Aggregator
CVE-2004-2717 | PHP Heaven phpMyChat 0.14.5 admin.php3 path traversal (EDB-24217 / BID-10556)
Researchers Uncover macOS ‘AppleProcessHub’ Stealer: TTPs and C2 Server Details Revealed
Researchers have identified a novel information-stealing malware dubbed ‘AppleProcessHub,’ designed to infiltrate Apple systems and exfiltrate sensitive user data. This discovery sheds light on an evolving threat landscape where macOS, often considered a secure platform, is increasingly becoming a target for sophisticated adversaries. The malware employs advanced tactics, techniques, and procedures (TTPs) to evade detection […]
The post Researchers Uncover macOS ‘AppleProcessHub’ Stealer: TTPs and C2 Server Details Revealed appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
GIMP Image Editor Vulnerability Let Remote Attackers Arbitrary Code
Two critical security vulnerabilities discovered in the popular GIMP image editing software have been disclosed. These vulnerabilities allow remote attackers to execute arbitrary code on affected systems. The vulnerabilities, identified as CVE-2025-2760 and CVE-2025-2761, were publicly disclosed on April 7th, 2025, and affect GIMP installations prior to version 3.0.0. Both flaws require user interaction, specifically […]
The post GIMP Image Editor Vulnerability Let Remote Attackers Arbitrary Code appeared first on Cyber Security News.
腾讯 AI「登陆战」
Cyware CEO:威胁情报如何成为网络防御的核心要求
DragonForce actors target SimpleHelp vulnerabilities to attack MSP, customers
Weekoverzicht Defensieoperaties
「AI 黑客」来袭,Agentic AI 如何成为新守护者?
Governments Urge Organizations to Prioritize SIEM/SOAR Adoption
CertiK联创顾荣辉做客纽交所,剖析Bybit与Coinbase事件暴露的Web3安全新挑战
仅需199元!Frida编译调试与Hook技术实战
Adidas 再遭黑客入侵,客户数据遭窃
Android从整体加固到抽取加固的实现及原理(上)
CVE-2002-0061 | Apache HTTP Server up to 1.3.23/2.0.34-beta on Win32 privileges management (EDB-21350 / Nessus ID 10938)
GIMP Image Editor Vulnerability Allows Remote Attackers to Execute Arbitrary Code
Two major security vulnerabilities have been found in the widely used GIMP image editing software, potentially allowing remote attackers to execute arbitrary code on affected systems, according to security researchers. The vulnerabilities, labeled CVE-2025-2760 and CVE-2025-2761, each have a high CVSS score of 7.8 and impact users who open malicious image files or visit compromised […]
The post GIMP Image Editor Vulnerability Allows Remote Attackers to Execute Arbitrary Code appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Employees Searching Payroll Portals on Google Tricked Into Sending Paychecks to Hackers
НеSOCрушимая безопасность: «Газинформсервис» прокачал GSOC и показал новый BAS
New Russia-affiliated actor Void Blizzard targets critical sectors for espionage
Microsoft Threat Intelligence has discovered a cluster of worldwide cloud abuse activity conducted by a threat actor we track as Void Blizzard, who we assess with high confidence is Russia-affiliated and has been active since at least April 2024. Void Blizzard’s cyberespionage operations tend to be highly targeted at specific organizations of interest to Russia, including in government, defense, transportation, media, non-governmental organizations (NGOs), and healthcare sectors primarily in Europe and North America.
The post New Russia-affiliated actor Void Blizzard targets critical sectors for espionage appeared first on Microsoft Security Blog.
New Russia-affiliated actor Void Blizzard targets critical sectors for espionage
Microsoft Threat Intelligence has discovered a cluster of worldwide cloud abuse activity conducted by a threat actor we track as Void Blizzard, who we assess with high confidence is Russia-affiliated and has been active since at least April 2024. Void Blizzard’s cyberespionage operations tend to be highly targeted at specific organizations of interest to Russia, including in government, defense, transportation, media, non-governmental organizations (NGOs), and healthcare sectors primarily in Europe and North America.
The post New Russia-affiliated actor Void Blizzard targets critical sectors for espionage appeared first on Microsoft Security Blog.