Aggregator
CVE-2025-48020 | Yokogawa Electric Vnet-IP Interface Package up to 1.07.00 assertion (CNNVD-202602-2301)
1 day 4 hours ago
A vulnerability identified as problematic has been detected in Yokogawa Electric Vnet-IP Interface Package up to 1.07.00. This vulnerability affects unknown code. This manipulation causes reachable assertion.
This vulnerability is registered as CVE-2025-48020. The attack requires access to the local network. No exploit is available.
vuldb.com
CVE-2025-15520 | RegistrationMagic Plugin up to 6.0.2.1 on WordPress information disclosure (CNNVD-202602-2300)
1 day 4 hours ago
A vulnerability, which was classified as problematic, was found in RegistrationMagic Plugin up to 6.0.2.1 on WordPress. Affected is an unknown function. Such manipulation leads to information disclosure.
This vulnerability is uniquely identified as CVE-2025-15520. The attack can be launched remotely. No exploit exists.
You should upgrade the affected component.
vuldb.com
地球暖化加速的原因
1 day 5 hours ago
对 1880-2025 年全球平均地表温度的分析显示,过去 30 年全球气温上升在加速,过去 10 年达到了每十年上升近 0.27C。地球暖化加速的一种解释是气溶胶污染减少,气溶胶会反射太阳光,有降温效应,能抵消部分温室气体产生的暖化效应。过去二十年很多国家开始严打气溶胶污染,导致降温效应减少了。然而研究人员认为,过去几年的创纪录高温无法完全用气溶胶和自然变化进行解释。他们发现,地球低空云的覆盖面积下降了,低空云会反射阳光,其面积的减少推动了暖化的加速。低空云的减少部分与气溶胶有关,但也可能是气温上升导致的反馈循环。气温升高会让低层云更难形成。目前创纪录的高温如果主要是气溶胶变化造成的,那么一旦气溶胶污染物降至零,加速升温的趋势会停止,地球将恢复到之前较慢的升温。但如果是由于云层反馈循环造成的,那么升温加速趋势很可能会持续下去,会带来更严重的热浪、风暴和干旱。
CVE-2024-22120
1 day 5 hours ago
Currently trending CVE - Hype Score: 5 - Zabbix server can perform command execution for configured scripts. After command is executed, audit entry is added to "Audit Log". Due to "clientip" field is not sanitized, it is possible to injection SQL into "clientip" and exploit time based blind SQL injection.
在高危漏洞披露前电信公司提前屏蔽 Telnet 流量
1 day 5 hours ago
1 月 20 日公开的 Telnet 高危漏洞 CVE-2026-24061 存在于 GNU InetUtils telnetd 中,已有 10 年历史,CVSS 评分 9.8/10,非常容易被攻击者获取 root 权限。但在漏洞披露前一周,全球的 Telnet 流量就出现断崖式下降。电信运营商应该是提前收到了漏洞预警,提前采取行动防止漏洞利用。数据显示,1 月 14 日 Telnet 会话数在一小时内下降了 65%,两小时内下降了 83%。日均会话数从 12 月 1 日的 91.4 万次降至 1 月 14 日的约 37.3 万次,降幅达 59%。北美一家或多家 Tier 1 级中转服务提供商过滤了 Telnet 协议默认使用的 23 端口。BT、Cox Communications 和 Vultr 在内的 18 家电信运营商的 Telnet 会话数在 1 月 15 日从之前的数十万降至零。
"ИИ, создай идеальный вирус для Linux, который умеет всё" — результат превзошел ожидания хакеров: встречайте VoidLink
1 day 5 hours ago
Это не просто вредонос, а целая империя из зараженных серверов.
Microsoft Discloses DNS-Based ClickFix Attack Using Nslookup for Malware Staging
1 day 5 hours ago
Microsoft has disclosed details of a new version of the ClickFix social engineering tactic in which the attackers trick unsuspecting users into running commands that carry out a Domain Name System (DNS) lookup to retrieve the next-stage payload.
