Aggregator
US offers $15 million reward for info on North Korean nationals involved in global criminal network
The announcement comes as an Arizona woman was sentenced to more than eight years in jail for her role in running a laptop farm.
The post US offers $15 million reward for info on North Korean nationals involved in global criminal network appeared first on CyberScoop.
Hackers Use Weaponized .HTA Files to Infect Victims with Red Ransomware
CloudSEK’s TRIAD team uncovered an active development site deploying Clickfix-themed malware linked to the Epsilon Red ransomware. This variant deviates from traditional clipboard-based command injection tactics by directing victims to a secondary page on the same domain, where malicious shell commands are executed silently through ActiveXObject(“WScript.Shell”) to facilitate payload delivery. The script leverages Windows Command […]
The post Hackers Use Weaponized .HTA Files to Infect Victims with Red Ransomware appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
CVE-2024-20326 | Cisco ConfD CLI os command injection (cisco-sa-cnfd-rwpesc-ZAOufyx8)
CVE-2024-55592 | Fortinet FortiSIEM up to 7.2.5 HTTP Request authorization (FG-IR-24-377)
CVE-2025-7235 | CADImage Plugin on IrfanView DXF File Parser out-of-bounds write
CVE-2025-7239 | CADImage Plugin on IrfanView DWG File Parser memory corruption
CVE-2025-7237 | CADImage Plugin on IrfanView DWG File Parser memory corruption
CVE-2025-7238 | CADImage Plugin on IrfanView DXF File Parser out-of-bounds write
CVE-2025-7247 | CADImage Plugin on IrfanView DXF File Parser out-of-bounds (EUVD-2025-22236)
CVE-2025-7248 | CADImage Plugin on IrfanView DWG File Parser memory corruption
CVE-2025-7249 | CADImage Plugin on IrfanView DWG File Parser memory corruption (EUVD-2025-22243)
CVE-2025-7236 | CADImage Plugin on IrfanView DWG File Parser memory corruption (EUVD-2025-22160)
CVE-2025-7240 | CADImage Plugin on IrfanView DWG File Parser memory corruption (EUVD-2025-22161)
Everest
You must login to view this content
Everest
You must login to view this content
Раньше закупали, теперь производим: в России запускают ключевой компонент для микросхем
Weekly Threat Landscape Digest – Week 30
This week’s cybersecurity landscape is dominated by the active exploitation of zero-day vulnerabilities and sophisticated supply chain attacks targeting widely […]
The post Weekly Threat Landscape Digest – Week 30 appeared first on HawkEye.