Aggregator
CVE-2025-29994 | Rising Technosoft CAP Back Office Application up to 2.0.3 API Endpoint weak authentication (CIVN-2025-0048)
CVE-2025-29996 | Rising Technosoft CAP Back Office Application up to 2.0.3 API Request authentication bypass (CIVN-2025-0048)
CVE-2025-29998 | Rising Technosoft CAP Back Office Application up to 2.0.3 API Endpoint improper control of interaction frequency (CIVN-2025-0048)
North Korean Hackers Use Google Play Malware to Steal SMS, Calls & Screenshots
Cybersecurity researchers at Lookout Threat Lab have uncovered a sophisticated Android surveillance tool dubbed “KoSpy,” which appears to be the work of North Korean state-sponsored hackers. This newly discovered spyware has been active since March 2022, with the most recent samples detected in March 2024, indicating a long-running and persistent cyber espionage campaign. The malicious […]
The post North Korean Hackers Use Google Play Malware to Steal SMS, Calls & Screenshots appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
The future of Technology Assurance in the UK
瞻博网络成功修复 Session Smart Router 关键漏洞
Bewindslieden roepen op tot snellere opschaling defensie-industrie
The Cyber Assessment Framework 3.1
Thanking the vulnerability research community with NCSC Challenge Coins
Blind Eagle APT-C-36:快速利用补丁漏洞,借知名平台发动网络攻击
Terminology: it's not black and white
Telling users to ‘avoid clicking bad links’ still isn’t working
Tackling the 'human factor' to transform cyber security behaviours
Beware of North Korean Hackers DocSwap Malware Disguised As Security Document Viewer
A sophisticated malware campaign targeting mobile users in South Korea has been uncovered, with clear links to North Korean threat actors. The malicious application, masquerading as a “Document Viewing Authentication App” (문서열람 인증 앱). This malicious app was identified through VirusTotal on January 21, 2025, and has been actively stealing sensitive information from compromised devices. […]
The post Beware of North Korean Hackers DocSwap Malware Disguised As Security Document Viewer appeared first on Cyber Security News.
Mozilla Issues Urgent Firefox Update Warning to Prevent Add-on Failures
Mozilla has issued an urgent warning to all Firefox users, emphasizing the need to update their browsers before a critical root certificate expires on March 14, 2025. This certificate is used to verify signed content and add-ons across various Mozilla projects, including Firefox. Failure to update to version 128 or higher (or ESR version 115.13+ […]
The post Mozilla Issues Urgent Firefox Update Warning to Prevent Add-on Failures appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
勒索软件攻击创历史新高:2025年2月攻击量激增126%
Bitdefender Identifies Security Vulnerabilities Enabling Man-in-the-Middle Exploits
Cybersecurity firm Bitdefender has disclosed two high-severity security vulnerabilities affecting its legacy BOX v1 device, exposing users to potential remote code execution and man-in-the-middle attacks. The vulnerabilities, identified on March 12th, 2025, affect a product that is no longer sold or supported by the company, but the disclosure demonstrates Bitdefender’s ongoing commitment to security transparency […]
The post Bitdefender Identifies Security Vulnerabilities Enabling Man-in-the-Middle Exploits appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.