Aggregator
社区速递 116 | 派友激辩电池优化、一周热评以及可爱的新玩意
Balancer DeFi Platform Hit by Major Exploit Resulting in $100M+ in Losses
The decentralised finance (DeFi) ecosystem was rocked by a significant exploit targeting Balancer, one of the leading DeFi platforms. The breach specifically impacted Balancer’s V2 Composable Stable Pools, resulting in losses that reportedly exceed $100 million. This major incident highlights ongoing security challenges within the DeFi sector and underscores the importance of robust auditing and […]
The post Balancer DeFi Platform Hit by Major Exploit Resulting in $100M+ in Losses appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
‘SleepyDuck’ Malware in Open VSX Lets Attackers Remotely Control Windows PCs
Security researchers have identified a dangerous remote access trojan called SleepyDuck lurking in the Open VSX IDE extension marketplace, targeting developers who use code editors like Cursor and Windsurf. The malicious extension masqueraded as a legitimate Solidity programming language helper, squatting on the name of an established extension to evade detection. The compromised extension juan-bianco.solidity-vlang […]
The post ‘SleepyDuck’ Malware in Open VSX Lets Attackers Remotely Control Windows PCs appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Oct Recap: New AWS Privileged Permissions and Services
Oct Recap: New AWS Privileged Permissions and Services
As October 2025 closes, Sonrai’s latest analysis of new AWS permissions reveals a continued trend: incremental privilege changes with outsized impact. This month’s additions span OpenSearch Ingestion, Aurora DSQL, QuickSight, Parallel Computing Service, ARC Region Switch, and RTB Fabric, touching critical areas of data analytics, compute orchestration, and real-time traffic systems. These updates introduce capabilities […]
The post Oct Recap: New AWS Privileged Permissions and Services appeared first on Security Boulevard.
Dohop Uses DataDome to Block Millions of Scrapers & Protect 75+ Airline Partners
Dohop Uses DataDome to Block Millions of Scrapers & Protect 75+ Airline Partners
Dohop cut bot traffic by 70% with DataDome, blocking millions of scrapers and protecting 75+ airline partners from API overload and downtime.
The post Dohop Uses DataDome to Block Millions of Scrapers & Protect 75+ Airline Partners appeared first on Security Boulevard.
External attack surface management (EASM) buyer's guide
$35 миллионов на флешке. Секретные эксплойты для взлома iOS и Android стали товаром. Продавец — инженер с "режимом Бога"
专访 | 第十届移动应用创新赛收官,聊聊我们眼中的赛场内外
Cloudflare R2存储管理工具
Weaponized Putty and Teams Ads Deliver Malware Allowing Hackers to Access Network
An ongoing malicious advertising campaign is weaponizing legitimate software downloads to deploy OysterLoader malware, previously identified as Broomstick and CleanUpLoader. This sophisticated initial access tool enables cybercriminals to establish footholds in corporate networks, ultimately serving as a delivery mechanism for the notorious Rhysida ransomware gang. The Rhysida ransomware operation has targeted enterprises since emerging from […]
The post Weaponized Putty and Teams Ads Deliver Malware Allowing Hackers to Access Network appeared first on Cyber Security News.
Google’s AI ‘Big Sleep’ Finds 5 New Vulnerabilities in Apple’s Safari WebKit
Google’s AI ‘Big Sleep’ Finds 5 New Vulnerabilities in Apple’s Safari WebKit
Crooks exploit RMM software to hijack trucking firms and steal cargo
Crooks exploit RMM software to hijack trucking firms and steal cargo
美国研究团队利用人工智能防御类似“震网”的网络攻击
关基威胁真实案例!英国供水行业近两年至少遭受了5起网攻事件
Rhysida
You must login to view this content