Aggregator
CVE-2024-7040 | open-webui up to 0.3.8 user_id access control
CVE-2024-7043 | open-webui up to 0.3.8 /api/v1/files/{file_id} incorrect synchronization
CVE-2025-2958 | TRENDnet TEW-818DRU 1.0.14.6 HTTP Request /usr/sbin/httpd denial of service
CVE-2024-5271 | Fuji Electric Monitouch V-SFT out-of-bounds write (icsa-24-151-02 / EUVD-2024-46508)
CVE-2018-1000638 | miniCMS 1.1 /mc-admin/page.php Date cross site scripting (Issue 20 / EDB-52175)
CVE-2010-2259 | Tamlyncreative Com Bfsurvey Basic 1.1 index.php controller path traversal (EDB-10946 / BID-37584)
Interlock
You must login to view this content
Chinese Threat Actors Operate 2,800 Malicious Domains to Distribute Windows Malware
A sophisticated threat actor, dubbed “SilverFox,” has been orchestrating a large-scale malware distribution campaign since at least June 2023, primarily during Chinese time zone working hours. This operation focuses on Chinese-speaking individuals and entities both within and outside China, leveraging over 2,800 newly created domains to deliver Windows-specific malware. Chinese-Speaking Users Globally The actor employs […]
The post Chinese Threat Actors Operate 2,800 Malicious Domains to Distribute Windows Malware appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
osintui: Open Source Intelligence Terminal User Interface
CVE-2024-42200 | HCL BigFix Platform cross site scripting (KB0120585 / Nessus ID 242295)
CVE-2025-53024 | Oracle VM VirtualBox 7.1.10 Core privileges management (Nessus ID 242294)
CVE-2025-53027 | Oracle VM VirtualBox 7.1.10 Core privileges management (Nessus ID 242294)
CVE-2025-53028 | Oracle VM VirtualBox 7.1.10 Core access control (Nessus ID 242294)
CVE-2024-42189 | HCL BigFix Platform API Parameter improper validation of specified type of input (KB0120585 / Nessus ID 242295)
CVE-2024-42193 | HCL BigFix Platform SSL certificate validation (KB0120585 / Nessus ID 242295)
CVE-2022-1475 | FFmpeg up to 5.0.1 g729_parser.c g729_parse integer overflow (ID 9651 / Nessus ID 242305)
CVE-2025-40777 | ISC BIND up to 9.20.10/9.20.10-S1/9.21.9 named assertion (EUVD-2025-21736 / Nessus ID 242301)
CVE-2025-6435 | Mozilla Firefox up to 139 File Extension unrestricted upload (EUVD-2025-19016 / Nessus ID 242306)
Google Sued BadBox 2.0 Malware Botnet Operators That Infects 10 Million+ Devices
Google has filed a lawsuit in New York federal court against the operators of the BadBox 2.0 botnet, marking a significant escalation in the tech giant’s fight against cybercriminal networks. The malware campaign represents the largest known botnet of internet-connected television devices, compromising over 10 million uncertified Android devices worldwide. BadBox 2.0 emerged as a […]
The post Google Sued BadBox 2.0 Malware Botnet Operators That Infects 10 Million+ Devices appeared first on Cyber Security News.