Aggregator
CVE-2025-34113 | Tiki Wiki CMS Groupware up to 6.14/9.10 LTS/12.4 LTS/14.1 Calendar Module tiki-calendar.php viewmode missing authentication (EUVD-2025-21426 / EDB-39965)
CVE-2025-53621 | DSpace up to 7.6.3/8.1/9.0 Import xml external entity reference (GHSA-jjwr-5cfh-7xwh / EUVD-2025-21447)
CVE-2025-6974 | Dassault Systèmes SOLIDWORKS eDrawings up to 2025 SP2 JT File Parser uninitialized variable (EUVD-2025-21444)
CVE-2025-7042 | Dassault Systèmes SOLIDWORKS eDrawings up to 2025 SP2 IPT File Parser use after free (EUVD-2025-21445)
CVE-2025-6973 | Dassault Systèmes SOLIDWORKS eDrawings up to 2025 SP2 JT File Parser use after free (EUVD-2025-21443)
Новая коалиция против 0‑day: бизнес и спецслужбы в одной связке
Mozilla 工程师称 Raptor Lake CPU 在热浪下导致 Firefox 更频繁的崩溃
SecWiki News 2025-07-15 Review
Ransomware Attack on Albemarle County Exposes Residents’ Personal Information
Albemarle County, Virginia, discovered irregularities in its IT infrastructure under a sophisticated ransomware attack. The breach was quickly recognized by cybersecurity experts as a ransomware deployment, a type of malware that encrypts data and demands payment to decrypt it. This type of malware is frequently used in conjunction with data exfiltration for extortion. Despite robust […]
The post Ransomware Attack on Albemarle County Exposes Residents’ Personal Information appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
CVE-2025-5394 | Alone Plugin up to 7.8.3 on WordPress alone_import_pack_install_plugin authorization (EUVD-2025-21416)
CVE-2025-34112 | Riverbed SteelCentral NetExpress/SteelCentral NetProfiler 10.8.7 /api/common/1.0/login sql injection (Exploit 40108 / EUVD-2025-21430)
CVE-2025-34115 | ITRS OP5 Monitor up to 7.1.9 Web Interface command_test.php cmd_str os command injection (EUVD-2025-21432 / EDB-39676)
CVE-2025-34116 | IPFire up to 2.18 CGI Interface proxy.cgi os command injection (EUVD-2025-21433 / EDB-39765)
CVE-2025-52376 | Nexxt NCM-X1800 up to 1.2.7 Telnet Service /web/um_open_telnet.cgi hard-coded credentials (EUVD-2025-21439)
CVE-2025-52378 | Nexxt NCM-X1800 up to 1.2.7 Device Management Page um_device_set_aliasname DEVICE_ALIAS cross site scripting (EUVD-2025-21440)
Payoutsking
You must login to view this content
Hackbase перезапущена: теперь каждая отрасль — это поле боя. А ваш бизнес — учебная цель
Alleged Sale of The Chartered Institute of Bankers of Nigeria Access
Threat Actors Mimic CNN, BBC, and CNBC Websites to Promote Investment Scams
Cybersecurity researchers have identified a sophisticated international fraud campaign that leverages impersonated news websites from major outlets including CNN, BBC, CNBC, News24, and ABC News to orchestrate large-scale investment scams. The operation demonstrates advanced social engineering tactics combined with technical deception methods to target victims across multiple countries. The campaign operates through a multi-stage attack […]
The post Threat Actors Mimic CNN, BBC, and CNBC Websites to Promote Investment Scams appeared first on Cyber Security News.