Specifically, the attack relies on using the "nslookup" (short for nameserver lookup) command to execute a custom DNS lookup triggered via the Windows
The Hacker News
SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 84
1 day 6 hours ago
Security Affairs Malware newsletter includes a collection of the best articles and research on malware in the international landscape Malware Newsletter Stan Ghouls targeting Russia and Uzbekistan with NetSupport RAT Breaking Down ZeroDayRAT – New Spyware Targeting Android and iOS Old-School IRC, New Victims: Inside the Newly Discovered SSHStalker Linux Botnet Reynolds: Defense Evasion Capability […]
Pierluigi Paganini
欧盟采取行动禁用无限滚动
1 day 6 hours ago
欧盟首次尝试对社交媒体成瘾采取行动。本月早些时候,欧盟初步裁决 TikTok 的无限滚动、自动播放、高度定制化推荐系统等成瘾性设计违反了欧盟的《数字服务法(DSA)》 ,它要求 TikTok 禁用无限滚动、设置严格的屏幕休息时间,修改其推荐系统。欧盟针对 TikTok 的行动可能将树立新的设计标准,终结无限滚动时代。TikTok 可以为其设计进行辩护,如果它无法令欧盟满意,将面临其全球年收入 6% 的罚款。这是监管机构首次尝试为社交媒体平台的成瘾性设计制定法律标准。Meta 旗下的 Facebook 和 Instagram 也因其成瘾设计而接受调查。
已知三角形内任意一点,求其到三顶点距离和的最小值
1 day 6 hours ago
此题当年登场时,很难说是几何题,还是物理题。
Security Affairs newsletter Round 563 by Pierluigi Paganini – INTERNATIONAL EDITION
1 day 6 hours ago
A new round of the weekly Security Affairs newsletter has arrived! Every week, the best security articles from Security Affairs are free in your email box. Enjoy a new round of the weekly SecurityAffairs newsletter, including the international press. Fintech firm Figure disclosed data breach after employee phishing attack U.S. CISA adds a flaw in […]
Pierluigi Paganini
Посмотрите на своего сисадмина. Возможно, это хакер из Muddled Libra, который просто «работает»
1 day 6 hours ago
Рассказываем, почему этот курьёзный провал стал самым ценным источником информации для ИБ-специалистов.
[链接]心流鼠标手势 - FlowMouse v1.2 Chro
1 day 7 hours ago
心流鼠标手势 - FlowMouse v1.2 Chrome 应用商店已更新!
👉 安装链接:https://chrome.google.com/webstore/detail/fnldhkfidchnjiokpoemdhoejmaojkgp
🧧赶在春节前通过审核,刚好作为一份新年礼物送给大家~🎉
✨ 欢迎下载体验!如果觉得好用,不妨给我们一个五星好评支持。
📢 如有任何建议或反馈,也欢迎随时留言告诉我们。
🚀 新版本预告:
1、🦊 即将支持火狐浏览器
2、🌐 Edge 浏览器特别优化 + 商店上架
3、💡 你的建议,我们洗耳恭听~
Microsoft - соучастник фишинга: официальная надстройка Outlook годами крала пароли тысяч пользователей
1 day 7 hours ago
Заброшенный AgreeTo ожил и стал пожирать учетные данные как бешеный.
Linux版CS样本分析与配置解密
1 day 8 hours ago
Linux版CS样本分析与配置解密
Windows 11 KB5077181 Security Update Causing Some Devices to Restart in an Infinite Loop
1 day 8 hours ago
Microsoft’s February 10, 2026, security update KB5077181 for Windows 11 versions 24H2 (build 26200.7840) and 25H2 (build 26100.7840) has triggered widespread reports of critical boot failures just days after deployment. Users describe devices entering infinite restart loops, often exceeding 15 cycles, preventing access to the desktop. This cumulative update delivers essential security fixes alongside quality […]
The post Windows 11 KB5077181 Security Update Causing Some Devices to Restart in an Infinite Loop appeared first on Cyber Security News.
Guru Baran
Худшая реклама в мире. Как разработчики софта для тайной слежки не смогли уследить за собственными фото
1 day 8 hours ago
Инструмент тотального контроля внезапно стал объектом всеобщего обсуждения.
Простите, дисков нет. Western Digital распродала все производственные мощности на ближайшие 3 года
1 day 9 hours ago
Диски нужны, чтобы чат-бот мог написать вам диплом.
Breach Point CTF - Siege Of Troy(Online Round)
1 day 10 hours ago
Name: Breach Point CTF - Siege Of Troy(Online Round) (an Breach Point CTF event.)
Date: Feb. 14, 2026, 7:30 a.m. — 15 Feb. 2026, 07:30 UTC [add to calendar]
Format: Jeopardy
On-line
Offical URL: https://breachpoint.live/
Rating weight: 0
Event organizers: BreachPoint-SOT
Date: Feb. 14, 2026, 7:30 a.m. — 15 Feb. 2026, 07:30 UTC [add to calendar]
Format: Jeopardy
On-line
Offical URL: https://breachpoint.live/
Rating weight: 0
Event organizers: BreachPoint-SOT