Aggregator
Машина стала человеком. Почти. И это страшнее, чем кажется
CVE-2002-0288 | Bbshareware.com Phusion Webserver 1.0 path traversal (EDB-21291 / BID-4117)
CVE-2005-1486 | Fishnet FishCart 3.1 upstracking.php nlst cross site scripting (EDB-25601 / Nessus ID 18191)
持有80,000个比特币的超级鲸鱼苏醒 当初以2美元购买 现在可能准备抛售
CVE-2006-1504 | Arab Portal 2.0 online.php Title cross site scripting (EDB-27501 / XFDB-25515)
ICEBlock: оружие без пороха, которое выводит из себя Белый дом
Harden-Runner: EDR for CI/CD Stops Supply Chain Attacks Cold
Corporate laptops and production servers typically have robust security monitoring in place to reduce risk and meet compliance requirements. However, CI/CD runners, which handle sensitive information like secrets for cloud environments and create production...
The post Harden-Runner: EDR for CI/CD Stops Supply Chain Attacks Cold appeared first on Penetration Testing Tools.
CVE-2012-3585 | IrfanView IrfanView PlugIns up to 4.32 Formats PlugIn jpeg_ls.dll memory corruption (EDB-19483 / Nessus ID 60037)
Chrome增加代码检测电脑是否支持升级Win11 应该是为Win10结束支持做准备
CVE-2019-11358 | Oracle Service Bus 11.1.1.9.0/12.1.3.0.0/12.2.1.3.0 jQuery cross site scripting (EDB-52141 / Nessus ID 208606)
CVE-2002-2192 | Perception LiteServe 2.0.1 cross site scripting (EDB-21999 / ID 10891)
Fedora Delays 32-bit Support End: Community Outcry Saves Gaming & Legacy Apps
In recent weeks, the Fedora community has found itself at the heart of intense debate, sparked by two proposed changes that could significantly reshape the future of the distribution. Following the release of Fedora...
The post Fedora Delays 32-bit Support End: Community Outcry Saves Gaming & Legacy Apps appeared first on Penetration Testing Tools.
谨防诈骗!诈骗团伙冒充京东免费赠送稳定币 实则为拉人头式的诈骗活动
AI Chatbots Are Leading Users to Phishing Sites: New Report Reveals Dangerous “AI Search Poisoning” Threat
Despite the rapid advancements in chatbot technology, modern AI models still frequently err when asked to identify the official websites of well-known companies. According to researchers at Netcraft, these inaccuracies present fresh opportunities for...
The post AI Chatbots Are Leading Users to Phishing Sites: New Report Reveals Dangerous “AI Search Poisoning” Threat appeared first on Penetration Testing Tools.
CISA Warns: TeleMessage TM SGNL Actively Exploited for Data Leaks, Patch by July 22
The Cybersecurity and Infrastructure Security Agency (CISA) has issued a stark warning regarding serious threats posed by the application TeleMessage TM SGNL, which had been promoted as a secure alternative to the Signal messenger....
The post CISA Warns: TeleMessage TM SGNL Actively Exploited for Data Leaks, Patch by July 22 appeared first on Penetration Testing Tools.
Global E-commerce Fraud Ring Uncovered: Fake Apple, Nordstrom, Brooks Brothers Sites Steal Credit Cards
Experts have uncovered a large-scale fraudulent campaign involving thousands of counterfeit online stores masquerading as renowned global brands, all designed to steal customers’ payment information. The scheme has been active for several months. Cybercriminals...
The post Global E-commerce Fraud Ring Uncovered: Fake Apple, Nordstrom, Brooks Brothers Sites Steal Credit Cards appeared first on Penetration Testing Tools.
CVE-2010-1718 | Lispeltuut Com Archeryscores 1.0.6 Core archeryscores.php controller path traversal (EDB-12282 / Nessus ID 43636)
甲骨文技术人才发展部?Oracle University 免费送两门认证考试:Race to Certification 2025
Urgent Cisco ISE/ISE-PIC Alert: Critical RCE Flaw (CVSS 10.0) Allow Unauthenticated Root Access
Cisco has remedied a critical vulnerability in its Unified Communications Manager (Unified CM), the enterprise telephony management system, which could have granted attackers complete control over affected devices due to a hardcoded superuser account...
The post Urgent Cisco ISE/ISE-PIC Alert: Critical RCE Flaw (CVSS 10.0) Allow Unauthenticated Root Access appeared first on Penetration Testing Tools.