Aggregator
Critical FortiWeb SQL Injection (CVE-2025-25257) Allows Remote Code Execution, PoC Published
Fortinet has released critical security updates for FortiWeb, addressing a severe vulnerability that allowed unauthenticated attackers to execute arbitrary SQL queries remotely. The flaw, tracked as CVE-2025-25257, received a CVSS score of 9.6, placing...
The post Critical FortiWeb SQL Injection (CVE-2025-25257) Allows Remote Code Execution, PoC Published appeared first on Penetration Testing Tools.
GPUHammer: New NVIDIA Vulnerability Threatens AI Models with Data Corruption
NVIDIA has issued a warning about a newly discovered vulnerability in its graphics processing units, dubbed GPUHammer. This attack, rooted in the well-known RowHammer technique, enables malicious actors to corrupt data belonging to other...
The post GPUHammer: New NVIDIA Vulnerability Threatens AI Models with Data Corruption appeared first on Penetration Testing Tools.
$40 Million Crypto Heist: GMX Hacker Returns Funds for $5M Bounty, Dodges Legal Battle
A hacker who siphoned $40 million in cryptocurrency from the decentralized exchange GMX has returned nearly the entire haul in exchange for a $5 million payout. The breach ranked among the largest in DeFi...
The post $40 Million Crypto Heist: GMX Hacker Returns Funds for $5M Bounty, Dodges Legal Battle appeared first on Penetration Testing Tools.
研究人员警告:简单无线电入侵可紧急逼停北美所有列车
研究人员警告:简单无线电入侵可紧急逼停北美所有列车
亚马逊AWS调整新用户政策 不再提供免费试用12个月 换成半年赠金模式
ISC Stormcast For Tuesday, July 15th, 2025 https://isc.sans.edu/podcastdetail/9526, (Tue, Jul 15th)
Windows 11 Gets “Quick Machine Recovery”: Microsoft’s New AI-Powered Auto-Fix for Boot Failures
Microsoft has unveiled a new feature for Windows 11 that could prove to be a true lifeline for users when their computer suddenly fails to boot. This innovation, known as Quick Machine Recovery—or simply...
The post Windows 11 Gets “Quick Machine Recovery”: Microsoft’s New AI-Powered Auto-Fix for Boot Failures appeared first on Penetration Testing Tools.
巅峰对决,极客狂欢!第三届京麒CTF总决赛,5支特邀战队揭榜!
Warning: “Free VPN for PC” on GitHub is a Trap for Lumma Stealer Spyware
Cybercriminals have begun leveraging GitHub to disseminate dangerous spyware disguised as a free VPN service. The malicious campaign, uncovered by researchers at Cyfirma, masqueraded as a program called “Free VPN for PC.” Instead of...
The post Warning: “Free VPN for PC” on GitHub is a Trap for Lumma Stealer Spyware appeared first on Penetration Testing Tools.
绿盟虚拟汽车靶场(五):零部件内部发CAN报文控车
iOS 26 Beta 3: Apple Adds RCS Support, But Encryption Still Missing
Apple has finally begun integrating support for RCS (Rich Communication Services) into its messaging system, yet it still falls short of offering full end-to-end encryption on the iPhone. Although the company pledged in March...
The post iOS 26 Beta 3: Apple Adds RCS Support, But Encryption Still Missing appeared first on Penetration Testing Tools.