Aggregator
CVE-2025-1904 | code-projects Blood Bank System 1.0 /Blood/A+.php Availibility cross site scripting
CVE-2025-1905 | SourceCodester Employee Management System 1.0 employee.php Full Name cross site scripting
CVE-2025-1906 | PHPGurukul Restaurant Table Booking System 1.0 /admin/profile.php mobilenumber sql injection
UNK_CraftyCamel: иранские хакеры пробили защиту критической инфраструктуры ОАЭ
ДНК-конструктор для ИИ: система Evo 2 научилась писать геномы с нуля
Docusnap for Windows Flaw Exposes Sensitive Data to Attackers
A recently disclosed vulnerability in Docusnap’s Windows client software (CVE-2025-26849) enables attackers to decrypt sensitive system inventory files through a hardcoded encryption key, exposing critical network information to potential exploitation. Cybersecurity researchers at RedTeam Pentesting GmbH revealed that inventory files generated by Docusnap Client for Windows – containing details like installed applications, firewall configurations, and […]
The post Docusnap for Windows Flaw Exposes Sensitive Data to Attackers appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
NCSC For Startups: from HP Labs to Configured Things
Release Notes: Threat Intelligence Reports, New Website Design, & Enhanced Detection
Hey, cybersecurity enthusiasts! February brought major enhancements to ANY.RUN, improving threat intelligence, detection capabilities, and overall user experience. With the launch of Threat Intelligence Reports, security professionals now have access to detailed, expert-driven analyses of cyber threats, malware, and APT activities. We also introduced a redesigned website, making navigation more intuitive and structured. On the […]
The post Release Notes: Threat Intelligence Reports, New Website Design, & Enhanced Detection appeared first on ANY.RUN's Cybersecurity Blog.
【安全圈】金融服务平台Angel One披露一起数据泄露事件
【安全圈】苹果 macOS 虚拟机应用 Parallels Desktop 曝漏洞未修补完全
【安全圈】WordPress 第三方表单插件 Everest Forms 曝远程代码执行漏洞
How New AI Agents Will Transform Credential Stuffing Attacks
105 кубитов и новый рекорд: Zuchongzhi-3 меняет правила квантовых вычислений
Black Basta 和 Cactus 勒索软件组织将 BackConnect 恶意软件武器化
CISA Warns of Active Exploitation of Microsoft Windows Win32k Vulnerability
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added CVE-2018-8639, a decade-old Microsoft Windows privilege escalation flaw, to its Known Exploited Vulnerabilities (KEV) catalog amid confirmed active attacks. First patched by Microsoft in December 2018, this Win32k kernel-mode driver vulnerability enables authenticated local attackers to execute arbitrary code with SYSTEM privileges, granting unfettered control over […]
The post CISA Warns of Active Exploitation of Microsoft Windows Win32k Vulnerability appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.