Aggregator
中国信通院首期软件成分分析 (SCA) 工具检测能力测试结果发布,奇安信开源卫士夺魁!
CISA Warns WatchGuard Firebox Out-of-Bounds Write Vulnerability Exploited Attacks
The Cybersecurity and Infrastructure Security Agency (CISA) has released a warning about a serious vulnerability affecting WatchGuard Firebox security appliances. This flaw, tracked as CVE-2025-9242, potentially allows remote attackers to take control of affected systems. The security issue involves an out-of-bounds write in the device’s operating system, specifically the OS iked process. This means a […]
The post CISA Warns WatchGuard Firebox Out-of-Bounds Write Vulnerability Exploited Attacks appeared first on Cyber Security News.
Ваш банк, служба доставки и Google — всё подделка. Корпорация подала иск против 25 человек, которые автоматизировали хищение средств на Android и iOS
OpenAI Sora 2 Vulnerability Exposes System Prompts via Audio Transcripts
A vulnerability in OpenAI’s advanced video generation model, Sora 2, that enables the extraction of its hidden system prompt through audio transcripts, raising concerns about the security of multimodal AI systems. This vulnerability, detailed in a blog post by AI security firm Mindgard, demonstrates how creative prompting across text, images, video, and audio can bypass […]
The post OpenAI Sora 2 Vulnerability Exposes System Prompts via Audio Transcripts appeared first on Cyber Security News.
HelloGookie
You must login to view this content
王小川、任永亮等都在!听「最有料的人」聊 AI !
CVE-2023-26955 | onekeyadmin 1.3.9 Admin Group cross site scripting (EUVD-2023-30746)
CVE-2023-26956 | onekeyadmin 1.3.9 /admin1/curd/code path traversal (EUVD-2023-30747)
CVE-2023-26957 | onekeyadmin 1.3.9 plugins denial of service (EUVD-2023-30748)
CVE-2023-26954 | onekeyadmin 1.3.9 User Group cross site scripting (Issue 11 / EUVD-2023-30745)
CVE-2023-26953 | onekeyadmin 1.3.9 Add Administrator cross site scripting (EUVD-2023-30744)
New ClickFix Attack Targeting Windows and macOS Users to Deploy Infostealer Malware
Security researchers have uncovered a sophisticated malware campaign that leverages the ClickFix social engineering technique to distribute information-stealing malware across Windows and macOS platforms. The campaign demonstrates how threat actors are exploiting legitimate search queries for cracked software to deliver devastating payloads that compromise user credentials and sensitive data.paste.txt The infection chain begins when users […]
The post New ClickFix Attack Targeting Windows and macOS Users to Deploy Infostealer Malware appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
漏洞通告 | TongWeb应用服务器 ejbserver 远程代码执行漏洞
CVE-2023-26950 | onekeyadmin 1.3.9 Adding Categories Title cross site scripting (EUVD-2023-30741)
CVE-2023-26952 | onekeyadmin 1.3.9 Add Menu cross site scripting (EUVD-2023-30743)
CVE-2023-26951 | onekeyadmin 1.3.9 Member List cross site scripting (EUVD-2023-30742)
Microsoft SQL Server Vulnerability Let Attackers Escalate Privileges
Microsoft has released security updates to fix a serious vulnerability in SQL Server that allows attackers to gain higher system privileges. The flaw, tracked as CVE-2025-59499, was disclosed on November 11, 2025, and affects multiple versions including SQL Server 2016, 2017, 2019, and 2022. This vulnerability stems from improper handling of special characters in SQL […]
The post Microsoft SQL Server Vulnerability Let Attackers Escalate Privileges appeared first on Cyber Security News.
Nokod Security launches Adaptive Agent Security to protect AI agents across the entire ADLC
Nokod Security announced the launch of Adaptive Agent Security, a solution that delivers real-time visibility, governance, and protection from threats across the Agent Development Lifecycle (ADLC). Citizen developers and business users are building and deploying AI agents that connect to live systems, data and APIs, often beyond the reach of security controls. Nokod’s new solution provides adaptive, continuous protection that keeps every agent’s behavior in check, ensuring innovation can scale safely and securely. Coverage for … More →
The post Nokod Security launches Adaptive Agent Security to protect AI agents across the entire ADLC appeared first on Help Net Security.