Aggregator
CVE-2024-47442 | Adobe After Effects up to 23.6.9/24.6.2 out-of-bounds write (apsb24-85 / Nessus ID 210847)
CVE-2024-51721 | BlackBerry SecuSUITE up to 5.0.420 Web Administration Portal link following
CVE-2024-10923 | OpenText ALM Octane Management up to 24.4 cross site scripting
CVE-2024-21937 | AMD Software PRO Edition HIP SDK Installation default permission
CVE-2024-47443 | Adobe After Effects up to 23.6.9/24.6.2 out-of-bounds write (apsb24-85 / Nessus ID 210847)
CVE-2024-21958 | AMD Provisioning Console Software prior 4.0.0.408 Installation default permission
CVE-2024-47453 | Adobe Illustrator up to 28.7.1 out-of-bounds (apsb24-87)
CVE-2024-47454 | Adobe Illustrator up to 28.7.1 out-of-bounds (apsb24-87)
CVE-2024-47455 | Adobe Illustrator up to 28.7.1 out-of-bounds (apsb24-87)
CVE-2024-47456 | Adobe Illustrator up to 28.7.1 out-of-bounds (apsb24-87)
CVE-2024-49514 | Adobe Photoshop Desktop up to 24.7.3/25.11 integer underflow (apsb24-89)
CVE-2023-50176 | Fortinet FortiOS up to 7.0.13/7.2.7/7.4.3 SAML Authentication Link session fixiation (FG-IR-23-475 / Nessus ID 210874)
CVE-2024-45147 | Adobe Bridge up to 14.1.2 out-of-bounds (apsb24-77 / Nessus ID 210849)
VS Code Extension with 9 Million Installs Attacks Developers with Malicious Code
Microsoft has removed two widely-used Visual Studio Code (VS Code) extensions, “Material Theme Free” and “Material Theme Icons Free,” from its marketplace after cybersecurity researchers discovered malicious code embedded within them. These extensions, developed by Mattia Astorino (also known as equinusocio), had amassed nearly 9 million installations combined, with Astorino’s total extension downloads exceeding 13 […]
The post VS Code Extension with 9 Million Installs Attacks Developers with Malicious Code appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
New Anubis Ransomware Targets Windows, Linux, NAS, and ESXi x64/x32 Environments
A new ransomware group, dubbed Anubis, has emerged as a significant threat in the cybersecurity landscape. Active since late 2024, Anubis employs advanced techniques and operates across multiple platforms, including Windows, Linux, NAS, and ESXi environments. The group is leveraging ransomware-as-a-service (RaaS) and other affiliate-based monetization models to expand its reach and impact. Technical Capabilities […]
The post New Anubis Ransomware Targets Windows, Linux, NAS, and ESXi x64/x32 Environments appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
WordPress Admins Warned of Fake Plugins Injecting Malicious Links into Websites
A new wave of cyberattacks targeting WordPress websites has been uncovered, with attackers leveraging fake plugins to inject malicious links into site footers. These links, often promoting casino-related spam, compromise website integrity and can severely impact search engine optimization (SEO). The attackers use sophisticated techniques to disguise their malicious plugins, making detection and removal challenging […]
The post WordPress Admins Warned of Fake Plugins Injecting Malicious Links into Websites appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
跨国黑客GHOSTR落网,涉90多起数据泄露案件
LARVA-208 Hackers Compromise 618 Organizations Stealing Logins and Deploying Ransomware
A newly identified cybercriminal group, LARVA-208, also known as EncryptHub, has successfully infiltrated 618 organizations globally since June 2024, leveraging advanced social engineering techniques to steal credentials and deploy ransomware. According to reports from cybersecurity firms CATALYST and Prodaft, the group has demonstrated a high level of sophistication in its operations, targeting corporate networks through […]
The post LARVA-208 Hackers Compromise 618 Organizations Stealing Logins and Deploying Ransomware appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.