Aggregator
The Critical Failure in Vulnerability Management
Exposed ‘Kim’ Dump Exposes Kimsuky Hackers New Tactics, Techniques, and Infrastructure
A massive data breach in early September 2025 attributed to a cyber actor known simply as “Kim” laid bare an unprecedented view into the operational playbook of Kimsuky (APT43). The leak, comprising terminal history files, phishing domains, OCR workflows, compiled stagers, and a full Linux rootkit, revealed a credential-centric campaign that targeted South Korean government […]
The post Exposed ‘Kim’ Dump Exposes Kimsuky Hackers New Tactics, Techniques, and Infrastructure appeared first on Cyber Security News.
В Citrix NetScaler обнаружена критическая уязвимость переполнения памяти CVE-2025-7775
SentinelOne to acquire Observo AI, enhancing SIEM and security operations
SentinelOne has announced its intent to acquire Observo AI. The deal will serve as an immediate complement and catalyst to SentinelOne’s AI SIEM and data offerings, which are already amongst the company’s fastest growing solutions, delivering a record contribution to quarterly bookings in Q2 FY26. It will also help SentinelOne usher in a new era of open, intelligent, and autonomous security operations, reimagining how SOC teams collect, enrich, and act on data across their entire … More →
The post SentinelOne to acquire Observo AI, enhancing SIEM and security operations appeared first on Help Net Security.
Submit #645331: SourceCodester Online Polling System Code 1.0 SQL Injection [Duplicate]
CVE-2025-10104 | code-projects Online Event Judging System 1.0 /review_search.php txtsearch sql injection (EUVD-2025-27164)
CVE-2025-10103 | code-projects Online Event Judging System 1.0 /home.php main_event sql injection (EUVD-2025-27156)
CVE-2025-10102 | code-projects Online Event Judging System 1.0 /index.php Username sql injection
CVE-2025-22956 | OPSI up to 4.2 ProductPropertyState state issue
Remote Access Abuse Biggest Pre-Ransomware Indicator
Submit #645316: code-projects Online Event Judging System V1.0 SQL Injection [Accepted]
Submit #645298: code-projects Online Event Judging System V1.0 sql [Accepted]
Submit #645297: code-projects Online Event Judging System V1.0 SQL Injection [Accepted]
CVE-2025-40641 | Multi-Purpose Inventory Management System Non-defining Query update product_name cross site scripting (EUVD-2025-27122)
CVE-2025-40642 | WebWork Parameter /search q/engine cross site scripting
CVE-2025-3212 | Arm Bifrost GPU Kernel Driver use after free (EUVD-2025-27124)
Nepal social media ban sparks protests, dozens injured
Action1 vs. Microsoft WSUS: A Better Approach to Modern Patch Management
LunaLock Ransomware Attacking Artists to Steal and Encrypt Data
LunaLock, a newly surfaced ransomware strain, has launched a targeted campaign against independent artists and their clients, demanding a hefty ransom in exchange for stolen creative works and leaked personal data. Emerging in early September 2025, the LunaLock group claims responsibility for breaching Artists & Clients, a popular digital marketplace where illustrators connect with patrons […]
The post LunaLock Ransomware Attacking Artists to Steal and Encrypt Data appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.