Aggregator
CISA ICS security advisories (AV25-537)
Chinese APT Hackers Using Proxy and VPN Service to Anonymize Infrastructure
In recent months, cybersecurity researchers have observed a surge in targeted campaigns by a sophisticated Chinese APT group leveraging commercial proxy and VPN services to mask their attack infrastructure. The emergence of this tactic coincides with a broader shift toward commoditized anonymization platforms that blend threat actor traffic with legitimate user activity. Initial compromise vectors […]
The post Chinese APT Hackers Using Proxy and VPN Service to Anonymize Infrastructure appeared first on Cyber Security News.
NTLM через HTTP — самый тихий путь к контроллеру домена
Ubuntu security advisory (AV25-536)
CVE-2025-56215 | PHPGurukul Hospital Management System 4.0 contact.php pagetitle sql injection
CVE-2025-56214 | PHPGurukul Hospital Management System 4.0 index.php Username sql injection
CVE-2025-50900 | Rebuild 4.0.4 com.rebuild.web.RebuildWebinterceptor/ preHandle access control
Kairos
You must login to view this content
CVE-2025-56212 | PHPGurukul Hospital Management System 4.0 add-doctor.php docname sql injection
CVE-2025-5302 | run-llama llama_index up to 0.12.37 JSONReader recursion
CVE-2025-9476 | SourceCodester Human Resource Information System 1.0 editemployee_process.php employee_file201 unrestricted upload
CVE-2025-9475 | SourceCodester Human Resource Information System 1.0 editemployee_process.php employee_file201 unrestricted upload
CVE-2023-20172 | Cisco Identity Services Engine client-side enforcement of server-side security (cisco-sa-ise-file-delete-read-PK5ghDDd / EUVD-2023-24351)
CVE-2023-20164 | Cisco Identity Services Engine os command injection (cisco-sa-ise-injection-sRQnsEU9 / EUVD-2023-24343)
CVE-2023-20166 | Cisco Identity Services Engine path traversal (cisco-sa-ise-traversal-ZTUgMYhu / EUVD-2023-24345)
CVE-2023-20167 | Cisco Identity Services Engine path traversal (cisco-sa-ise-traversal-ZTUgMYhu / EUVD-2023-24346)
CVE-2023-20171 | Cisco Identity Services Engine client-side enforcement of server-side security (cisco-sa-ise-file-delete-read-PK5ghDDd / EUVD-2023-24350)
CVE-2023-20163 | Cisco Identity Services Engine os command injection (cisco-sa-ise-injection-sRQnsEU9 / EUVD-2023-24342)
New Android Spyware Disguised as an Antivirus Attacking Business Executives
In recent months, security teams have observed the emergence of a highly versatile Android backdoor, Android.Backdoor.916.origin, masquerading as a legitimate antivirus application. Distributed via private messaging services under the guise of “GuardCB,” its icon closely mimics the emblem of the Central Bank of the Russian Federation against a shield background. Although the interface displays only […]
The post New Android Spyware Disguised as an Antivirus Attacking Business Executives appeared first on Cyber Security News.