Aggregator
IOC Alert: apk.hook Botnet C2
📖 Overview
A new domain-based indicator has been identified linked to botnet command-and-control infrastructure for apk.hook (HookBot). The domain, hosted under Hetzner (AS24940), is tied to ERMAC v3.0 activity and represents a high-confidence threat to Android devices targeted by banking trojans.
📌 Key Details
FieldInformationTypeDomainFedRAMP Monthly ConMon vs Annual Assessments
We say this just about every time the subject comes up (which is often, given our industry and role in it), but valid information security is not a state of being. It is a moving target and a process. Achieving certification for a certain level of security is a snapshot of a moment in time, […]
The post FedRAMP Monthly ConMon vs Annual Assessments appeared first on Security Boulevard.
任正非王兴兴梁文锋入选「时代 AI 百人」;小米主动召回充电宝;阿里蒋凡:淘宝闪购规模+心智超预期|极客早知道
任正非王兴兴梁文锋入选「时代 AI 百人」;小米主动召回充电宝;阿里蒋凡:淘宝闪购规模+心智超预期|极客早知道
Interlock
You must login to view this content
CVE-2002-2106 | WikkiTikkiTavi 0.5/0.10/0.20 conflict.php TemplateDir privileges management (EDB-21241 / ID 10627)
CVE-2002-2109 | Matt Wright FormMail up to 1.9 Referer Checker HTTP_REFERER authentication spoofing (ID 10476 / XFDB-8012)
CVE-2002-2114 | Artekopia Netjuke up to 1.0 B6 eval section privileges management (ID 10532 / XFDB-8101)
CVE-2002-2115 | Hyper NIKKI System up to 0.8/2.10 cross site scripting (ID 10535 / XFDB-8204)
CVE-2002-2121 | SurfControl Superscout Email Filter 3.5.1 SMTP Proxy HELO/RCPT TO memory corruption (ID 74097 / XFDB-8424)
CVE-2002-2123 | Gallery 1.3.2 publish_xp_docs.php GALLERY_BASEDIR privileges management (ID 10965 / XFDB-10943)
CVE-2002-2128 | w-Agora 4.1.5 editform.php File path traversal (ID 11029 / XFDB-10919)
CVE-2002-2129 | w-Agora 4.1.5 Form editform.php cross site scripting (EDB-22109 / ID 11028)
CVE-2002-2134 | PEEL 1.0b haut.php dirroot privileges management (EDB-22114 / ID 11008)
CVE-2025-40779 | ISC Kea up to 2.7.9/3.0.0/3.1.0 DHCPv4 null pointer dereference (Nessus ID 258123)
CVE-2025-20294 | Cisco Unified Computing System up to 4.3(6b) Web-based Management Interface/CLI os command injection (cisco-sa-ucs-multi-cmdinj-E4Ukjyrz / EUVD-2025-25943)
Qilin
You must login to view this content