Aggregator
VDB-310277 | GuardDuty S3 Bucket Policy GetBucketPublicAccessBlock/GetBucketPolicyStatus permission
Apache Tomcat RCE Vulnerability Exposed with PoC Released
A critical security vulnerability, tracked as CVE-2025-24813, has been discovered in Apache Tomcat, a widely used open-source Java servlet container and web server. This flaw, stemming from improper handling of file paths, particularly those containing internal dots (e.g., file.Name)—can allow attackers to bypass security controls, leading to remote code execution (RCE), information disclosure, and malicious […]
The post Apache Tomcat RCE Vulnerability Exposed with PoC Released appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
CVE-2025-35003 | Apache NuttX RTOS up to 12.8.x Bluetooth Stack stack-based overflow
CVE-2025-2146 | Canon Satera MF656Cdw up to 05.07 WebService Authentication out-of-bounds write
CVE-2016-1960 | Mozilla Firefox 44 HTML5 String Parser nsHtml5TreeBuilder use after free (MFSA 2016-23 / EDB-42484)
Operation Endgame и RapTor: грандиозная зачистка показала, что анонимность в даркнете — больше не защита, а иллюзия
Severe WSO2 SOAP Flaw Allows Unauthorized Password Resets for Any Use
A newly disclosed vulnerability, CVE-2024-6914, has shocked the enterprise software community, affecting a wide range of WSO2 products. The flaw, rated with a CVSS score of 9.8 (Critical), stems from an incorrect authorization mechanism in the account recovery-related SOAP admin service. This business logic error allows attackers to exploit the service and reset the password […]
The post Severe WSO2 SOAP Flaw Allows Unauthorized Password Resets for Any Use appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
NahamCon CTF 2025
Date: May 23, 2025, 7 p.m. — 25 May 2025, 19:00 UTC [add to calendar]
Format: Jeopardy
On-line
Offical URL: https://ctf.nahamcon.com/
Rating weight: 53.77
Event organizers: JohnHammond
HACK'OSINT CTF - 2025
Date: May 23, 2025, 7 p.m. — 25 May 2025, 19:00 UTC [add to calendar]
Format: Jeopardy
On-site
Location: France
Offical URL: https://ctf.hackolyte.fr/
Rating weight: 0.00
Event organizers: Hack'olyte
DaVinciCTF 2025
Date: May 24, 2025, 10 a.m. — 25 May 2025, 20:00 UTC [add to calendar]
Format: Jeopardy
On-line
Location: La Défense - Paris
Offical URL: https://dvc.tf/
Rating weight: 45.00
Event organizers: DaVinciCode