Aggregator
CVE-2024-11835 | PlexTrac up to 2.8.0 resource consumption
CVE-2024-11836 | PlexTrac up to 2.8.0 server-side request forgery
CVE-2024-12247 | Mattermost up to 9.7.5/9.8.2/9.9.2 Scheme Update authorization
CVE-2024-11599 | Mattermost up to 9.5.11/9.11.3/10.0.1/10.1.1 Email Address unusual condition (Nessus ID 213170)
OpenSSL patches 3 vulnerabilities, urging immediate updates
IOC Alert: Lumma Stealer API Endpoint Identified
Ukraine Warns of Weaponized XLL Files Delivers CABINETRAT Malware Via Zip Files
Ukrainian security agencies have issued an urgent warning regarding a sophisticated malware campaign targeting government and critical infrastructure sectors through weaponized XLL files distributed via compressed archives. The malicious campaign leverages Microsoft Excel add-in files containing the CABINETRAT backdoor, representing a significant evolution in targeted cyber operations against Ukrainian entities. The attack methodology involves distributing […]
The post Ukraine Warns of Weaponized XLL Files Delivers CABINETRAT Malware Via Zip Files appeared first on Cyber Security News.
Adobe Analytics bug leaked customer tracking data to other tenants
Threat Actors Leveraging Senior Travel Scams to Deliver Datzbro Malware
Cybersecurity researchers have uncovered a sophisticated Android malware campaign targeting seniors through fraudulent travel and social activity promotions on Facebook. The newly identified Datzbro malware represents a dangerous evolution in mobile threats, combining advanced spyware capabilities with remote access tools designed to facilitate financial fraud. This campaign, first detected in August 2025, has expanded beyond […]
The post Threat Actors Leveraging Senior Travel Scams to Deliver Datzbro Malware appeared first on Cyber Security News.
CVE-2009-0410 | Novell GroupWise up to 8.0 GroupWise Internet Agent memory corruption (EDB-7985 / BID-33560)
CVE-2009-0991 | Oracle Database 11g 11.1.0.7 Listener ncrfintn denial of service (EDB-8507 / Nessus ID 56064)
CVE-2009-2403 | Shinji-chiba SCMPX 1.5.1 memory corruption (EDB-9033 / SA35596)
CVE-2009-0192 | Novell eDirectory 8.8 iMonitor numeric error (EDB-8129 / Nessus ID 39805)
CVE-2009-4654 | Novell eDirectory 8.8 memory corruption (EDB-10163 / XFDB-54308)
Миллиард солнечных масс, струи материи на 5% скорости света и 700 тысяч часов вычислений. Что увидел самый быстрый суперкомпьютер в мире, заглянув в окрестности чёрной дыры
Malicious PyPI Package Mimics as SOCKS5 Proxy Tool Attacking Windows Platforms
A sophisticated malicious package has infiltrated the Python Package Index (PyPI), masquerading as a legitimate SOCKS5 proxy tool while harboring backdoor capabilities that target Windows systems. The SoopSocks package, tracked as XRAY-725599, presents itself as a benign networking utility that creates SOCKS5 proxy services and reports server information to configurable Discord webhooks. However, beneath this […]
The post Malicious PyPI Package Mimics as SOCKS5 Proxy Tool Attacking Windows Platforms appeared first on Cyber Security News.