Aggregator
Нейросети вышли на тропу войны с банками. ЕЦБ рассылает панические письма и требует планов спасения
CVE-2026-1832 | ThriveDesk Plugin up to 2.1.7 on WordPress Cache Management thrivedesk_clear_cache improper authorization (EUVD-2026-43146)
CVE-2026-14262 | nicu_m Simple JWT Login Plugin up to 3.6.6 on WordPress auth payload injection (EUVD-2026-43145)
CVE-2026-13116 | wpovernight PDF Invoices & Packing Slips Plugin up to 5.14.0 on WordPress Document Shortcode class-document-shortcode.php generate_document_shortcode key resource injection (EUVD-2026-43138)
CVE-2026-15335 | masaakitanaka Booking Package Plugin up to 1.7.20 on WordPress REST API Endpoint request email sql injection (EUVD-2026-43143)
CVE-2026-13250 | solacewp Starter Template feature up to 1.5.3 on WordPress Authorization /wp-admin/profile.php wp_ajax_nopriv_ nonce authorization (EUVD-2026-43141)
Forg365 Phishing Platform Using AI to Attack Microsoft 365 Accounts
Forg365 is a phishing-as-a-service platform that targets Microsoft accounts, combining AI-powered phishing, session theft, and post-compromise mailbox access in a single operator panel The platform is reportedly distributed through Telegram, where criminals can access a 30-day trial, pay about per month, or choose an annual plan. This subscription model shows how phishing operations are becoming […]
The post Forg365 Phishing Platform Using AI to Attack Microsoft 365 Accounts appeared first on Cyber Security News.
Your pentest report has blind spots. I adopted LLM council concept to find them.
Взлом всех известных ОС, кейлоггеры и обход паролей Windows. Что умеет шпионская платформа слежки за дипломатами России
一架飞机,三层危机!特朗普土耳其换机事件的深层逻辑
【情报分析】特朗普2026年7月10日在Truth Social的震惊发帖内容
一架飞机,三层危机!特朗普土耳其换机事件的深层逻辑
【情报分析】特朗普2026年7月10日在Truth Social的震惊发帖内容
宝马上半年销量受中国市场疲软拖累
Ваш сайт уже могли угнать. CISA подтвердила реальные атаки на пользователей JoomShaper и Langflow
在上海这场顶级赛车比赛,我看到《飞驰人生 3》的 AI 辅助系统走进现实
在上海这场顶级赛车比赛,我看到《飞驰人生 3》的 AI 辅助系统走进现实
CISA Details “Lessons from a Cyber Incident” After AWS GovCloud Credentials Leak
CISA has published a candid after-action account revealing that a contractor accidentally exposed the agency’s own AWS GovCloud credentials and Infrastructure-as-Code repositories in a personal, public GitHub account, triggering an internal incident response and a rare public “lessons learned” disclosure from the federal cybersecurity agency itself. On Friday, May 15, CISA’s incident response began after […]
The post CISA Details “Lessons from a Cyber Incident” After AWS GovCloud Credentials Leak appeared first on Cyber Security News.