Aggregator
CVE-2026-9530 | GNU LibreDWG up to 0.14 Dwgbmp Utility src/decode.c read_2004_compressed_section out-of-bounds (Issue 1248 / EUVD-2026-31790)
CVE-2026-9531 | Totolink CA750-PoE 6.2c.510 Setting /cgi-bin/cstecgi.cgi setUpgradeUboot FileName os command injection (EUVD-2026-31789)
Payload Ransomware Uses ChaCha20 and Curve25519 ECDH to Encrypt Windows Files
A dangerous new ransomware strain called Payload has been quietly building a global victim list since it first appeared in February 2026. The group launched its leak site with a high-profile target and has since expanded operations across Egypt, Mexico, Poland, and beyond. What makes this threat stand out is not just its reach, but […]
The post Payload Ransomware Uses ChaCha20 and Curve25519 ECDH to Encrypt Windows Files appeared first on Cyber Security News.
PuTTY 0.84 Released With Fix for SSH KEX Crashes and Telnet Prompt Spoofing Flaw
PuTTY 0.84 has been released with fixes for multiple minor security flaws, including issues that could trigger SSH key exchange crashes and a Telnet prompt spoofing weakness. While these vulnerabilities are considered low severity, they highlight how even small flaws in cryptographic handling and session logic can be abused in specific attack scenarios, particularly by […]
The post PuTTY 0.84 Released With Fix for SSH KEX Crashes and Telnet Prompt Spoofing Flaw appeared first on Cyber Security News.
Microsoft: Domain Controller lookup may fail on Windows Server 2016
补天端午活动第一弹 | “粽”测有礼
补天端午活动第二弹|专属SRC来袭,5大厂商奖励翻倍!
通用 | 端午第三弹,粽享万元奖励金
投稿 | 端午连更第四弹,聚焦AI安全
Роботам тут не рады. Платформа npm больше не доверяет автоматическим сборкам без одобрения человека
CVE-2026-9552 | Das Parking Management System 停车场管理系统 6.2.0 Search API Endpoint Value sql injection
CVE-2026-9551 | Das Parking Management System 停车场管理系统 6.2.0 API Endpoint ExportParkingRecords xp_cmdshell Value sql injection
CVE-2026-9550 | Acrel Electrical EEMS Enterprise Power Operation and Maintenance Cloud Platform upfile path traversal
Submit #815457: Shenzhen DAS INTELLITECH Co., Ltd. Parking Management System 6.2.0 SQL Injection [Accepted]
Submit #815456: Shenzhen DAS INTELLITECH Co., Ltd. Parking Management System 6.2.0 SQL Injection [Accepted]
JVN: dnsmasqにおける複数の脆弱性
StablR Stablecoin Depeg Hack: $10M Minted in Multisig Failure
The algorithmic stablecoins EURR and USDR, curated by the digital asset institution StablR, suffered a severe and precipitous de-pegging from their respective fiat baselines following a targeted compromise of their token-minting contract within the...
The post StablR Stablecoin Depeg Hack: $10M Minted in Multisig Failure appeared first on Information Security News.