Aggregator
CVE-2025-5646 | Radare2 5.9.9 radiff2 /libr/cons/pal.c r_cons_rainbow_free -T memory corruption (Issue 24235 / EUVD-2025-16974)
CVE-2025-5645 | Radare2 5.9.9 radiff2 /libr/cons/pal.c r_cons_pal_init -T memory corruption (Issue 24234 / EUVD-2025-16975)
CVE-2025-5647 | Radare2 5.9.9 radiff2 /libr/cons/cons.c r_cons_context_break_pop -T memory corruption (Issue 24237 / EUVD-2025-16978)
Ubuntu security advisory (AV25-361)
CVE-2025-6421 | code-projects Simple Online Hotel Reservation System 1.0 /admin/add_account.php name/admin_id sql injection (EUVD-2025-18876)
IBM security advisory (AV25-360)
McLaren Health Care Data Breach Exposes 743,000 People Personal Information
McLaren Health Care, a major healthcare organization based in Grand Blanc, Michigan, has disclosed a significant data breach that compromised the personal information of 743,131 individuals nationwide. The breach notification, filed with the Office of the Maine Attorney General, reveals that the healthcare provider experienced an external system breach through hacking activities that occurred on […]
The post McLaren Health Care Data Breach Exposes 743,000 People Personal Information appeared first on Cyber Security News.
Malware on Google Play, Apple App Store stole your photos—and crypto
New Echo Chamber Attack Jailbreaks Most AI Models by Weaponizing Indirect References
A sophisticated new jailbreak technique that defeats the safety mechanisms of today’s most advanced Large Language Models (LLMs). Dubbed the “Echo Chamber Attack,” this method leverages context poisoning and multi-turn reasoning to guide models into generating harmful content without ever issuing an explicitly dangerous prompt. The breakthrough research, conducted by Ahmad Alobaid at the Barcelona-based […]
The post New Echo Chamber Attack Jailbreaks Most AI Models by Weaponizing Indirect References appeared first on Cyber Security News.
CyberStrikeLab-Gear (带预期解和非预期)-Wp
DragonForce
You must login to view this content
DragonForce
You must login to view this content
Dell security advisory (AV25-359)
US Homeland Security warns of escalating Iranian cyberattack risks
UAC-0001 Hackers Attacking ICS Devices Running Windows Systems as a Server
Ukrainian government agencies have fallen victim to a sophisticated cyberattack campaign orchestrated by the UAC-0001 group, also known as APT28, targeting industrial control systems (ICS) devices running Windows operating systems as servers. The attacks, which occurred between March and April 2024, represent a significant escalation in state-sponsored cyber warfare tactics, demonstrating advanced techniques for penetrating […]
The post UAC-0001 Hackers Attacking ICS Devices Running Windows Systems as a Server appeared first on Cyber Security News.