Aggregator
CVE-2025-8492 | Salon Booking System, Appointment Scheduling for Salons, Spas & Small Businesses Plugin authorization
CVE-2025-8686 | WP Easy FAQs Plugin up to 1.0.5 on WordPress Shortcode WP_EASY_FAQ cross site scripting
CVE-2025-5801 | Digital Events Calendar Plugin up to 1.0.8 on WordPress column cross site scripting
CVE-2025-8318 | Jobify Plugin up to 1.4.4 on WordPress keyword cross site scripting
CVE-2025-8570 | BeyondCart Connector Plugin up to 1.4.2/2.1.0 on WordPress Configuration determine_current_user hard-coded credentials
CVE-2025-8215 | Responsive Addons for Elementor Plugin up to 1.7.4 on WordPress Widget cross site scripting
CVE-2025-8398 | azurecurve BBCode Plugin up to 2.0.4 on WordPress Shortcode url cross site scripting
甲骨文股价飙升,Larry Ellison 成为新首富
Critical BitLocker Flaws Allow Privilege Escalation: Patch Now
Microsoft has issued a warning about two flaws in Windows BitLocker that could allow a local attacker—or malware
The post Critical BitLocker Flaws Allow Privilege Escalation: Patch Now appeared first on Penetration Testing Tools.
Critical Google Drive Flaw Exposes All Your Files on Shared Computers
Millions of individuals and organizations entrust Google Drive with the storage of contracts, reports, photographs, and work documents,
The post Critical Google Drive Flaw Exposes All Your Files on Shared Computers appeared first on Penetration Testing Tools.
1.5 Billion Packets Per Second DDoS Attack Detected with FastNetMon
FastNetMon today announced that it detected a record-scale distributed denial-of-service (DDoS) attack targeting the website of a leading DDoS scrubbing vendor in Western Europe. The attack reached 1.5 billion packets per second (1.5 Gpps) — one of the largest packet-rate floods publicly disclosed. The malicious traffic was primarily a UDP flood launched from compromised customer-premises equipment (CPE), including IoT devices and […]
The post 1.5 Billion Packets Per Second DDoS Attack Detected with FastNetMon appeared first on Cyber Security News.
CVE-2025-9918 | Google SecOps SOAR prior 6.3.53.2/6.3.54.0 ZIP Archive path traversal (gcp-2025-049)
警惕!重大开源软件供应链攻击活动分析
DOJ Indicts Ukrainian National, Alleges Role in Three Major Ransomware Gangs
The U.S. Department of Justice has filed charges against Ukrainian national Volodymyr Viktorovych Timoshchuk, identified by investigators as
The post DOJ Indicts Ukrainian National, Alleges Role in Three Major Ransomware Gangs appeared first on Penetration Testing Tools.
Plex Urges Users to Reset Passwords After Security Incident
Plex has notified its users of a security incident that affected a portion of customer data. The company
The post Plex Urges Users to Reset Passwords After Security Incident appeared first on Penetration Testing Tools.
GONEPOSTAL: New Espionage Malware Hijacks Outlook for Covert Attacks
Researchers at Kroll have reported a new espionage campaign deploying the GONEPOSTAL malware. This tool was uncovered in
The post GONEPOSTAL: New Espionage Malware Hijacks Outlook for Covert Attacks appeared first on Penetration Testing Tools.
Unmasking a Cybercrime Enabler: The Provider Behind Clop Ransomware
The subject of a new investigation is Alviva Holding, a provider whose infrastructure has long been a cornerstone
The post Unmasking a Cybercrime Enabler: The Provider Behind Clop Ransomware appeared first on Penetration Testing Tools.
1.5 billion packets per second DDoS attack detected with FastNetMon
Apple’s New Security System Aims to End Spyware Attacks
Apple has officially unveiled Memory Integrity Enforcement (MIE) — a groundbreaking memory protection system the company describes as
The post Apple’s New Security System Aims to End Spyware Attacks appeared first on Penetration Testing Tools.