Aggregator
CVE-2018-25363 | Fyffe PHP-Twitter-Clone 1.0 tweetdel.php cross-site request forgery (Exploit 45232 / EUVD-2018-21887)
CVE-2018-25365 | Softpedia PCViewer t1000 path traversal (Exploit 45248 / EUVD-2018-21885)
CVE-2018-25366 | Globalscape CuteFTP 5.0.4 buffer overflow (Exploit 45259 / EUVD-2018-21889)
CVE-2018-25368 | NordVPN up to 6.14.31 Password memory allocation (Exploit 45304 / EUVD-2018-21891)
CVE-2018-25370 | Admidio 3.3.5 roles_function.php rol_assign_roles/rol_approve_users/rol_edit_user cross-site request forgery (Exploit 45322 / EUVD-2018-21893)
CVE-2018-25367 | NASA openVSP 3.16.1 buffer overflow (Exploit 45281 / EUVD-2018-21888)
CVE-2018-25369 | scanwith Visual Ping 0.8.0.0 buffer overflow (Exploit 45316 / EUVD-2018-21890)
CVE-2018-25372 | Softneta MedDream PACS Server Premium 6.7.1.1 POST userSignup.php email sql injection (Exploit 45344 / EUVD-2018-21895)
CVE-2018-25374 | Softneta MedDream PACS Server Premium 6.7.1.1 nocache.php path path traversal (Exploit 45347 / EUVD-2018-21897)
CVE-2018-25373 | SocuSoft DVD Photo Slideshow Professional 8.07 stack-based overflow (Exploit 45346 / EUVD-2018-21894)
CVE-2018-25371 | Moosocial mooSocial Store Plugin 2.6 Product sql injection (Exploit 45330 / EUVD-2018-21892)
CVE-2018-25375 | SocuSoft iPod Photo Slideshow 8.05 stack-based overflow (Exploit 45350 / EUVD-2018-21896)
CVE-2018-25376 | SocuSoft 3GP Photo Slideshow 8.05 buffer overflow (Exploit 45352 / EUVD-2018-21900)
Ку ку, ChatGPT. Нейросеть помогала решать задачу века, но лавры и приз достались человеку из Принстона
Russian Hacker Used Jailbroken Gemini to Steal Admin Credentials and Drain Crypto Wallets
A solo Russian-speaking threat actor leveraged a jailbroken instance of Google Gemini to run a five-year MAGA-themed influence operation, crack WordPress administrator credentials, and empty at least one victim’s cryptocurrency wallet, all at near-zero cost using stolen API keys. In May 2026, TrendAI™ Research uncovered the full operational infrastructure of a threat actor tracked as […]
The post Russian Hacker Used Jailbroken Gemini to Steal Admin Credentials and Drain Crypto Wallets appeared first on Cyber Security News.
Hackers Abuse Shared CDN Infrastructure to Bypass Domain Reputation Security Controls
Hackers are actively abusing a flaw in shared Content Delivery Network (CDN) infrastructure to hide malicious traffic behind trusted, high-reputation domains, effectively slipping past the security tools that organizations rely on every day. The technique, now tracked under the name “Underminr,” is not a software bug but a deliberate abuse of how CDNs are designed […]
The post Hackers Abuse Shared CDN Infrastructure to Bypass Domain Reputation Security Controls appeared first on Cyber Security News.