Aggregator
Киберрабство в Азии: 6 стран раскрывают тайную империю мошенников
CVE-2025-23889 | FooGallery Captions Plugin up to 1.0.2 on WordPress cross site scripting
阿里云小内存机器频繁死机可能原因
阿里云小内存机器频繁死机可能原因
CVE-2024-13408 | wpwax Post Grid, Slider & Carousel Ultimate Plugin up to 1.6.10 on WordPress Shortcode pgcu filename control
CISA Adds One Known Exploited Vulnerability to Catalog
CISA has added one new vulnerability to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation.
- CVE-2025-23006 SonicWall SMA1000 Appliances Deserialization Vulnerability
These types of vulnerabilities are frequent attack vectors for malicious cyber actors and pose significant risks to the federal enterprise.
Binding Operational Directive (BOD) 22-01: Reducing the Significant Risk of Known Exploited Vulnerabilities established the Known Exploited Vulnerabilities Catalog as a living list of known Common Vulnerabilities and Exposures (CVEs) that carry significant risk to the federal enterprise. BOD 22-01 requires Federal Civilian Executive Branch (FCEB) agencies to remediate identified vulnerabilities by the due date to protect FCEB networks against active threats. See the BOD 22-01 Fact Sheet for more information.
Although BOD 22-01 only applies to FCEB agencies, CISA strongly urges all organizations to reduce their exposure to cyberattacks by prioritizing timely remediation of Catalog vulnerabilities as part of their vulnerability management practice. CISA will continue to add vulnerabilities to the catalog that meet the specified criteria.
CrySiS勒索病毒攻击
一款专为红队恶意软件开发而设计的自动化分析沙箱
CVE-2024-13409 | wpwax Post Grid Slider & Carousel Ultimate Plugin up to 1.6.10 on WordPress Shortcode post_type_ajax_handler theme path traversal
CVE-2024-13335 | templatescoderthemes Spexo Addons for Elementor Plugin up to 1.0.14 on WordPress tmpcoder_theme_install_func authorization
CVE-2024-13594 | neofix Simple Downloads List Plugin up to 1.4.2 on WordPress Shortcode neofix_sdl sql injection
Let’s Encrypt прекращает рассылку уведомлений о сертификатах: что нужно знать
What do you do when you find something you aren’t suppose to find?
CVE-2024-13354 | cyberchimps Responsive Addons for Elementor Plugin up to 1.6.4 on WordPress Elementor Template cross site scripting
CVE-2024-13572 | nfusionsolutions Precious Metals Charts and Widgets for WordPress Plugin Shortcode cross site scripting
CVE-2024-13542 | pagup WP Google Street View & Google maps and Local SEO Plugin Shortcode wpgsv cross site scripting
CISA Releases Six ICS Advisories Details Security Issues
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) issued six Industrial Control Systems (ICS) advisories addressing vulnerabilities in a range of critical systems. These advisories aim to inform organizations about risks that could lead to unauthorized access, system compromise, or sensitive data exposure if left unaddressed. Below are the details of each advisory, along with […]
The post CISA Releases Six ICS Advisories Details Security Issues appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.