Cancel Packet MME_UE_S1AP_ID denial of service
CVE-2025-24166 | Apple macOS Web denial of service (Nessus ID 214661)
CVE-2025-24166 | Apple visionOS Web denial of service (Nessus ID 214661)
CVE-2024-52949 | iptraf-ng Interface Length IFNAMSIZ buffer overflow (Nessus ID 213408)
CVE-2024-3913 | Phoenix Contact CHARX SEC-3150 1139012 up to 1.6.x System Startup file access (VDE-2024-022)
Утечки и сбои: NVIDIA выпускает критическое обновление безопасности
Zyxel CPE Zero-Day (CVE-2024-40891) Exploited in the Wild
Security researchers have raised alarms about active exploitation attempts targeting a newly discovered zero-day command injection vulnerability in Zyxel CPE Series devices, tracked as CVE-2024-40891. This critical vulnerability, which remains unpatched and undisclosed by the vendor, has left over 1,500 devices globally exposed to potential compromise, as reported by Censys. About the Vulnerability – CVE-2024-40891 CVE-2024-40891 […]
The post Zyxel CPE Zero-Day (CVE-2024-40891) Exploited in the Wild appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.