Aggregator
OpenRouter raises $40 million to simplify AI model overload
OpenRouter, a startup helping software developers manage the growing number of AI models, has raised $40 million in venture capital. The company wants to make it easier for developers to choose and use the right AI model for their applications, without having to build their own complex systems. “There’s been a Cambrian explosion of models. Our business is a one-stop shop for all models,” CEO and co-founder Alex Atallah told The Wall Street Journal. OpenRouter … More →
The post OpenRouter raises $40 million to simplify AI model overload appeared first on Help Net Security.
CVE-2018-6024 | Project Log 1.5.3 on Joomla Search sql injection (EDB-44124)
JS利用
NETSCOUT’s Arbor DDoS Protection Recognized as a Top Solution
CVE-2025-6627 | TOTOLINK A702R 4.0.0-B20230721.1521 HTTP POST Request /boafrm/formIpv6Setup submit-url buffer overflow (EUVD-2025-19135)
G.O.S.S.I.P 阅读推荐 2025-06-26 RAG Trackback
Россия запрещает Apple диктовать правила. Теперь на iPhone должен быть RuStore
Submit #602292: TOTOLINK A702R V4.0.0-B20230721.1521 Buffer Overflow [Accepted]
CVE-2005-4234 | Powerdev EncapsGallery 1.0.0 gallery.php ID sql injection (EDB-26789 / BID-15836)
Realtek Bluetooth Flaw Allows Attackers to Launch DoS Attacks During Pairing
A critical vulnerability in Realtek’s Bluetooth Low Energy (BLE) implementation enables attackers to launch denial-of-service (DoS) attacks during device pairing. The flaw (CVE-2024-48290) affects Realtek RTL8762E BLE SDK v1.4.0, allowing malicious actors to disrupt connections by exploiting protocol inconsistencies. Attackers can send a crafted ll_terminate_ind packet or inject premature pairing data, crashing the target device’s Bluetooth stack […]
The post Realtek Bluetooth Flaw Allows Attackers to Launch DoS Attacks During Pairing appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
vivo X Fold5 评测:更轻更强,苹果生态最佳 CP
Akira
You must login to view this content
CVE-2025-6603 | coldfunction qCUDA up to db0085400c2f2011eed46fbc04fdc0873141688e qcow.c qcow_make_empty s->l1_size integer overflow (Issue 10 / EUVD-2025-19083)
In the Wild: Malware Prototype with Embedded Prompt Injection
In this write-up we present a malware sample found in the wild that boasts a novel and unusual evasion mechanism — an attempted prompt injection (”Ignore all previous instructions…”) aimed to manipulate AI models processing the sample. The sample gives the impression of an isolated component or an experimental proof-of-concept, and we can only speculate […]
The post In the Wild: Malware Prototype with Embedded Prompt Injection appeared first on Check Point Research.
CVE-2017-2619 | Samba up to 4.4.10/4.5.6/4.6.0 race condition (Bug 1429472 / EDB-41740)
Chrome Releases Security Patch for 11 Code Execution Vulnerabilities
The Chrome team has announced the rollout of a critical security update for its popular web browser, Chrome, addressing 11 code execution vulnerabilities that could potentially put millions of users at risk. The update, Chrome 138.0.7204.49 for Linux and 138.0.7204.49/50 for Windows and Mac, is now being distributed through the stable channel and will reach […]
The post Chrome Releases Security Patch for 11 Code Execution Vulnerabilities appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
CISA Adds Three Known Exploited Vulnerabilities to Catalog
CISA has added three new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation.
- CVE-2024-54085 AMI MegaRAC SPx Authentication Bypass by Spoofing Vulnerability
- CVE-2024-0769 D-Link DIR-859 Router Path Traversal Vulnerability
- CVE-2019-6693 Fortinet FortiOS Use of Hard-Coded Credentials Vulnerability
These types of vulnerabilities are frequent attack vectors for malicious cyber actors and pose significant risks to the federal enterprise.
Binding Operational Directive (BOD) 22-01: Reducing the Significant Risk of Known Exploited Vulnerabilities established the KEV Catalog as a living list of known Common Vulnerabilities and Exposures (CVEs) that carry significant risk to the federal enterprise. BOD 22-01 requires Federal Civilian Executive Branch (FCEB) agencies to remediate identified vulnerabilities by the due date to protect FCEB networks against active threats. See the BOD 22-01 Fact Sheet for more information.
Although BOD 22-01 only applies to FCEB agencies, CISA strongly urges all organizations to reduce their exposure to cyberattacks by prioritizing timely remediation of KEV Catalog vulnerabilities as part of their vulnerability management practice. CISA will continue to add vulnerabilities to the catalog that meet the specified criteria.