Aggregator
CVE-2025-53781 | Microsoft DCadsv5-series Azure VM information disclosure
CVE-2025-57788 | Commvault CommCell up to 11.32.101/11.36.59 API Call hard-coded password (Nessus ID 253649 / WID-SEC-2025-1867)
CVE-2025-43490 | HP Hotkey Support Software HPAudioAnalytics Service link following
CVE-2025-8919 | Portabilis i-Diario up to 1.6 History Page objetivos-de-aprendizagem-e-habilidades código/objetivo habilidade cross site scripting (EUVD-2025-24630)
CVE-2025-53742 | Applitools Eyes Plugin up to 1.16.5 on Jenkins Controller File System permission (EUVD-2025-20835 / Nessus ID 241693)
CVE-2025-6224 | Canonical Juju Utils up to 4.0.3 cert.NewLeaf cleartext storage (GHSA-h34r-jxqm-qgpr / EUVD-2025-19609)
CVE-2025-48068 | next up to 15.1.6 Next.js Dev Server missing origin validation in websockets (EUVD-2025-16359)
CVE-2025-22846 | F5 BIG-IP/BIG-IP Next SPK prior 16.1.5/17.1.2 Traffic Management Microkernel denial of service (K000139780 / Nessus ID 215018)
Better Family Life Falls Victim to Kill Security Ransomware
Ваш смартфон стал банкоматом для хакеров. RatOn переводит деньги сам — пока вы спите
Chinese Hackers Allegedly Pose as US Lawmaker
Jaguar Land Rover Confirms Hackers Stole Data in Ongoing Cyberattack
Jaguar Land Rover (JLR) has confirmed that data was stolen during a major cyberattack that has crippled its global operations, bringing vehicle production to a standstill since early September. The luxury carmaker, a subsidiary of India’s Tata Motors, is now working with cybersecurity specialists to investigate the breach and restore its systems. The cyber incident, […]
The post Jaguar Land Rover Confirms Hackers Stole Data in Ongoing Cyberattack appeared first on Cyber Security News.
CyberVolk Ransomware Attacking Windows System in Critical Infrastructure and Scientific Institutions
CyberVolk ransomware first emerged in May 2024, rapidly evolving into a sophisticated threat aimed at government agencies and critical infrastructure in countries perceived as hostile to Russian interests. Leveraging a dual-layer symmetric encryption process, this malware has inflicted significant operational disruptions on scientific institutions and public services across Japan, France, and the United Kingdom. The […]
The post CyberVolk Ransomware Attacking Windows System in Critical Infrastructure and Scientific Institutions appeared first on Cyber Security News.
疫情期间使用的一次性口罩留下了化学定时炸弹
AsyncRAT Uses Fileless Loader to Bypass Detections and Gain Remote Access
Security researchers have recently observed a surge in sophisticated fileless malware campaigns targeting enterprise environments. AsyncRAT, a powerful Remote Access Trojan, leverages legitimate system tools to execute malicious payloads entirely in memory, effectively sidestepping traditional disk-based defenses. Emergence of this threat underscores the evolving tactics employed by cyber adversaries to maintain stealth and persistence on […]
The post AsyncRAT Uses Fileless Loader to Bypass Detections and Gain Remote Access appeared first on Cyber Security News.