Aggregator
Submit #619313: code-projects Public Chat Room 1.0 SQL Injection [Accepted]
Приватное стало публичным: пикантные фото из фитнес-приложения попали в открытый доступ
Submit #619280: sanluan https://github.com/sanluan/PublicCMS <=V5.202506.a SSRF [Duplicate]
Submit #619278: sanluan https://github.com/sanluan/PublicCMS <=V5.202506.a Open Redirect [Accepted]
CVE-2025-1469 | Turtek Eyotek prior 11.03.2025 authorization (EUVD-2025-22071)
CVE-2024-6107 | Canonical MAAS up to 3.1.3/3.2.10/3.3.7/3.4.3/3.5.0 RPC Command improper authentication (EUVD-2024-54803)
CVE-2025-4570 | ASUS MyASUS hard-coded credentials (EUVD-2025-22064)
CVE-2025-4569 | ASUS MyASUS hard-coded credentials (EUVD-2025-22065)
CVE-2025-4049 | Signum FARA up to 5.0.80.34 SQLite Database hard-coded credentials (EUVD-2025-22066)
微软希望Windows 11用户提交反馈优化系统性能 反馈中心可提交系统日志
Submit #619183: itsourcecode Insurance Management System V1.0 SQL Injection [Duplicate]
HPE Warns of Aruba Hardcoded Credentials Allowing Attackers to Bypass Device Authentication
A critical vulnerability in Hewlett Packard Enterprise (HPE) Aruba Networking Instant On Access Points could allow attackers to bypass device authentication mechanisms completely. The vulnerability, tracked as CVE-2025-37103, stems from hardcoded login credentials embedded within the devices’ software, presenting a severe security risk with a maximum CVSS score of 9.8. Key Takeaways1. HPE Aruba Access […]
The post HPE Warns of Aruba Hardcoded Credentials Allowing Attackers to Bypass Device Authentication appeared first on Cyber Security News.
英伟达向Linux发布新版显卡驱动程序570.172.08 支持RTX 5050和提高稳定性
情报每周回顾 2025-07-20
The Cyber Canon, ditching the SOC 2, and the weekly enterprise news - Helen Patton - ESW #416
Cybersecurity Isn’t Just an IT Line Item — It’s a Business Imperative
Cybersecurity officers need to remember that the reality is, most attacks don’t begin with a dramatic break-in… they start with a login.
The post Cybersecurity Isn’t Just an IT Line Item — It’s a Business Imperative appeared first on Security Boulevard.
Cybersecurity Isn’t Just an IT Line Item — It’s a Business Imperative
24 часа на «казнь»: как будут убивать неугодный контент
Microsoft AppLocker Flaw Lets Malicious Apps Bypass Security Restrictions
Security researchers at Varonis Threat Labs have identified a subtle but significant vulnerability in Microsoft’s AppLocker security feature that could allow malicious applications to bypass established security restrictions. While not classified as a critical vulnerability, the discovery highlights important gaps in enterprise security configurations that organizations should address. AppLocker serves as Microsoft’s enterprise-grade application control […]
The post Microsoft AppLocker Flaw Lets Malicious Apps Bypass Security Restrictions appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.