Aggregator
CVE-2025-9254 | Uniong WebITR up to 2_1_0_32 missing authentication (EUVD-2025-25512)
CVE-2025-9341 | Bouncy Castle for Java FIPS up to 2.1.0 API Module AESNativeCBC.Java resource consumption (EUVD-2025-25504 / WID-SEC-2025-1895)
CVE-2025-9256 | Uniong WebITR up to 2_1_0_32 absolute path traversal (EUVD-2025-25509)
Chinese national who sabotaged Ohio company’s systems handed four-year jail stint
Over 1,200 arrested in Africa-wide cybercrime crackdown, Interpol says
Microsoft to Restrict Use of OnMicrosoft Domains for Email Sending
Microsoft has announced significant restrictions on the use of default onmicrosoft.com domains for email communication, implementing new throttling measures to combat spam and improve email deliverability across its Microsoft 365 platform. Policy Changes Target Spam Prevention The technology giant will introduce throttling limits that restrict messages sent from onmicrosoft.com domains to just 100 external recipients […]
The post Microsoft to Restrict Use of OnMicrosoft Domains for Email Sending appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Обещали 94,8% без ложных срабатываний, получили флаги на новостные обсуждения войны
CVE-2024-3863 | Mozilla Firefox up to 124 xrm-ms File (EUVD-2024-32431)
CVE-2025-7051 | N-able N-central up to 2024.6.16 Configuration access control (EUVD-2025-25473)
CVE-2025-31281 | Apple visionOS File memory corruption (EUVD-2025-23128 / Nessus ID 243030)
CVE-2025-31281 | Apple iOS/iPadOS File memory corruption (EUVD-2025-23128 / Nessus ID 243030)
CVE-2025-41652 | Weidmueller IE-SW-VL05M-5TX reliance on security through obscurity (VDE-2025-044 / EUVD-2025-25507)
CVE-2025-8678 | WP Crontrol Plugin up to 1.19.1 on WordPress wp_remote_request server-side request forgery (EUVD-2025-25506)
CVE-2025-41452 | Danfoss AK-SM8xxA up to 4.3.0 Web Interface Configuration Setting external control of system or configuration setting (EUVD-2025-25498)
Zr.Ms. Friesland weet van geen ophouden in Caribisch gebied
CISA Requests Public Comment for Updated Guidance on Software Bill of Materials
CISA released updated guidance for the Minimum Elements for a Software Bill of Materials (SBOM) for public comment—comment period begins today and concludes on October 3, 2025. These updates build on the 2021 version of the National Telecommunications and Information Administration SBOM Minimum Elements to reflect advancements in tooling and implementation.
An SBOM serves as a vital inventory of software components, enabling organizations to identify vulnerabilities, manage dependencies, and mitigate risks. The update refines data fields, automation support, and operational practices to ensure SBOMs are scalable, interoperable, and comprehensive.
Stakeholders are encouraged to provide feedback via the Federal Register during the public comment period. This feedback will contribute to refining SBOM practices, enabling CISA to release an updated version of the minimum elements.