Aggregator
CVE-2025-32079 | Wikimedia GrowthExperiments up to 1.43 on Mediawiki denial of service (EUVD-2025-10817)
CVE-2025-32067 | Wikimedia Growth Experiments Extension up to 1.43 on Mediawiki cross site scripting (EUVD-2025-10825)
CVE-2025-32071 | Wikimedia Wikidata Extension up to 1.43 on Mediawiki getDimensionsString cross site scripting (EUVD-2025-10824)
CVE-2025-32073 | Wikimedia HTML Tags up to 1.43 on Mediawiki cross site scripting (EUVD-2025-10819)
CVE-2025-32074 | Wikimedia Confirm Account Extension up to 1.43 on Mediawiki cross site scripting (EUVD-2025-10813)
CVE-2025-24995 | Microsoft Windows up to Server 2025 Kernel Streaming WOW Thunk Service Driver heap-based overflow
CVE-2025-24996 | Microsoft Windows up to Server 2025 NTLM Hash file inclusion
从原理到实战:中科固源带你吃透 ASAN 工作机制,影子内存 + 投毒技术捕捉漏洞全流程
Threat Intelligence Executive Report – Volume 2025, Number 3
Плохо с математикой? Спокойно — вас просто забыли воткнуть в розетку
CVE-2025-6926 | CentralAuth Extension up to 1.39.12/1.42.6/1.43.1 on Mediawiki improper authentication (EUVD-2025-19884)
Cybercriminals Target Brazil: 248,725 Exposed in CIEE One Data Breach
CVE-2025-6944 | Uncode Core Plugin up to 2.9.4.2 on WordPress Shortcode uncode_hl_text cross site scripting (EUVD-2025-19930)
CVE-2025-5567 | WP Shortcodes Plugin Plugin up to 7.4.0 on WordPress data-url cross site scripting (EUVD-2025-19912)
CVE-2006-0311 | Mike Helton aoblogger 2.3 Login login.php Username sql injection (EDB-27105 / XFDB-24142)
Откуда взялись золото, барий и лантан? Физики разбирают Вселенную по молекулам, чтобы ответить
Threat Actors Widely Abuse .COM TLD to Host Credential Phishing Website
The .COM top-level domain continues to dominate the cybercriminal landscape as the primary vehicle for hosting credential phishing websites, maintaining its position as the most extensively abused TLD by threat actors worldwide. Recent intelligence indicates that malicious actors leverage the trusted reputation and widespread recognition of .COM domains to deceive victims into surrendering sensitive login […]
The post Threat Actors Widely Abuse .COM TLD to Host Credential Phishing Website appeared first on Cyber Security News.
Beware of Fake Chinese E-Commerce Sites Imitating Apple, Wrangler, and Exploiting Payment Services like MasterCard and PayPal
A sophisticated phishing campaign, initially spotlighted by Mexican journalist Ignacio Gómez Villaseñor, has evolved into a sprawling global threat, as revealed by Silent Push Threat Analysts. What began as a targeted attack on Spanish-language audiences during Mexico’s “Hot Sale 2025” an annual sales event akin to Black Friday has expanded into a massive fake marketplace […]
The post Beware of Fake Chinese E-Commerce Sites Imitating Apple, Wrangler, and Exploiting Payment Services like MasterCard and PayPal appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.