Aggregator
Congress Should Tackle Cyber Threats, Not Competition
TransUnion 2025 State of Omnichannel Fraud Report Insights
The report paints a clear picture: fraudsters are refining their strategies, targeting high-value credentials and exploiting vulnerabilities across all channels. Several statistics stand out, demanding immediate attention from security and risk leaders.
The post TransUnion 2025 State of Omnichannel Fraud Report Insights appeared first on Security Boulevard.
Foxit Smart Redact Server automates the redaction of sensitive data
Foxit launched Smart Redact Server, a new AI-driven platform built to automate the redaction of sensitive data at scale across enterprise environments. Designed for organizations that manage large volumes of regulated content, the solution enables legal, financial, healthcare, and compliance teams to detect and redact classified, personally identifiable (PII), and other sensitive information quickly, accurately, and securely. Smart Redact Server equips teams tasked with data privacy and regulatory compliance, including (but not limited to) enterprise … More →
The post Foxit Smart Redact Server automates the redaction of sensitive data appeared first on Help Net Security.
Katz Stealer Malware Hits 78+ Chromium and Gecko-Based Browsers
Newly disclosed information-stealing malware dubbed Katz Stealer has emerged as a significant threat to users of Chromium and Gecko-based browsers, with capabilities to extract sensitive data from over 78 browser variants. Developed in C and Assembly (ASM) for lightweight efficiency, the malware targets credentials, cookies (including version 20+), autofill data, CVV2 codes, OAuth tokens, cryptocurrency […]
The post Katz Stealer Malware Hits 78+ Chromium and Gecko-Based Browsers appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Fashion giant Dior discloses cyberattack, warns of data breach
Ivanti security advisory (AV25-270)
CVE-2023-53146 | Linux Kernel up to 6.5.4 Media dw2102_i2c_transfer null pointer dereference
CVE-2025-47445 | Themewinter Eventin Plugin up to 4.0.26 on WordPress path traversal (EUVD-2025-14869)
Critical Vulnerability in Windows Remote Desktop Gateway Allows Denial-of-Service Attacks
Microsoft has disclosed two critical vulnerabilities in its Remote Desktop Gateway (RDG) service, posing significant risks to organizational networks. CVE-2025-26677 and CVE-2025-29831, both rated Important by Microsoft, enable denial-of-service (DoS) attacks and remote code execution (RCE), respectively. These flaws, patched in Microsoft’s May 2025 security update, underscore persistent challenges in securing remote access infrastructure. Security […]
The post Critical Vulnerability in Windows Remote Desktop Gateway Allows Denial-of-Service Attacks appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
CVE-2025-3833 | Zoho ManageEngine ADSelfService Plus up to 6513 MFA Report sql injection (EUVD-2025-14871)
CVE-2025-3834 | Zoho ManageEngine ADAudit Plus up to 8510 OU History Report sql injection (EUVD-2025-14873)
CVE-2025-4430 | Naukowa i Akademicka Sieć Komputerowa EZD RP up to 20.18 /api/Token/gettoken authorization (EUVD-2025-14870)
CVE-2025-3931 | Red Hat Enterprise Linux/Satellite Yggdrasil insufficient permissions or privileges (RHSA-2025:7592 / EUVD-2025-14867)
Уронил, переехал машиной, сохранил данные — Huawei eKitStor Shield 200 не из робких
Critical Microsoft Outlook Flaw Enables Remote Execution of Arbitrary Code
Newly disclosed vulnerability in Microsoft Outlook (CVE-2025-32705) permits attackers to execute arbitrary code on compromised systems through a memory corruption flaw. Rated 7.8 (CVSS v3.1) and classified as Important by Microsoft, this out-of-bounds read vulnerability (CWE-125) exposes email clients to localized attacks requiring minimal user interaction. With over 400 million enterprise users relying on Outlook […]
The post Critical Microsoft Outlook Flaw Enables Remote Execution of Arbitrary Code appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
McAfee’s Scam Detector identifies scams across text, email, and video
McAfee is introducing McAfee’s Scam Detector, a new feature that automatically identifies scams across text, email, and video. Available now in all core McAfee plans at no extra cost, it arrives at a critical moment: nearly 1 in 3 Americans say they have fallen victim to an online scam in the last 12 months. To meet this growing threat, McAfee is protecting customers with advanced, in-plan, AI-powered scam detection – and driving education and awareness … More →
The post McAfee’s Scam Detector identifies scams across text, email, and video appeared first on Help Net Security.
Mail relays – Part 2 | Problems with forwarded mail?
Forwarded mail can be more trouble than it’s worth - especially when it’s done without checks, validation, or spam filtering. Typos, spamtraps, and forged senders can quickly snowball into blocklistings and delivery failures. In this second part on mail relays, we dive into the mess forwarding can cause, and what you can do to avoid it.
The post Mail relays – Part 2 | Problems with forwarded mail? appeared first on Security Boulevard.