Aggregator
CVE-2024-44257 | Apple macOS up to 13.6/14.6 information disclosure (Nessus ID 211697 / WID-SEC-2024-3291)
CVE-2024-44256 | Apple macOS up to 13.6/14.6 sandbox (Nessus ID 211697 / WID-SEC-2024-3291)
CVE-2025-55158 | Vim up to 9.1.1405 Vim9 Script Import clear_tv typval_T double free (GHSA-5fg8-wvx3-583x / Nessus ID 259917)
CVE-2025-51824 | libcsp 2.0 drivers/usart/zephyr.c csp_usart_open buffer overflow (Issue 851 / Nessus ID 259920)
CVE-2025-40920 | ETHER Catalyst::Authentication::Credential::HTTP up to 1.018 on Perl Data::UUID library generation of predictable numbers or identifiers (Nessus ID 259921)
SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 60
От 63,2% до 81,5% ёмкости после 150 циклов. Новое покрытие продлевает жизнь литий-ионных аккумуляторов на треть
Mastodon 表示没办法遵守年龄验证法律
Anthropic is testing GPT Codex-like Claude Code web app
BSidesSF 2025: Centralizing Egress Access Controls Across A Hybrid Environment At Block
Creator, Author and Presenter: Ramesh Ramani
Our deep appreciation to Security BSides - San Francisco and the Creators, Authors and Presenters for publishing their BSidesSF 2025 video content on YouTube. Originating from the conference’s events held at the lauded CityView / AMC Metreon - certainly a venue like no other; and via the organization's YouTube channel.
Additionally, the organization is welcoming volunteers for the BSidesSF Volunteer Force, as well as their Program Team & Operations roles. See their succinct BSidesSF 'Work With Us' page, in which, the appropriate information is to be had!
The post BSidesSF 2025: Centralizing Egress Access Controls Across A Hybrid Environment At Block appeared first on Security Boulevard.
AI Waifu RAT Exploits Users with Advanced Social Engineering Tactics
A sophisticated new malware campaign has emerged that weaponizes artificial intelligence and social engineering to target niche online communities. Security researchers have identified the “AI Waifu RAT,” a remote access trojan that masquerades as an innovative AI interaction tool while providing attackers with complete system access to victims’ computers. The malware specifically targets Large Language […]
The post AI Waifu RAT Exploits Users with Advanced Social Engineering Tactics appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Vulnerabilities in Sitecore CMS Platform Allow Excute Arbitrary Code Remotely
Security researchers at watchTowr Labs have uncovered a devastating chain of vulnerabilities in Sitecore Experience Platform that could allow attackers to completely compromise enterprise websites without authentication. The research reveals how cybercriminals could poison website cache systems, escalate privileges, and execute remote code on systems used by thousands of organizations worldwide. HTML Cache Poisoning Enables […]
The post Vulnerabilities in Sitecore CMS Platform Allow Excute Arbitrary Code Remotely appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Netskope Windows Client Vulnerability Enables Privilege Escalation via Rogue Server
A serious security vulnerability in Netskope’s Windows client has been discovered that could allow attackers to escalate privileges from a low-privileged user to full system-level access. The flaw, tracked as CVE-2025-0309, affects all versions of the Netskope Windows client prior to version R129 and has prompted the company to release urgent security updates. Exploiting Rogue […]
The post Netskope Windows Client Vulnerability Enables Privilege Escalation via Rogue Server appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Weekly Cybersecurity News Recap : WhatsApp, Chrome 0-Day, AI Ransomware and Cyber Attacks
Welcome to your Weekly Cybersecurity News Recap. This week, the digital world faced a fresh wave of threats, underscoring the relentless evolution of cyber risks that target individuals and organizations alike. From our personal communication apps to the browsers we use daily, the attack surface continues to expand, demanding constant vigilance. A significant vulnerability emerged […]
The post Weekly Cybersecurity News Recap : WhatsApp, Chrome 0-Day, AI Ransomware and Cyber Attacks appeared first on Cyber Security News.