Aggregator
CVE-2024-58079 | Linux Kernel up to 6.6.77/6.12.13/6.13.2 uvcvideo devm_request_threaded_irq denial of service (Nessus ID 232249)
CVE-2024-58078 | Linux Kernel up to 6.6.77/6.12.13/6.13.2 lib/idr.c ida_free allocation of resources (Nessus ID 232245)
CVE-2024-58077 | Linux Kernel up to 6.1.128/6.6.77/6.12.13/6.13.2 soc-pcm soc_pcm_ret denial of service (EUVD-2024-54022 / Nessus ID 232264)
CVE-2024-58082 | Linux Kernel up to 6.12.13/6.13.2 npcm_video_ece_init return value (Nessus ID 232272)
CVE-2024-38594 | Linux Kernel up to 6.8.11/6.9.2 kernel/locking/mutex.c stmmac_priv initialization (487f9030b1ef/6f476aff2d8d/36ac9e7f2e57 / WID-SEC-2024-1418)
打开网页浏览器就崩了
Randall Munroe’s XKCD ‘Hot Water Balloon”
via the comic artistry and dry wit of Randall Munroe, creator of XKCD
The post Randall Munroe’s XKCD ‘Hot Water Balloon” appeared first on Security Boulevard.
Конфуз после Нобелевки: "Умный" ИИ оказался "Зубрилкой", не понимающей физику. отчет Nature
Safepay
You must login to view this content
CVE-2025-11952 | Oct8ne Chatbot 2.3 /Records/SendSummaryMail cross site scripting (EUVD-2025-35339)
CVE-2025-12357 | ISO 15118-2 Network and Application Protocol Requirements communication channel to intended endpoints (icsa-25-303-01 / EUVD-2025-37371)
CVE-2025-63467 | Totolink LR350 9.3.5u.6369_B20220309 sub_425400 ssid buffer overflow (EUVD-2025-37374)
CVE-2025-63466 | TOTOLINK LR350 9.3.5u.6369_B20220309 sub_426EF8 Password buffer overflow (EUVD-2025-37372)
CVE-2025-63468 | TOTOLINK LR350 9.3.5u.6369_B20220309 sub_426EF8 http_host buffer overflow (EUVD-2025-37373)
CVE-2025-64168 | agno-agi agno up to 2.2.1 session_state race condition (EUVD-2025-37370)
CVE-2025-12552 | Azure Access BLU-IC2/BLU-IC4 up to 1.19.5 weak password (EUVD-2025-37369)
IOC Alert: FakeCaptcha Payload Embedded in Compromised News Article
Threat Actors Exploit LANSCOPE Endpoint Manager Zero-Day Vulnerability to Steal Confidential Data
In mid-2025, researchers discovered a sophisticated campaign orchestrated by the Chinese state-sponsored threat group BRONZE BUTLER (also known as Tick) targeting organizations relying on Motex LANSCOPE Endpoint Manager. The attackers exploited a previously unknown zero-day vulnerability tracked as CVE-2025-61932, which grants remote adversaries the ability to execute arbitrary commands with SYSTEM privileges. This marks the […]
The post Threat Actors Exploit LANSCOPE Endpoint Manager Zero-Day Vulnerability to Steal Confidential Data appeared first on Cyber Security News.