Aggregator
CVE-2024-11286 | WP JobHunt Plugin up to 7.1 on WordPress cs_parse_request authentication bypass
CVE-2024-13913 | InstaWP Connect Plugin up to 0.1.0.83 on WordPress main.php cross-site request forgery
CVE-2025-0955 | beeteam368 VidoRev Extensions Plugin up to 2.9.9.9.9.9.5 on WordPress authorization
CVE-2024-13376 | Anps Industrial Plugin up to 1.7.8 on WordPress _ajax_get_total_content_import_items privileges management
CVE-2024-11285 | WP JobHunt Plugin up to 7.1 on WordPress Setting account_settings_callback authorization
CVE-2025-1285 | SmartDataSoft Resido Plugin up to 3.6 on WordPress delete_api_key/save_api_key authorization
CVE-2024-11283 | WP JobHunt Plugin up to 7.1 on WordPress authentication bypass by alternate name
New Campaign Attacking PyPI Users to Steal Sensitive Data Including Cloud Tokens
Security researchers have uncovered a sophisticated malware campaign targeting users of the Python Package Index (PyPI), Python’s official third-party software repository. This latest attack vector involves several malicious packages disguised as time-related utilities, which are actually designed to steal sensitive information including cloud access tokens, API keys, and other credentials. According to Reversing Labs post […]
The post New Campaign Attacking PyPI Users to Steal Sensitive Data Including Cloud Tokens appeared first on Cyber Security News.
澳大利亚男子在安装钛合金人造心脏后生存了 100 天
【火绒安全周报】近百万Windows用户遭恶意广告攻击/软件开发人员因植入恶意代码报复前司获罪
诚邀渠道合作伙伴共启新征程
【火绒安全周报】近百万Windows用户遭恶意广告攻击/软件开发人员因植入恶意代码报复前司获罪
Ballista僵尸网络利用TP-Link漏洞,6千台设备被攻击
AAAI 2025|Portcullis —— 面向第三方大型语言模型的可信隐私保护网关
Развязать руки разработчикам: Google предложила Трампу свой план развития ИИ
Decrypting Linux/ESXi Akira Ransomware Files Without Paying Ransomware
A cybersecurity researcher has successfully broken the encryption used by the Linux/ESXI variant of the Akira ransomware, enabling data recovery without paying the ransom demand. The breakthrough exploits a critical weakness in the ransomware’s encryption methodology. According to the researcher, the malware uses the current time in nanoseconds as a seed for its encryption process, […]
The post Decrypting Linux/ESXi Akira Ransomware Files Without Paying Ransomware appeared first on Cyber Security News.
Маск в АНБ: первая встреча с разведкой после назначения
U.S. Charges LockBit Ransomware Developer in Cybercrime Crackdown
The U.S. Department of Justice has charged Rostislav Panev, a dual Russian and Israeli national, for his role as a developer of the notorious LockBit ransomware group. Panev, 51, was arrested in Israel in August following a U.S. provisional arrest request, and he is currently awaiting extradition to the United States. This action marks a […]
The post U.S. Charges LockBit Ransomware Developer in Cybercrime Crackdown appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.