Aggregator
CVE-2025-53891 | TimeLineOfficial Time-Line up to 1.0.4 unrestricted upload (GHSA-rvxq-q975-8vv2)
CVE-2025-53825 | dokploy up to 0.24.2 Environment Variable authorization (GHSA-h67g-mpq5-6ph5)
CVE-2025-53822 | LabRedesCefetRJ WeGIA up to 3.4.4 relatorio_geracao.php tipo_relatorio cross site scripting (GHSA-f5xr-4g63-pc9r)
CVE-2025-53824 | LabRedesCefetRJ WeGIA up to 3.4.3 editar_permissoes.php msg_c cross site scripting (GHSA-86r7-gc8h-63gh)
CVE-2025-53833 | saleem-hadad larecipe up to 2.8.0 special elements used in a template engine (GHSA-jv7x-xhv2-p5v2)
CVE-2025-53821 | LabRedesCefetRJ WeGIA up to 3.4.4 control.php nextPage redirect (GHSA-f5c2-jmm6-v2c5)
CVE-2025-53823 | LabRedesCefetRJ WeGIA up to 3.4.4 processa_deletar_socio.php id_socio sql injection (GHSA-p8xr-qg3c-6ww2)
CVE-2025-53890 | pyload 0.5.0b3.dev88 CAPTCHA code injection (GHSA-8w3f-4r8f-pf53)
Inorganic DNA: How nanoparticles could be the future of anti-counterfeiting tech
For decades, manufacturers and security professionals have been playing a high-stakes game of cat and mouse with counterfeiters. From holograms and QR codes to RFID tags and serial numbers, the industry’s toolkit has evolved, but so have the threats. Now, Italian startup Particular Materials is taking a radically different approach: tagging physical goods at the molecular level using engineered nanomaterials. “Our idea was simple,” says Francesco Zanin, CEO of Particular Materials. “What if we could … More →
The post Inorganic DNA: How nanoparticles could be the future of anti-counterfeiting tech appeared first on Help Net Security.
Scattered Spider黑客组织将攻击目标转移到航空和运输公司
NimDoor加密盗窃macOS恶意软件被删除后会自动恢复
Critical RCE Vulnerability Found in Symantec Endpoint Management Platform
Security researchers at LRQA have uncovered a critical remote code execution (RCE) vulnerability in Broadcom’s Symantec Endpoint Management Suite, formerly known as Altiris, that could allow unauthenticated attackers to execute arbitrary code on vulnerable systems. The flaw, assigned CVE-2025-5333, affects multiple versions of the widely used enterprise endpoint management platform and has been rated with […]
The post Critical RCE Vulnerability Found in Symantec Endpoint Management Platform appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
DNS Cloudflare упал — и показал, насколько мы все зависим от одного IP
俄军向乌军机器人投降!无人机与机器人如何改写战争法则,讨论我面临的无人作战的安全挑战
在审讯过程中快速分裂一个人的 12 种方法
CISA Flags Remote Linking Protocol Flaws Allowing Attackers to Hijack Train Brake Systems
The Cybersecurity and Infrastructure Security Agency (CISA) has issued a high-priority security alert warning of serious vulnerabilities in railway brake control systems that could allow attackers to commandeer train operations and potentially cause catastrophic accidents. The alert, published on July 10, 2025, identifies critical flaws in the End-of-Train and Head-of-Train remote linking protocol used across […]
The post CISA Flags Remote Linking Protocol Flaws Allowing Attackers to Hijack Train Brake Systems appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Securing vehicles as they become platforms for code and data
In this Help Net Security interview, Robert Knoblauch, CISO at Element Fleet Management, discusses how the rise of connected vehicles and digital operations is reshaping fleet management cybersecurity. He points to growing risks like API breaches, tampering with onboard diagnostics, and over-the-air update attacks, and explains how a layered zero-trust model and practical use of AI help tackle them. Knoblauch also shares how predictive analytics and real-time data are driving proactive security and safety across … More →
The post Securing vehicles as they become platforms for code and data appeared first on Help Net Security.
Google 计划合并 ChromeOS 和 Android
CISA Issues Alert on Actively Exploited Wing FTP Server Vulnerability
The Cybersecurity and Infrastructure Security Agency (CISA) has added a critical Wing FTP Server vulnerability to its Known Exploited Vulnerabilities (KEV) catalog, warning that threat actors are actively exploiting the security flaw in the wild. Critical Security Flaw Enables System Takeover The vulnerability, tracked as CVE-2025-47812, affects Wing FTP Server and involves improper neutralization of null […]
The post CISA Issues Alert on Actively Exploited Wing FTP Server Vulnerability appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.