Aggregator
APT73
4 months 1 week ago
cohenido
2024:浏览器从 A 到 Z
4 months 1 week ago
和大部分人使用浏览器书签或者导航类网站索引自己的常用网站不同,我强烈依赖基于浏览器地址栏自动补全来访问我常用的网站。那么,将 A-Z 逐一输入到 Google Chrome 的地址栏里,我的 Google Chrome 都会自动补全出哪些域名呢?
Sukka
张种恩的技术小栈
4 months 1 week ago
2025 ©张种恩的技术小栈 - 粤ICP备19072286号-1
C语言学习小记(15)-文件操作-张种恩的技术小栈
4 months 1 week ago
在C语言中,文件被视为一个字节序列的抽象,可以存储文本、二进制数据或混合数据。文件操作是通过标准库提供的文件处理函数来完成的,这些函数主要集中在stdio.h
C语言学习小记(16)-Makefile-张种恩的技术小栈
4 months 1 week ago
Makefile 是一种用于描述项目编译规则、依赖关系和构建过程的文件,广泛应用于C/C++项目的自动化构建。它基于make工具,通过解析Makefile中的
DeepSeek ‒ только начало: Qwen 2.5 Max добивает монополию США на передовой ИИ
4 months 1 week ago
Компания Alibaba не отстает от конкурентов и союзников.
Krypt3ia Daily Cyber Threat Intelligence (CTI) Digest
4 months 1 week ago
CVE-2024-12236 | Google Vertex Gemini API VPC Service fileUri exceptional condition (gcp-2024-063)
4 months 1 week ago
A vulnerability was found in Google Vertex Gemini API and classified as problematic. This issue affects some unknown processing of the component VPC Service. The manipulation of the argument fileUri leads to handling of exceptional conditions.
The identification of this vulnerability is CVE-2024-12236. The attack needs to be approached locally. There is no exploit available.
vuldb.com
CVE-2025-0846 | 1000 Projects Employee Task Management System 1.0 /admin/AdminLogin.php email sql injection
4 months 1 week ago
A vulnerability was found in 1000 Projects Employee Task Management System 1.0. It has been classified as critical. This affects an unknown part of the file /admin/AdminLogin.php. The manipulation of the argument email leads to sql injection.
This vulnerability is uniquely identified as CVE-2025-0846. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-0847 | 1000 Projects Employee Task Management System 1.0 Login /index.php email sql injection
4 months 1 week ago
A vulnerability was found in 1000 Projects Employee Task Management System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /index.php of the component Login. The manipulation of the argument email leads to sql injection.
This vulnerability was named CVE-2025-0847. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-0848 | Tenda A18 up to 15.13.07.09 HTTP POST Request /goform/SetCmdlineRun wpapsk_crypto5g stack-based overflow
4 months 1 week ago
A vulnerability was found in Tenda A18 up to 15.13.07.09. It has been rated as critical. This issue affects the function SetCmdlineRun of the file /goform/SetCmdlineRun of the component HTTP POST Request Handler. The manipulation of the argument wpapsk_crypto5g leads to stack-based buffer overflow.
The identification of this vulnerability is CVE-2025-0848. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-0849 | CampCodes School Management Software 1.0 Staff /edit-staff/ improper authorization
4 months 1 week ago
A vulnerability classified as critical has been found in CampCodes School Management Software 1.0. Affected is an unknown function of the file /edit-staff/ of the component Staff Handler. The manipulation leads to improper authorization.
This vulnerability is traded as CVE-2025-0849. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
DeepSeek Exposed Database Leaks Sensitive Data
4 months 1 week ago
Researchers at Wiz uncovered a publicly accessible database belonging to Chinese GenAI provider DeepSeek that leaked sensitive data, including chat history
Критические 0day-бреши в Voyager: угроза цепных атак и внедрения скриптов
4 months 1 week ago
Невинный клик по ссылке оборачивает систему против её владельца.
使用 velero 备份迁移 k8s 集群内的资源-张种恩的技术小栈
4 months 1 week ago
Velero 是由 Vmware 捐献给 CNCF 的,云原生的,对 Kubernetes 进行备份、还原和迁移的工具,它使用 Golang 开发、且开源。
写了一个基于 goframe + vue3 后台管理系统模板-张种恩的技术小栈
4 months 1 week ago
功能本项目主要用来作为新项目启动时的模板,如果你想要使用 Golang 来新开发一个后台管理系统,那么选我就对了。已实现后台管理系统最基础的用户管理、
中亚新位置:美国到底是“机遇”还是“陷阱”?
4 months 1 week ago
揭秘土耳其“红皮书”:真相还是阴谋?
4 months 1 week ago
Lazarus Group Drop Malicious NPM Packages in Developers Systems Remotely
4 months 1 week ago
In a recent discovery by Socket researchers, a malicious npm package named postcss-optimizer has been identified as an operation spearheaded by the North Korean state-sponsored group, Lazarus Advanced Persistent Threat (APT). Tied to past campaigns and employing code-level similarities, the package is linked to the Contagious Interview subgroup of Lazarus, infamously targeting software developers through […]
The post Lazarus Group Drop Malicious NPM Packages in Developers Systems Remotely appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Aman Mishra