Aggregator
Anatomy of Tycoon 2FA Phishing: Tactics Targeting M365 and Gmail
The Tycoon 2FA phishing kit represents one of the most sophisticated threats targeting enterprise environments today. This Phishing-as-a-Service (PhaaS) platform, which emerged in August 2023, has become a formidable adversary against organizational security, employing advanced evasion techniques and adversary-in-the-middle (AiTM) strategies to bypass multi-factor authentication protections. According to the Any.run malware trends tracker, Tycoon 2FA […]
The post Anatomy of Tycoon 2FA Phishing: Tactics Targeting M365 and Gmail appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
【漏洞通告】JumpServer连接令牌验证不当漏洞(CVE-2025-62712)
When AI Learns to See the Unknown: Wrapping Up the OW‑VISCap Study
151% 的增长背后,它正在成为 AI 的「新入口」
这个不出声的 AI 吊坠,陪伴我「向内看」丨New Things
Un’indagine Crowdstrike dimostra che le aziende sottostimano le cyber minacce
大模型无法可靠区分信念和事实
官宣! ADConf 2025「智变·暗涌」全议程上线
调研显示:40%企业支付勒索软件攻击赎金仍无法恢复数据
官宣! ADConf 2025「智变·暗涌」全议程上线
调研显示:40%企业支付勒索软件攻击赎金仍无法恢复数据
南极一冰川在两个月内缩小一半
2025年终端模拟器排行榜|Unicode 篇
Oct Recap: New and Newly Deniable GCP Privileged Permissions
Oct Recap: New and Newly Deniable GCP Privileged Permissions
As October 2025 wraps up, Sonrai’s latest analysis of Google Cloud Platform permissions reveals both newly introduced privileged actions and those that have become newly enforceable through the V2 API, meaning organizations can now explicitly deny their use. This month’s updates span Discovery Engine, Cloud Integrations, and Backup and Disaster Recovery, reflecting how GCP continues […]
The post Oct Recap: New and Newly Deniable GCP Privileged Permissions appeared first on Security Boulevard.
Experiments and Evaluation: Benchmarking OW‑VISCap Across Open‑World Video Tasks
Hackers Actively Scanning Internet to Exploit XWiki Remote Code Execution Vulnerability
A critical remote code execution vulnerability affecting XWiki’s SolrSearch component has become the target of widespread exploitation attempts, prompting cybersecurity authorities to add it to their watchlist. The flaw allows attackers with minimal guest privileges to execute arbitrary commands on vulnerable systems, posing a significant security risk to organizations using this open-source enterprise wiki platform. […]
The post Hackers Actively Scanning Internet to Exploit XWiki Remote Code Execution Vulnerability appeared first on Cyber Security News.