Aggregator
CVE-2024-5154 | cri-o up to 1.28.6/1.29.4/1.30.0 /proc/mounts symlink (EUVD-2024-2089)
CVE-2025-6162 | TOTOLINK EX1200T 4.1.2cu.5232_B20210713 HTTP POST Request /boafrm/formMultiAP submit-url buffer overflow (EUVD-2025-18476)
CVE-2025-6163 | TOTOLINK A3002RU 3.0.0-B20230809.1615 HTTP POST Request /boafrm/formMultiAP submit-url buffer overflow (EUVD-2025-18475)
CVE-2025-6165 | TOTOLINK X15 1.0.0-B20230714.1105 HTTP POST Request /boafrm/formTmultiAP submit-url buffer overflow (EUVD-2025-18480)
Hackers Use Fake Verification Prompt and Clickfix Technique to Deploy Fileless AsyncRAT
Threat actors are leveraging deceptive tactics to distribute a fileless variant of AsyncRAT, a notorious remote access Trojan. Discovered during routine attacker infrastructure analysis, this operation employs a fake verification prompt themed around the “Clickfix” technique to trick users into executing malicious commands. The campaign, which appears to target German-speaking individuals as evidenced by the […]
The post Hackers Use Fake Verification Prompt and Clickfix Technique to Deploy Fileless AsyncRAT appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Pydantic-AI输出约束技术深度剖析
ModelContext Inspector 未授权访问漏洞(CVE-2025-49596)
百度安全携手安恒信息开启战略合作,共筑数字经济安全底座
【安全圈】“Grafana Ghost”漏洞曝光,近四成公网实例仍未修复
【安全圈】“微软修复 Windows Hello 欺骗漏洞:黑暗中人脸识别功能被禁用”
【安全圈】多校禁用引发热搜,罗马仕大规模召回充电宝
【安全圈】新兴勒索软件 Anubis 具备文件擦除功能,即便支付赎金也难以恢复数据
ASUS Armoury Crate Vulnerability Lets Hackers Gain System-Level Access on Windows
A critical vulnerability in ASUS’s popular Armoury Crate software has exposed millions of Windows users to the risk of system-level compromise, according to a recent disclosure by Cisco Talos and confirmed by ASUS. The flaw, tracked as CVE-2025-3464, allows attackers to bypass security controls and gain the highest level of privileges on affected systems, potentially […]
The post ASUS Armoury Crate Vulnerability Lets Hackers Gain System-Level Access on Windows appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.