Aggregator
CVE-2014-8099 | XFree86/X11 1.16.2/1.16.2.99.901/4/4.0.1/6.1 SProcXvListImageFormats memory corruption (RHSA-2014:1983 / Nessus ID 80557)
CVE-2014-8100 | XFree86/X11 1.16.2/1.16.2.99.901/4 SProcRenderCompositeGlyphs memory corruption (RHSA-2014:1983 / Nessus ID 80557)
CVE-2014-8101 | XFree86/X11 1.16.2/1.16.2.99.901/4/4.0.1/6.1 SProcRRConfigureOutputProperty memory corruption (RHSA-2014:1983 / Nessus ID 80557)
CVE-2014-8102 | XFree86/X11 up to 6.7 SProcXFixesSelectSelectionInput memory corruption (RHSA-2014:1983 / Nessus ID 80557)
CVE-2014-8103 | XFree86/X11 sproc_present_query_capabilities memory corruption (RHSA-2014:1983 / Nessus ID 80557)
CVE-2015-0255 | X.org X Server up to 1.16.3/1.17.0 XkbSetGeometry Request information disclosure (Advisory-2015-02-10 / Nessus ID 83690)
CVE-2015-3418 | X.org X11R1 Image divide by zero (Nessus ID 84116 / ID 124170)
CVE-2015-3164 | XWayland up to 1.17.1 Authentication Setup access control (Nessus ID 84336 / ID 167944)
VS Code Marketplace Abused by Threat Actors to Deliver Malware via Trusted Extensions
A recently uncovered vulnerability in the Visual Studio Code (VS Code) Marketplace has allowed malicious actors to hijack discontinued extension names and slip malware past unsuspecting developers. In June, ReversingLabs (RL) researchers discovered a new malicious extension, ahbanC.shiba, that bore the same “shiba” identifier as a ransomware-capable extension removed in March—despite official documentation asserting extension […]
The post VS Code Marketplace Abused by Threat Actors to Deliver Malware via Trusted Extensions appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Cyber Attacks Targeting Education Sector Surges Following Back-to-School Season
As students and staff returned to campuses this August, a stark rise in cyber attacks against educational institutions has been observed worldwide. From January to July 2025, organizations in the education sector endured an average of 4,356 weekly attacks, marking a 41 percent year-over-year increase. These assaults range from credential-harvesting phishing domains to sophisticated delivery […]
The post Cyber Attacks Targeting Education Sector Surges Following Back-to-School Season appeared first on Cyber Security News.
CVE-2025-9647 | mtons mblog up to 3.5.0 /admin/role/list Name cross site scripting (ICPMNE)
吴泳铭的阿里新局:押注 AI 与消费,再次创业
ST Engineering | 使用生成对抗网络增强网络入侵检测性能
Hackers Leverage Compromised Third-Party SonicWall SSL VPN Credentials to Deploy Sinobi Ransomware
A sophisticated ransomware attack has emerged targeting organizations through compromised third-party managed service provider (MSP) credentials, showcasing the evolving tactics of cybercriminals in 2025. The Sinobi Group, operating as a Ransomware-as-a-Service (RaaS) affiliate, successfully infiltrated corporate networks by exploiting SonicWall SSL VPN credentials mapped to over-privileged Active Directory accounts with domain administrator rights. The attack […]
The post Hackers Leverage Compromised Third-Party SonicWall SSL VPN Credentials to Deploy Sinobi Ransomware appeared first on Cyber Security News.
Что будет, когда полтора миллиарда китайцев откажутся от Windows? Эксперимент уже начался
AppSuite PDF Editor Exploit Lets Hackers Run Arbitrary Commands
A sophisticated backdoor in AppSuite PDF Editor that enables threat actors to execute arbitrary commands on compromised Windows systems. Initially flagged as a potentially unwanted program due to its aggressive installation behavior, AppSuite’s true nature was revealed when its malicious components were deobfuscated and analyzed. Threat actors exploited high-ranking PDF tool websites to distribute a […]
The post AppSuite PDF Editor Exploit Lets Hackers Run Arbitrary Commands appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.