Aggregator
CVE-2025-59026 | Open-Xchange OX App Suite up to 8.35.110/8.39.85/8.40.73/8.41.67 File cross site scripting (adv-2025-0003 / EUVD-2025-199812)
CVE-2025-59025 | Open-Xchange OX App Suite up to 8.35.110/8.39.85/8.40.73/8.41.50 E-Mail Content cross site scripting (adv-2025-0003 / EUVD-2025-199813)
CVE-2025-30190 | Open-Xchange OX App Suite cross site scripting (adv-2025-0003 / EUVD-2025-199814)
Nederland weer aan zet voor luchtruimbewaking
CVE-2025-30186 | Open-Xchange OX App Suite up to 8.35.107/8.38.89/8.39.83/8.40.68/8.41.60 cross site scripting (adv-2025-0003 / EUVD-2025-199815)
Взрывы для картинки, рабство по расписанию. Хунта уничтожила 20 тысяч телефонов вместо того, чтобы расследовать торговлю людьми
RingReaper: Stealthy Linux Agent Abuses io_uring to Bypass EDR System Call Monitoring
RingReaper is a simple post-exploitation agent for Linux designed for those who need to operate stealthily, minimizing the chances
The post RingReaper: Stealthy Linux Agent Abuses io_uring to Bypass EDR System Call Monitoring appeared first on Penetration Testing Tools.
OpenAI discloses API customer data breach via Mixpanel vendor hack
Confirmed: 15-Year-Old Jordanian is The Leader of Scattered LAPSUS$ Hunters
The hacker collective known as Scattered LAPSUS$ Hunters — which has spent this year extorting dozens of corporations
The post Confirmed: 15-Year-Old Jordanian is The Leader of Scattered LAPSUS$ Hunters appeared first on Penetration Testing Tools.
Hackers Breach U.S. Radio Stations to Broadcast Fake EAS Tones & Obscenities
Hackers breached U.S. radio stations and broadcast fabricated alerts and streams of obscenities live on air, prompting the
The post Hackers Breach U.S. Radio Stations to Broadcast Fake EAS Tones & Obscenities appeared first on Penetration Testing Tools.
12月6日专题会议 | 人工智能模型与数据安全
学术年会 | 云晓春院士确认出席2025年网络空间安全学术会议并作大会主旨报告
Malicious ‘Crypto Copilot’ Chrome Extension Steals Hidden Fee from Solana Swaps
A malicious extension has been discovered in the Chrome catalog — an add-on that, without the owner’s knowledge,
The post Malicious ‘Crypto Copilot’ Chrome Extension Steals Hidden Fee from Solana Swaps appeared first on Penetration Testing Tools.
EtherHiding: New Stealth Attack Hides Malware C2 in Binance Smart Chain Smart Contracts
Censys researchers have detailed a new web-attack technique known as EtherHiding, in which attackers conceal malicious code inside
The post EtherHiding: New Stealth Attack Hides Malware C2 in Binance Smart Chain Smart Contracts appeared first on Penetration Testing Tools.
ASUS Patches Critical AiCloud Flaw (CVE-2025-59366) Allowing Remote Router Takeover
ASUS continues to patch dangerous flaws in its home routers following a wave of attacks targeting the AiCloud
The post ASUS Patches Critical AiCloud Flaw (CVE-2025-59366) Allowing Remote Router Takeover appeared first on Penetration Testing Tools.
OpenAI Warns of Mixpanel Data Breach Impacting API Users
HashJack Attack: New Technique Weaponizes URLs to Hijack AI Browser Assistants
Cato Networks has unveiled a new attack technique, dubbed HashJack, which conceals malicious AI prompts behind the “#”
The post HashJack Attack: New Technique Weaponizes URLs to Hijack AI Browser Assistants appeared first on Penetration Testing Tools.
INC Ransom Attack Disrupts US Emergency Alerts, Exposes Clear-Text Passwords
The CodeRED alert platform operated by OnSolve and maintained by the risk-management firm Crisis24 has fallen victim to
The post INC Ransom Attack Disrupts US Emergency Alerts, Exposes Clear-Text Passwords appeared first on Penetration Testing Tools.