Aggregator
«Ничего подозрительного, просто Teams». Хакеры спрятали управление вирусом за обычной рабочей перепиской
贡献者账号遭劫持,144个 Mastra npm 包被攻击
Fortra 访问管理器漏洞可导致远程命令注入攻击
CISA 要求联邦机构在本周五前修复Joomla 插件满分漏洞
Barracuda introduces AI-powered email security with automated threat response
Barracuda Networks has unveiled Barracuda Integrated Email Protection, an Integrated Cloud Email Security (ICES) solution delivering protection against evolving AI-driven threats. Powered by AI, the solution continuously and autonomously detects and remediates threats across the attack lifecycle, explains Microsoft 365 and Google Workspace verdicts and enables rapid post-delivery message clawback. Built on BarracudaONE platform telemetry across domains, including email, identity, network, data, and applications, and designed for single and multitenant environments, it also enables MSPs … More →
The post Barracuda introduces AI-powered email security with automated threat response appeared first on Help Net Security.
CVE-2026-55745 | Cotonti 1.0.0 /pfs/inc/pfs cot_check_xg cross-site request forgery (EUVD-2026-37856)
CVE-2026-55746 | Cotonti 1.0.0 modules/pfs/inc/pfs.main htmlspecialchars cross site scripting (EUVD-2026-37858)
CVE-2026-9815 | MagicForm Plugin up to 0.1.3 on WordPress PHP File unrestricted upload (EUVD-2026-37852)
CVE-2026-28573 | Google Android 14/16 AndroidManifest.xml denial of service (EUVD-2026-37857)
CVE-2026-12098 | blubrry PowerPress Podcasting plugin by Blubrry up to 11.16.8 on WordPress update_post_meta cross site scripting (EUVD-2026-37862)
CVE-2026-11395 | mariovalney CF7 to Webhook Plugin up to 5.0.0 on WordPress Placeholder server-side request forgery (EUVD-2026-37863)
CVE-2026-12137 | phppoet SysBasics Customize My Account for WooCommerce Plugin Admin Dashboard Page plugin_options_page cross site scripting (EUVD-2026-37861)
CVE-2026-12136 | phppoet SysBasics Customize My Account for WooCommerce Plugin Shortcode wcmamtx_get_avatar_default cross site scripting (EUVD-2026-37859)
CVE-2026-55741 | Cotonti 1.0.0 /admin/admin cot_config_update_options x cross-site request forgery (EUVD-2026-37853)
CVE-2026-12111 | codepeople Appointment Booking Calendar Plugin up to 1.4.01 on WordPress Query Parameter cpabc_appointments_calendar_load2 ID information disclosure (EUVD-2026-37864)
CVE-2026-12102 | stiofansisland UsersWP Plugin up to 1.2.63 on WordPress User Registration user_id authorization (EUVD-2026-37860)
CVE-2026-55744 | Cotonti 1.0.0 modules/pfs/inc/pfs.main cot_check_xg cross-site request forgery (EUVD-2026-37855)
CVE-2026-55742 | Cotonti 1.0.0 /admin/admin cot_check_xg cross-site request forgery (EUVD-2026-37854)
New 42Crunch plugin helps developers find and fix API vulnerabilities in GitHub Copilot
42Crunch has announced the availability of the 42Crunch API Security Testing Plugin for GitHub Copilot. This latest advance enables developers to continuously audit, test, remediate and validate API security vulnerabilities directly within AI-assisted development workflows. Organizations are struggling to secure their growing API landscape in the face of increasing attacks, with AI’s heavy reliance on APIs compounding this problem. Consequently, one of the key areas of attention for security and engineering teams is the security … More →
The post New 42Crunch plugin helps developers find and fix API vulnerabilities in GitHub Copilot appeared first on Help Net Security.