Aggregator
远程控制软件TeamViewer强迫永久许可证用户购买订阅许可证 不然没法公网连接
CVE-2026-41478 | Saltcorn up to 1.4.5/1.5.5/1.6.0-beta.4 mobile-sync Routes sql injection (GHSA-jp74-mfrx-3qvh)
CVE-2026-41248 | clerk javascript up to 1.5.6/2.17.9/3.0.14 interpretation conflict (GHSA-vqx2-fgx2-5wq9 / EUVD-2026-25632)
CVE-2026-41473 | usmannasir cyberpanel up to 2.4.3 API Endpoint status-webhook missing authentication
ADT Confirms Data Breach Following ShinyHunters Data Leak Claim
Home security giant ADT Inc. has confirmed a data breach after the notorious threat group ShinyHunters claimed to have stolen over 10 million records and issued a ransom ultimatum — “Pay or Leak.” ADT, headquartered in Boca Raton, Florida, disclosed the incident via a Form 8-K filing with the U.S. Securities and Exchange Commission (SEC) […]
The post ADT Confirms Data Breach Following ShinyHunters Data Leak Claim appeared first on Cyber Security News.
Hackers Exploiting Cisco Firepower Devices’ Using n-day Vulnerabilities to Gain Unauthorized Access
State-sponsored threat actors are actively targeting Cisco Firepower devices by chaining known vulnerabilities to deploy a highly customized backdoor. Cisco Talos recently discovered that the espionage-focused threat group UAT-4356 is exploiting two n-day vulnerabilities, tracked as CVE-2025-20333 and CVE-2025-20362, to infiltrate Firepower Extensible Operating System (FXOS) environments. UAT-4356 previously orchestrated the ArcaneDoor campaign, which successfully […]
The post Hackers Exploiting Cisco Firepower Devices’ Using n-day Vulnerabilities to Gain Unauthorized Access appeared first on Cyber Security News.
倒计时3天 | 第三届“长城杯”网数智安全大赛(防护赛)决赛
金山WPS客户端和网页版现已支持打开和编辑Markdown文件 支持实时渲染
南海不只是博弈,更是开发:中国到底推进到什么阶段了?
4月更新导致部分Windows 11设备循环重启/像素化画面 GTX1080Ti受影响最严重
IEEE成都分会 | AI智能体在学术研究中的应用
豆包上线「帮你选」功能; 5999 元,泡泡玛特首推冰箱;高铁试点「坐火车带自行车」 | 极客早知道
日本签署意在防御中国相关黑客的国际网络安全文件
CISA reports persistent FIRESTARTER backdoor on Cisco ASA device in federal network
CISA reports persistent FIRESTARTER backdoor on Cisco ASA device in federal network
微软等云服务商被曝对中小客户“挑挑拣拣”
Flurry of Supply-Chain Software Library Attacks
As supply-chain attacks against widely-used, open-source software repositories continue, experts are urging developers to not only rely on code integrity tools, but also to introduce a delay before merging new repos, since unfolding attacks tend to get spotted in days, if not hours or minutes.
CISA Hunts for Cisco Backdoor Spotted on Federal Network
The Cybersecurity and Infrastructure Security Agency issued an emergency directive warning a newly-discovered Cisco backdoor can survive routine remediation processes, forcing agencies to investigate edge devices that anchor federal firewall and VPN security.
Poor Risk Analysis Cost 4 Firms $1.7 Million in HIPAA Fines
Faulty or non-existent security risk analyses cost a medical imaging provider, a women's healthcare group, a health plan and a third-party insurance administrator a collective $1.7 million in fines after federal regulators concluded they didn't do enough to prevent ransomware attacks.