Aggregator
CVE-2025-64293 | Golemiq 0 Day Analytics Plugin up to 4.0.0 on WordPress sql injection
CVE-2025-63929 | airpig2011 IEC104 up to 2019-07-08 IEC10X_PrioEnQueue null pointer dereference
CVE-2025-63811 | dvsekhvalnov jose2go up to 1.7.0 JSON denial of service (Issue 33)
CVE-2025-11797 | Autodesk 3ds Max up to 2026.2 DWG File Parser use after free (EUVD-2025-131922)
CVE-2025-11795 | Autodesk 3ds Max up to 2026.2 JPG File Parser out-of-bounds write (EUVD-2025-131923)
CVE-2025-63927 | airpig2011 IEC104 up to 2019-07-08 Multi-Thread Iec10x_Scheduled heap-based overflow
CVE-2025-57812 | OpenPrinting libcupsfilters up to 2.1.1 cfFilterImageToRaster out-of-bounds
CVE-2025-25236 | Omnissa Workspace ONE UEM observable response discrepancy (OMSA-2025-0005)
CVE-2025-61667 | DataDog Agent up to 7.70.x __pycache__ default permission
Microsoft Edge security advisory (AV25-745)
CVE-2025-13042 | Google Chrome up to 142.0.7444.134 V8 heap-based overflow (ID 457351 / EUVD-2025-131918)
Russia imposes 24-hour mobile internet blackout for travelers returning home
Survey Surfaces Sharp Rise in Cybersecurity Incidents Involving AI
A survey of 500 security practitioners and decision-makers across the United States and Europe published today finds cyberattacks aimed at artificial intelligence (AI) applications are rising, with prompt injections involving large language models (LLMs) at the top of the list (76%), followed by vulnerable LLM code (66%) and LLM jailbreaking (65%). Conducted by Traceable by..
The post Survey Surfaces Sharp Rise in Cybersecurity Incidents Involving AI appeared first on Security Boulevard.
Google files lawsuit against Lighthouse ‘phishing for dummies’ text scammers
The suspected Chinese schemers behind it enable those constant fake E-Z Pass and U.S. Postal Service smishing messages.
The post Google files lawsuit against Lighthouse ‘phishing for dummies’ text scammers appeared first on CyberScoop.
Intel security advisory (AV25-744)
Safepay
You must login to view this content
Massive Phishing Attack Impersonate as Travel Brands Attacking Users with 4,300 Malicious Domains
A large phishing campaign has been targeting travelers worldwide, using more than 4,300 fake domains to steal payment card information. The operation focuses on people planning vacations or about to check into hotels by sending fake booking confirmation emails that appear to come from trusted travel companies. The attackers have created a network of websites […]
The post Massive Phishing Attack Impersonate as Travel Brands Attacking Users with 4,300 Malicious Domains appeared first on Cyber Security News.