Posts of last few hours
原域名已变更且将在2024年彻底废弃,请访问 https://govuln.com/news/ 查看新的RSS订阅
https://govuln.com/news/url/x8dB
France's data protection authority (CNIL) has fined Hôpital privé de la Loire €500,000 ($580,000) for failing to adequately protect patients' and their relatives' data. [...]
https://www.bleepingcomputer.com/news/security/french-hospital-fined-500-000-after-breach-exposes-data-of-727-000/
Threat actors behind the "Phantom Deal" campaign are studying companies in extreme detail, aiming to dupe midlevel employees into initiating large financial transfers.
https://www.darkreading.com/cyberattacks-data-breaches/large-enterprises-fake-merger-acquisition-scams
Serbian activists were targeted with zero-click Pegasus and NoviSpy spyware, exposing a major surveillance campaign ahead of elections. A member of Serbia’s student protest movement had their iPhone infected with NSO Group‘s Pegasus spyware without ever clicking a link or opening a file. The Citizen Lab confirmed the infection in collaboration with the SHARE Foundation, […]
https://securityaffairs.com/198377/intelligence/pegasus-and-novispy-used-against-serbian-protesters.html
Attackers compromised Coder's Cloudflare infrastructure and added unauthorized registry servers that delivered malicious Terraform modules containing credential-stealing code. [...]
https://www.bleepingcomputer.com/news/security/coders-registry-infrastructure-compromised-to-push-malicious-modules/
Cisco patched a critical Nexus 9000 vulnerability, CVE-2026-20212, allowing unauthenticated remote root code execution. Cisco has released patches for a critical flaw, tracked as tracked as CVE-2026-20212 (CVSS score of 9.8) in 10 Silicon One-based Nexus 9000 switches. The vulnerability could let an unauthenticated remote attacker execute code with root privileges. Cisco’s Technical Assistance Center […]
https://securityaffairs.com/198366/security/cisco-fixed-critical-rce-in-nexus-9000-series-switches.html
https://cyber.gc.ca/en/alerts-advisories/suse-linux-security-advisory-av26-882
In this video conversation, Dark Reading editors discuss some of the news they didn't get a chance to cover, from the latest antics of ShinyHunters to new research about the prevalence (or lack thereof) of AI-generated malware.
https://www.darkreading.com/cybersecurity-operations/what-we-missed-did-shinyhunters-breach-reliaquest
https://cyber.gc.ca/en/alerts-advisories/control-systems-siemens-security-advisory-av26-881
https://cyber.gc.ca/en/alerts-advisories/n8n-security-advisory-av26-880
According to Bitkom’s latest “Wirtschaftsschutz 2026” study, cyberattacks on companies have reached a new record level. Ninety-six percent of the surveyed companies were affected by data theft, industrial espionage, or sabotage over the past year, or suspect that they were. The resulting damage to the German economy is estimated to range between 211 and 270.8 […]
The post Bitkom Economic Security Study 2026: Why Cyberattacks Have Become an Existential Risk for Companies appeared first on Link11.
https://www.link11.com/en/blog/threat-landscape/bitkom-economic-security-study-2026-why-cyberattacks-have-become-an-existential-risk-for-companies/
Hewlett Packard Enterprise (HPE) has patched a critical vulnerability in the ArubaOS-CX network operating system that could lead to remote code execution. [...]
https://www.bleepingcomputer.com/news/security/hpe-patches-critical-arubaos-cx-remote-code-execution-flaw/
The worst part is how normal these attacks look. A call from IT. A shared file. A trusted app. A simple request to click “Allow.” Why break in when someone might open the door?
That idea runs through this edition. Attackers use real tools, fake login pages, old account links, and software guides that point to unsafe downloads. One wrong letter in a web address can be enough.
There is also
https://thehackernews.com/2026/09/threatsday-ceo-phishing-kits-5k-dropbox.html
Currently trending CVE - Hype Score: 9 - Potential security vulnerabilities have been identified in HP Easy Start for macOS, versions prior to 2.16.7.260722. These potential vulnerabilities may lead to escalation of privilege. HP is releasing updates to mitigate these potential vulnerabilities.
https://cvemon.intruder.io/cves/CVE-2026-12554
Currently trending CVE - Hype Score: 3 - Authentication bypass by capture-replay in Microsoft Exchange Server allows an authorized attacker to elevate privileges over a network.
https://cvemon.intruder.io/cves/CVE-2026-62911
Currently trending CVE - Hype Score: 23 - Post-authentication Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability has been identified in the SMA1000 Appliance Management Console (AMC) which in specific conditions could potentially enable a remote authenticated ...
https://cvemon.intruder.io/cves/CVE-2026-83549
Currently trending CVE - Hype Score: 23 - A Pre-authentication SSRF vulnerability exists in the SMA1000 Appliance Work Place interface due to an unintended alternate access path. A remote unauthenticated attacker could potentially exploit this vulnerability to gain unauthorized access to sensitive functionality and ...
https://cvemon.intruder.io/cves/CVE-2026-83548
Currently trending CVE - Hype Score: 26 - This vulnerability exists in the ERP system due to improper authentication and authorization controls in the API endpoint. An unauthenticated remote attacker could exploit this vulnerability by manipulating parameter which could lead to exposure of sensitive information ...
https://cvemon.intruder.io/cves/CVE-2026-84148
Currently trending CVE - Hype Score: 26 - This vulnerability exists in the ERP system due to exposure of repository information through a publicly accessible .git directory. An unauthenticated remote attacker could exploit this vulnerability by accessing the exposed .git directory and retrieving repository metadata and ...
https://cvemon.intruder.io/cves/CVE-2026-84149
Currently trending CVE - Hype Score: 1 - This vulnerability exists in the ERP system due to improper authentication controls and inadequate file type validation at the API endpoint. An unauthenticated remote attacker could exploit this vulnerability by uploading arbitrary files to a web accessible directory on the ...
https://cvemon.intruder.io/cves/CVE-2026-84147
Latest Blog Posts
- 1 week 4 days ago
- 2 months 1 week ago
- 2 months 1 week ago
- 2 months 1 week ago
- 2 months 1 week ago
- 7 months ago
- 1 year ago
- 1 year ago
- 1 year 1 month ago
- 1 year 5 months ago