Aggregator
CVE-2025-52913 | Mitel MiCollab up to 9.8 SP2 NuPoint Unified Messaging path traversal (EUVD-2025-24008)
CVE-2012-10043 | ActFax Server 4.32 Import Users from File strcpy stack-based overflow (EUVD-2012-6591 / EDB-20915)
CVE-2010-10013 | AjaXplorer up to 2.5 checkInstall.php destServer os command injection (EUVD-2010-5299 / EDB-21993)
CVE-2012-10049 | WPO WebPageTest up to 2.6 resultimage.php unrestricted upload (EUVD-2012-6593 / EDB-19790)
CVE-2012-10050 | CuteFlow up to 2.11.2 restart_circulation_values_write.php unrestricted upload (EUVD-2012-6590 / EDB-20111)
CVE-2012-10036 | ProjectPier Project Pier up to 0.8.8 PHP File tools/upload_file.php unrestricted upload (EUVD-2012-6584 / EDB-21929)
CVE-2012-10042 | Sflog CMS 1.0 Blog Management Interface manage.php unrestricted upload (EUVD-2012-6583 / EDB-19626)
CVE-2012-10044 | MobileCartly 1.0 savepage.php file_put_contents unrestricted upload (EUVD-2012-6586 / EDB-20422)
CVE-2012-10045 | XODA 0.4.5 POST Request upload unrestricted upload (EUVD-2012-6594 / EDB-20703)
CVE-2012-10047 | Cyclope-Series Cyclope Employee Surveillance Solution 6.x Username sql injection (EUVD-2012-6589 / EDB-20393)
CVE-2012-10052 | EGallery 1.2 uploadify.php unrestricted upload (EUVD-2012-6588 / EDB-20029)
CVE-2012-10041 | WAN Emulator 2.3 result.php shell_exec pc os command injection (EUVD-2012-6592 / EDB-21190)
Ваш Kaspersky молчит? Проверьте — возможно, его уже отключил EDR-киллер
Typosquatted PyPI Packages Used by Threat Actors to Steal Cryptocurrency from Bittensor Wallets
GitLab’s Vulnerability Research team has uncovered a highly sophisticated cryptocurrency theft campaign exploiting typosquatted Python packages on the Python Package Index (PyPI) to target the Bittensor decentralized AI network. The operation, detected through GitLab’s automated package monitoring system, involved the deployment of malicious packages mimicking legitimate Bittensor components, specifically designed to siphon funds from developers […]
The post Typosquatted PyPI Packages Used by Threat Actors to Steal Cryptocurrency from Bittensor Wallets appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Stop Chasing AI Agents. Build a Persistent, Autonomous SOC Instead
AI agents promise automation but deliver chaos. Morpheus gives your SOC a persistent, auditable core, resolving alerts faster, with fewer escalations and no sprawl.
The post Stop Chasing AI Agents. Build a Persistent, Autonomous SOC Instead appeared first on D3 Security.
The post Stop Chasing AI Agents. Build a Persistent, Autonomous SOC Instead appeared first on Security Boulevard.
Efimer Malicious Script Spreads via WordPress Sites, Torrents, and Email in Massive Attack Wave
Kaspersky researchers have uncovered a widespread campaign involving the Efimer malicious script, a sophisticated Trojan-dropper primarily aimed at stealing cryptocurrency. First detected in June 2025, the malware impersonates legal correspondence from major companies, accusing recipients of domain name infringements and attaching malicious archives that deploy the Efimer stealer. ‘ Named after a comment in its […]
The post Efimer Malicious Script Spreads via WordPress Sites, Torrents, and Email in Massive Attack Wave appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
15,000 Jenkins Servers at Risk from RCE Vulnerability (CVE-2025-53652)
VexTrio TDS System Developing Several Malicious Apps Mimic as VPNs to Publish in Google Play and App Store
The notorious VexTrio traffic distribution system (TDS) has expanded its cybercriminal operations beyond traditional web-based scams to include the development and distribution of malicious mobile applications designed to masquerade as legitimate VPN services..This sophisticated threat actor, which has maintained a dominant presence in the malicious advertising ecosystem since 2015, is now leveraging app stores to […]
The post VexTrio TDS System Developing Several Malicious Apps Mimic as VPNs to Publish in Google Play and App Store appeared first on Cyber Security News.