Aggregator
CVE-2025-8800 | Open5GS up to 2.7.5 AMF src/mme/esm-handler.c esm_handle_pdn_connectivity_request denial of service (Issue 3980 / EUVD-2025-24080)
Huge Wave of Malicious Efimer Malicious Script Attack Users via WordPress Sites, Malicious Torrents, and Email
A sophisticated malware campaign dubbed “Efimer” has emerged as a significant threat to cryptocurrency users worldwide, employing a multi-vector approach that combines compromised WordPress websites, malicious torrents, and deceptive email campaigns. First detected in October 2024, this ClipBanker-type Trojan has evolved from a simple cryptocurrency stealer into a comprehensive malicious infrastructure capable of self-propagation and […]
The post Huge Wave of Malicious Efimer Malicious Script Attack Users via WordPress Sites, Malicious Torrents, and Email appeared first on Cyber Security News.
Submit #626113: N/A Open5GS <= v2.7.5 Denial of Service [Accepted]
CVE-2025-8799 | Open5GS up to 2.7.5 AMF src/amf/npcf-build.c denial of service (Issue 3979 / EUVD-2025-24081)
CVE-2025-8798 | oitcode samarium up to 0.9.6 Create Product Page /dashboard/product unrestricted upload (EUVD-2025-24078)
Submit #626112: Open5GS <=v2.7.5 Denail of Service [Accepted]
Submit #626077: Open-Source Samarium Business Management System 0.9.6 Stored XSS [Accepted]
CVE-2025-8797 | LitmusChaos Litmus up to 3.19.0 LocalStorage permission (EUVD-2025-24079)
CVE-2025-8796 | LitmusChaos Litmus up to 3.19.0 Delete Request /auth/delete_project/ projectID authorization (EUVD-2025-24076)
CVE-2025-8795 | LitmusChaos Litmus up to 3.19.0 /auth/login projectID access control (EUVD-2025-24077)
CVE-2025-8794 | LitmusChaos Litmus up to 3.19.0 LocalStorage projectID authorization (EUVD-2025-24075)
CVE-2025-8793 | LitmusChaos Litmus up to 3.19.0 projectID resource injection (EUVD-2025-24073)
CVE-2025-8792 | LitmusChaos Litmus up to 3.19.0 client-side enforcement of server-side security (EUVD-2025-24074)
CVE-2025-8791 | LitmusChaos Litmus up to 3.19.0 /auth/list_projects role improper authorization (EUVD-2025-24071)
Submit #626020: Control iD 1.x.x Cross Site Scripting [Duplicate]
Google Dorks: Unearth Valuable Information with Advanced Searches
Single API Key from a Chrome Extension Led to 5.2 Million Exposed Customer Records
Single API Key from a Chrome Extension Led to 5.2 Million Exposed Customer Records
5,000+ Fake Online Pharmacies Websites Selling Counterfeit Medicines
A sophisticated cybercriminal enterprise operating over 5,000 fraudulent online pharmacy websites has been exposed in a comprehensive investigation, revealing one of the largest pharmaceutical fraud networks ever documented. This massive operation, orchestrated by a single threat actor group, targets vulnerable individuals seeking prescription medications through deceptive digital storefronts that mimic legitimate pharmaceutical retailers. The fraudulent […]
The post 5,000+ Fake Online Pharmacies Websites Selling Counterfeit Medicines appeared first on Cyber Security News.