Aggregator
CVE-2025-6533 | xxyopen/201206030 novel-plus up to 5.1.3 CATCHA LoginController.java ajaxLogin authentication replay (EUVD-2025-18961)
CVE-2025-5446 | Linksys RE6500/RE6250/RE6300/RE6350/RE7000/RE9000 RP_checkCredentialsByBBS pwd os command injection
CVE-2025-48827 | vBulletin up to 5.7.5/6.0.3 api.php?method=protectedMethod improper protection of alternate path
CVE-2025-24814 | Apache Solr up to 9.7 FileSystemConfigSetService improper authorization
CVE-2025-6608 | SourceCodester Best Salon Management System 1.0 /panel/edit-services.php editid sql injection (EUVD-2025-19100)
CVE-2025-6611 | code-projects Inventory Management System 1.0 createBrand.php brandStatus sql injection (EUVD-2025-19110)
Невидимый яд. Невидимый лазер. Один из них решит, останетесь ли вы в живых
PACER electronic filing system under attack by hackers, federal judge warns lawmakers
New BRAODO Stealer Campaign Abuses GitHub To Host Payloads And Evade Detection
Security researchers at ANY.RUN have uncovered a new malware campaign delivering the BRAODO Stealer, which relies on public GitHub repositories to host and stage its payloads. This campaign employs multiple evasion techniques and scripting layers to complicate detection and analysis, making it harder for traditional security tools to catch. What We Know About BRAODO Stealer […]
The post New BRAODO Stealer Campaign Abuses GitHub To Host Payloads And Evade Detection appeared first on Cyber Security News.
CVE-2025-6612 | code-projects Inventory Management System 1.0 removeCategories.php categoriesId sql injection (EUVD-2025-19109)
CVE-2025-49845 | Discourse up to 3.4.5/3.5.0.beta7-dev Whisper information disclosure (EUVD-2025-19108)
CVE-2024-57708 | OneTrust SDK 6.33.0 Object.setPrototypeOf/__proto__/Object.assign denial of service (EUVD-2024-54703)
CVE-2025-25905 | CADClick up to 1.13.0 tree cross site scripting (EUVD-2025-19107)
CVE-2025-44206 | Hexagon HxGN OnCall Dispatch Advantage Web Broadcast cross site scripting (EUVD-2025-19106)
CVE-2025-6614 | D-Link DIR-619L 2.06B01 formSetWANType_Wizard5 curTime stack-based overflow (EUVD-2025-19105)
CVE-2025-6615 | D-Link DIR-619L 2.06B01 formAutoDetecWAN_wizard4 curTime stack-based overflow (EUVD-2025-19104)
Beyond Backup: How Coveware is Revolutionizing Veeam’s Ransomware Defense
In March 2024, Veeam, a leader in data protection, made a strategic move that significantly improved its stance on ransomware: the acquisition of Coveware. This wasn’t just another corporate acquisition. It was a deep integration of specialized expertise and cutting-edge technology, transforming Veeam from a backup and recovery solution moving into the security space into..
The post Beyond Backup: How Coveware is Revolutionizing Veeam’s Ransomware Defense appeared first on Security Boulevard.
CVE-2025-52889 | lxc incus 6.12/6.13 allocation of resources (EUVD-2025-19115)
Five Hackers Behind Notorious Data Selling Platform BreachForums Arrested
French authorities have dismantled a major cybercrime operation, arresting five hackers who operated BreachForum, one of the world’s largest marketplaces for stolen data, in coordinated raids across France. French police initially suspected the cybercriminals operating BreachForum were Russian or hiding in Russian-speaking territories. However, investigations revealed that four French hackers in their twenties were arrested […]
The post Five Hackers Behind Notorious Data Selling Platform BreachForums Arrested appeared first on Cyber Security News.