Aggregator
期刊征文 | 域名安全评估与风险预警
1 year 4 months ago
ChaMd5助力团队书 | 顺丰SRC第三届白帽技术沙龙预约开启!
1 year 4 months ago
还没有获得ChaMd5新书的小伙伴福利来了!
威努特海上平台智算中心,助力海上油田智能化转型
1 year 4 months ago
助力海上平台实现提质降本增效和安全管控。
Daily Dose of Dark Web Informer - February 18th, 2025
1 year 4 months ago
This daily article is intended to make it easier for those who want to stay updated with my regular Dark Web Informer and X/Twitter posts.
Dark Web Informer - Cyber Threat Intelligence
Ransomware Attack Update for 18th of February 2025
1 year 4 months ago
Ransomware Attack Update for 18th of February 2025
Dark Web Informer - Cyber Threat Intelligence
Deepwatch Acquires Dassana to Boost Cyber-Resilience With AI
1 year 4 months ago
Acquisition strengthens Deepwatch Platform capabilities with actionable insights and risk-based prioritization.
Dark Reading Staff
Las Vegas Couple Behind the ‘MrsFeelGood’ Darknet Storefront Sentenced to Federal Prison in D.C.
1 year 4 months ago
Las Vegas Couple Behind the ‘MrsFeelGood’ Darknet Storefront Sentenced to Federal Prison in D.C.
Dark Web Informer - Cyber Threat Intelligence
【转载】为情报分析师提供多个黑客和网络不法分子的论坛列表
1 year 4 months ago
【工具】美国国际开发署人员名单获取来源
1 year 4 months ago
美国国际开发署人员名单获取来源:https://contactout.com/
CVE-2025-25472 | DCMTK 3.6.9 DCM File denial of service
1 year 4 months ago
A vulnerability was found in DCMTK 3.6.9. It has been classified as problematic. This affects an unknown part of the component DCM File Handler. The manipulation leads to denial of service.
This vulnerability is uniquely identified as CVE-2025-25472. The attack needs to be initiated within the local network. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2025-27113 | xmlsoft libxml2 up to 2.12.9/2.13.5 pattern.c xmlPatMatch null pointer dereference
1 year 4 months ago
A vulnerability was found in xmlsoft libxml2 up to 2.12.9/2.13.5 and classified as problematic. Affected by this issue is the function xmlPatMatch of the file pattern.c. The manipulation leads to null pointer dereference.
This vulnerability is handled as CVE-2025-27113. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-13743 | wonderplugin Wonder Video Embed Plugin up to 2.2 on WordPress Shortcode wonderplugin_video cross site scripting
1 year 4 months ago
A vulnerability has been found in wonderplugin Wonder Video Embed Plugin up to 2.2 on WordPress and classified as problematic. Affected by this vulnerability is the function wonderplugin_video of the component Shortcode Handler. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2024-13743. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2025-25891 | D-Link DSL-3782 1.01 Packet destination/netmask/gateway denial of service
1 year 4 months ago
A vulnerability, which was classified as problematic, was found in D-Link DSL-3782 1.01. Affected is an unknown function of the component Packet Handler. The manipulation of the argument destination/netmask/gateway leads to denial of service.
This vulnerability is traded as CVE-2025-25891. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
CVE-2025-25896 | D-Link DSL-3782 1.01 Packet destination/netmask/gateway denial of service
1 year 4 months ago
A vulnerability, which was classified as problematic, has been found in D-Link DSL-3782 1.01. This issue affects some unknown processing of the component Packet Handler. The manipulation of the argument destination/netmask/gateway leads to denial of service.
The identification of this vulnerability is CVE-2025-25896. The attack may be initiated remotely. There is no exploit available.
vuldb.com
CVE-2025-25892 | D-Link DSL-3782 1.01 Packet sstartip/sendip/dstartip/dendip denial of service
1 year 4 months ago
A vulnerability classified as problematic was found in D-Link DSL-3782 1.01. This vulnerability affects unknown code of the component Packet Handler. The manipulation of the argument sstartip/sendip/dstartip/dendip leads to denial of service.
This vulnerability was named CVE-2025-25892. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2025-26624 | pbatard rufus up to 4.6 cfgmgr32.dll untrusted search path
1 year 4 months ago
A vulnerability classified as critical has been found in pbatard rufus up to 4.6. This affects an unknown part in the library cfgmgr32.dll. The manipulation leads to untrusted search path.
This vulnerability is uniquely identified as CVE-2025-26624. Local access is required to approach this attack. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-25895 | D-Link DSL-3782 1.01 Packet public_type os command injection
1 year 4 months ago
A vulnerability was found in D-Link DSL-3782 1.01. It has been rated as critical. Affected by this issue is some unknown functionality of the component Packet Handler. The manipulation of the argument public_type leads to os command injection.
This vulnerability is handled as CVE-2025-25895. The attack may be launched remotely. There is no exploit available.
vuldb.com
CVE-2025-25893 | D-Link DSL-3782 1.01 Packet inIP/insPort/inePort/exsPort/exePort/protocol os command injection
1 year 4 months ago
A vulnerability was found in D-Link DSL-3782 1.01. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the component Packet Handler. The manipulation of the argument inIP/insPort/inePort/exsPort/exePort/protocol leads to os command injection.
This vulnerability is known as CVE-2025-25893. The attack can be launched remotely. There is no exploit available.
vuldb.com
New WinRAR version strips Windows metadata to increase privacy
1 year 4 months ago
WinRAR 7.10 was released yesterday with numerous features, such as larger memory pages, a dark mode, and the ability to fine-tune how Windows Mark-of-the-Web flags are propagated when extracting files. [...]
Lawrence Abrams