Aggregator
Clothoff 试图支配深度伪造色情
Citrix Warns Authentication Failures Following The Update of NetScaler to Fix Auth Vulnerability
Citrix has issued an urgent advisory warning customers of widespread authentication failures following recent updates to NetScaler builds 14.1.47.46 and 13.1.59.19. The updates, released as part of the company’s ongoing secure-by-design initiative, have inadvertently caused significant disruption to enterprise authentication systems across multiple organizations worldwide. The authentication failures manifest as broken login pages and complete […]
The post Citrix Warns Authentication Failures Following The Update of NetScaler to Fix Auth Vulnerability appeared first on Cyber Security News.
CVE-2025-52969 | ClickHouse 25.7.1.557 Executable unprotected alternate channel (EUVD-2025-18907)
CVE-2025-52997 | filebrowser up to 2.34.0 excessive authentication (GHSA-cm2r-rg7r-p7gg)
CVE-2025-52995 | filebrowser up to 2.33.9 command injection (EUVD-2025-19580)
CVE-2025-49493 | Akamai CloudTest 58.30 xml external entity reference (EUVD-2025-19583)
CVE-2025-36593 | Dell OpenManage Network Integration up to 3.7 RADIUS Protocol authentication replay (dsa-2025-257 / EUVD-2025-19568)
CVE-2024-29850 | Veeam Backup & Replication 11.0.1.1261/11.0.1.1261 P20240304/12.0.0.1420 authentication replay
New Hpingbot Exploits Pastebin for Payload Delivery and Uses Hping3 for DDoS Attacks
NSFOCUS Fuying Lab’s Global Threat Hunting System has discovered a new botnet family called “hpingbot” that has been quickly expanding since June 2025, marking a significant shift in the cybersecurity scene. This cross-platform botnet, built from scratch using the Go programming language, targets both Windows and Linux/IoT environments and supports multiple processor architectures including amd64, […]
The post New Hpingbot Exploits Pastebin for Payload Delivery and Uses Hping3 for DDoS Attacks appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
深度解读美国政府的零日漏洞保留政策
CHAOS
You must login to view this content
Grafana releases critical security update for Image Renderer plugin
CVE-2025-26634 | Microsoft Windows up to Server 2025 Core Messaging heap-based overflow
CVE-2025-21222 | Microsoft Windows up to Server 2025 Telephony Service heap-based overflow
CVE-2025-53074 | Samsung rLottie 0.2 out-of-bounds (EUVD-2025-19537)
CVE-2025-53076 | Samsung rLottie 0.2 buffer over-read (EUVD-2025-19536)
Big Tech’s Mixed Response to U.S. Treasury Sanctions
Apache Tomcat and Camel Vulnerabilities Actively Exploited in The Wild
Critical vulnerabilities in Apache Tomcat and Apache Camel are being actively exploited by cybercriminals worldwide, with security researchers documenting over 125,000 attack attempts across more than 70 countries since their disclosure in March 2025. The three vulnerabilities—CVE-2025-24813 affecting Apache Tomcat and CVE-2025-27636 and CVE-2025-29891 impacting Apache Camel—enable remote code execution and pose significant risks to […]
The post Apache Tomcat and Camel Vulnerabilities Actively Exploited in The Wild appeared first on Cyber Security News.