Aggregator
Cyberhelden gezocht voor de JSCU Summerschool 2025 van de AIVD de MIVD
Шпионское ПО Pegasus стало оружием против независимости Каталонии
Боты, веб-панели и комбо-фишинг: 1,2 миллиона Telegram-аккаунтов угнали за полгода
Over Half of Organizations Report Serious OT Security Incidents
Burp插件编写(详细教程)——基于2023新版接口
Vim Vulnerability (CVE-2025-27423) Allows Code Execution via Malicious TAR Archives
A high-severity security flaw in the widely used Vim text editor allows attackers to execute arbitrary code on vulnerable systems by tricking users into opening specially crafted TAR archives. Tracked as CVE-2025-27423, this vulnerability has prompted urgent patching efforts and warnings for developers and system administrators globally. Technical Breakdown of the Vulnerability The flaw resides in […]
The post Vim Vulnerability (CVE-2025-27423) Allows Code Execution via Malicious TAR Archives appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
《人民政协报》报道:以模制模,重塑人工智能安全新范式
Telegram EvilVideo Vulnerability Exploited to Execute Malicious Code on Victim Device
A critical evolution of the CVE-2024-7014 vulnerability, originally patched in July 2024, has resurfaced with updated tactics to bypass security measures. Dubbed Evilloader, this new exploit leverages Telegram’s multimedia handling mechanisms to execute malicious JavaScript code by disguising .htm files as video content. The attack chain, observed in active campaigns, demonstrates how threat actors continue […]
The post Telegram EvilVideo Vulnerability Exploited to Execute Malicious Code on Victim Device appeared first on Cyber Security News.
Use one Virtual Machine to own them all — active exploitation of ESXicape
工信部CSTIS提醒:防范Murdoc_Botnet僵尸网络的风险;谷歌修复两个已被利用的Android零日漏洞 | 牛览
思科: Webex 漏洞可导致凭据遭远程访问
博通修复3个已遭利用的 VMware 0day 漏洞
2025年3月网络安全行业活动、赛事预告
2025年3月网络安全行业活动、赛事预告
Lynx
Zero trust 1.0
Qilin
285 学科全覆盖!豆包大模型团队开源基准测试集 SuperGPQA
Telegram EvilVideo Vulnerability Exploited to Run Malicious Code on Victims’ Devices
A newly documented exploitation technique targeting Telegram’s file-sharing infrastructure has raised alarms in cybersecurity circles. Dubbed “EvilVideo,” this attack vector leverages a vulnerability (CVE-2024-7014) in how Telegram processes multimedia content, enabling attackers to disguise malicious HTML files as video files. When unsuspecting users attempt to open these files, embedded JavaScript code executes, enabling IP logging, […]
The post Telegram EvilVideo Vulnerability Exploited to Run Malicious Code on Victims’ Devices appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.