Aggregator
CVE-2025-2735 | PHPGurukul Old Age Home Management System 1.0 /admin/add-services.php sertitle sql injection
CVE-2025-2734 | PHPGurukul Old Age Home Management System 1.0 /admin/aboutus.php pagetitle sql injection
Submit #524733: Phpgurukul Old Age Home Management System V1.0 SQL Injection [Accepted]
Submit #523400: Phpgurukul old-Age-Home-Management-System v1.0 SQL Injection [Accepted]
Submit #522931: PHPGurukul Old Age Home Management System V1.0 SQL Injection [Accepted]
Submit #522898: PHPGurukul Old Age Home Management System V1.0 SQL Injection [Accepted]
Submit #522881: Phpgurukul e-Diary Management System 1.0 SQL injection [Accepted]
Submit #522266: PHPGurukul Phpgurukul Old Age Home Management System V1.0 SQL Injection [Accepted]
Submit #522265: PHPGurukul Phpgurukul Old Age Home Management System V1.0 SQL Injection [Accepted]
DeepSeek: A New Player in the Global AI Race
Downdetector: более 2000 жалоб на сбой в приложении Сбера
Hackers Exploit Gamma AI to Create Sophisticated Microsoft Themed Phishing Redirectors
Cybercriminals are leveraging Gamma AI, a platform for creating presentations, websites, and documents, to build sophisticated and difficult-to-detect phishing page redirectors. These malicious actors are exploiting Gamma’s advanced capabilities to host phishing redirect pages directly on the legitimate domain, gamma.app, raising concerns about the misuse of AI-powered tools in cyberattacks. The phishing scheme begins with […]
The post Hackers Exploit Gamma AI to Create Sophisticated Microsoft Themed Phishing Redirectors appeared first on Cyber Security News.
HrBeyondXSS开发记录(1)——前端框架payload
CVE-2024-8774 | Simple SA SIMPLE.ERP up to 6.30 storing passwords in a recoverable format
CVE-2025-1742 | pihome-shc PiHome 2.0 /home.php page_name cross site scripting
CVE-2024-8773 | Simple SA SIMPLE.ERP up to 6.30 MS SQL Protocol downgrade
Operation Red Card: Authorities Arrest 300+ Linked to Cyber Attacks
An INTERPOL-led operation, dubbed “Operation Red Card,” has resulted in the arrest of over 306 individuals suspected of involvement in various cyber crimes across seven African countries. This operation, conducted from November 2024 to February 2025, targeted mobile banking, investment, and messaging app scams, among others. The collaborative effort involved law enforcement agencies from Benin, […]
The post Operation Red Card: Authorities Arrest 300+ Linked to Cyber Attacks appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Critical Next.js auth bypass vulnerability opens web apps to compromise (CVE-2025-29927)
A critical vulnerability (CVE-2025-29927) in the open source Next.js framework can be exploited by attackers to bypass authorization checks and gain unauthorized access to web pages they should no have access to (e.g., the web app’s admin panel). Vercel – the Cloud platform-as-a-Service company that develops the popular framework – has released security updates fixing it, and has advised users to upgrade as soon as possible. What is Next.js and how does CVE-2025-29927 manifest? Next.js … More →
The post Critical Next.js auth bypass vulnerability opens web apps to compromise (CVE-2025-29927) appeared first on Help Net Security.