Aggregator
CVE-2023-45745 | Intel TDX Module Software 1.5.01.00.592 input validation (intel-sa-01036)
CVE-2023-47855 | Intel TDX Module Software 1.5.01.00.592 input validation (intel-sa-01036)
CVE-2024-21801 | Intel TDX Module Software 1.5.01.00.592 insufficient control flow management (intel-sa-01070)
CVE-2024-33607 | Intel TDX Module Software 1.5.01.00.592/1.5.05.46.698 out-of-bounds (intel-sa-01192)
CVE-2022-38695 | Unisoc S8000 BootRom unnecessary privileges
CVE-2024-27291 | jhpyle docassemble up to 1.4.96 URL redirect (GHSA-7wxf-r2qv-9xwr)
CVE-2024-27290 | jhpyle docassemble up to 1.4.96 user name cross site scripting (GHSA-pcfx-g2j2-f6f6)
Темная сторона NGFW: проблемы, о которых не говорят вендоры. Уроки неудачных проектов
New WhatsApp Scam Alert Tricks Users to Get Complete Access to Your WhatsApp Chats
A newly discovered WhatsApp scam has begun circulating on messaging platforms, exploiting the popular device linking feature to seize full control of user accounts. The attack unfolds when recipients receive what appears to be a harmless message from a known contact, typically stating “Hi, I accidentally found your photo!” accompanied by a shortened URL. Once […]
The post New WhatsApp Scam Alert Tricks Users to Get Complete Access to Your WhatsApp Chats appeared first on Cyber Security News.
Jaguar Land Rover says cyberattack ‘severely disrupted’ production
Varonis buys AI email security firm SlashNext
An independent testing firm found that SlashNext’s product has a 100% detection rate for business email compromise and QR code attacks.
The post Varonis buys AI email security firm SlashNext appeared first on CyberScoop.
Red Hat security advisory (AV25-553)
Moscow reportedly hires hackers who breached city’s school system
Koning bijgepraat over luchtmachttaken in ruimtedomein
CVE-2021-21974
CVE-2025-9848 | ScriptAndTools Real Estate Management System 1.0 /admin/userlist.php redirect
CVE-2025-9847 | ScriptAndTools Real Estate Management System 1.0 register.php uimage unrestricted upload
Играй до упада, плачь и просись домой. Как киберспортивные клубы «лечат» детей от игровой зависимости
ESPHome Vulnerability Allows Unauthorized Access to Smart Devices
A critical authentication bypass flaw in ESPHome’s ESP-IDF web server component allows unauthorized users on the same local network to access and control smart devices without any valid credentials. Discovered and reported by security researcher jesserockz, the vulnerability (CVE-2025-57808) undermines Basic Authentication by accepting empty or partially correct Authorization headers. Users of ESPHome version 2025.8.0 […]
The post ESPHome Vulnerability Allows Unauthorized Access to Smart Devices appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.