Aggregator
【安全圈】BreachForums论坛 重新上线无需暗网访问
JoySafety安全审核大模型重磅更新!提示词注入、多语种、多轮对话检测能力全面加码
UK Fraud Cases Surge 17% Annually
Chrome 0-Day Vulnerability Actively Exploited in Attacks by Notorious Hacker Group
The notorious Mem3nt0 mori hacker group has been actively exploiting a zero-day vulnerability in Google Chrome, compromising high-profile targets across Russia and Belarus. Dubbed CVE-2025-2783, this flaw allowed attackers to bypass Chrome’s robust sandbox protections with minimal user interaction, leading to the deployment of sophisticated spyware. Discovered by Kaspersky researchers in March 2025, Google swiftly […]
The post Chrome 0-Day Vulnerability Actively Exploited in Attacks by Notorious Hacker Group appeared first on Cyber Security News.
天文学家在银河系外冰层发现复杂有机分子
Помните Hacking Team? Они начали с нуля — и снова попались Касперскому в атаках на Россию
抖音云游戏调度优化实践
AIO Sandbox:为 AI Agent 打造的一体化、可定制的沙箱环境
AI 聊天机器人太过于奉承人类
OpenWrt 修复 DSL 驱动中的 RCE 和内核内存泄露漏洞
黑客正在大规模利用受老旧漏洞影响的WordPress 插件
Linux variant of Qilin Ransomware targets Windows via remote management tools and BYOVD
27th October – Threat Intelligence Report
For the latest discoveries in cyber research for the week of 27th October, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES Toys “R” Us Canada has suffered a data breach that resulted in stolen customer records being leaked on the dark web. The compromised data affects an undisclosed number of individuals and includes […]
The post 27th October – Threat Intelligence Report appeared first on Check Point Research.
CVE-2025-12247 | Hasleo Backup Suite up to 5.2 HasleoImageMountService/HasleoBackupSuiteService unquoted search path
CVE-2025-12248 | CLTPHP 3.0 /home/search.html keyword sql injection
CVE-2025-12249 | Axosoft Scrum and Bug Tracking 22.1.1.11545 Edit Ticket Page Title csv injection
CVE-2025-12250 | OpenWGA 7.11.12 Build 737 TMLScript API WGA.File path traversal
CVE-2025-12251 | OpenWGA 7.11.12 Build 737 Admin UI cross site scripting
Predatory Sparrow Strikes: Coordinated Cyberattacks Seek to Cripple Critical Infrastructure
A sophisticated cyber-sabotage group known as Predatory Sparrow has emerged as one of the most destructive threat actors targeting Iranian critical infrastructure over the past several years. Unlike traditional cybercriminal operations focused on financial gain, this group executes highly disruptive campaigns designed to cripple essential services, destroy sensitive data, and send provocative political messages. Security […]
The post Predatory Sparrow Strikes: Coordinated Cyberattacks Seek to Cripple Critical Infrastructure appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.