Aggregator
Apple Patches 0-Day Vulnerabilities in Older iPhones and iPads
Apple has released critical security updates for older iPhone and iPad models, addressing a zero-day vulnerability that has reportedly been exploited in sophisticated targeted attacks. The iOS 16.7.12 and iPadOS 16.7.12 updates, released on September 15, 2025, patch a serious security flaw affecting legacy Apple devices. Active Exploitation Confirmed The vulnerability, tracked as CVE-2025-43300, represents […]
The post Apple Patches 0-Day Vulnerabilities in Older iPhones and iPads appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Submit #650030: D-Link DI-8400 DI_8400-16.07.26A1 Command Injection [Duplicate]
Siren’s K9 uses AI to turn complex investigations into actionable insights
Siren announced the launch of K9, an AI companion designed to transform the way investigators uncover threats and connections. K9 is fast, dependable and mission-focused, built to guard, protect, and serve those on the front lines of keeping communities and nations safe. “K9 is more than an AI companion, it’s a loyal partner,” said Jeferson Zanim, CPO at Siren. “We designed it to feel like a trusted colleague. Always ready, always reliable and focused on … More →
The post Siren’s K9 uses AI to turn complex investigations into actionable insights appeared first on Help Net Security.
CVE-2025-10617 | SourceCodester Online Polling System 1.0 /admin/positions.php ID sql injection
Submit #649980: PHPGurukul Online Shopping Portal V2.1 SQL Injection [Duplicate]
Submit #649959: SourceCodester Student Grading System 1.0 SQL Injection [Duplicate]
Submit #649963: SourceCodester Student Grading System 1.0 SQL Injection [Duplicate]
Submit #649962: SourceCodester Student Grading System 1.0 SQL Injection [Duplicate]
CVE-2025-10616 | itsourcecode E-Commerce Website 1.0 /admin/users.php unrestricted upload
CVE-2025-10615 | itsourcecode E-Commerce Website 1.0 /admin/products.php unrestricted upload
Submit #649958: SourceCodester Online Polling System Code 1.0 SQL Injection [Duplicate]
Submit #649948: SOU Online Polling System Code 1.0 SQL Injection [Accepted]
CVE-2025-10614 | itsourcecode E-Logbook with Health Monitoring System for COVID-19 /print_reports_prev.php cross site scripting
CVE-2025-10156 | mmaitre314 picklescan up to 0.0.30 exceptional condition (EUVD-2025-29708)
CVE-2025-10613 | itsourcecode Student Information System 1.0 /leveledit1.php level_id sql injection
Submit #649912: itsourcecode E-Commerce Website V1.0 V1.0 upload [Accepted]
Submit #649911: itsourcecode E-Commerce Website V1.0 Unrestricted Upload [Accepted]
Microsoft Disrupts RaccoonO365 Phishing Kit, Seizes 338 Malicious Sites
Chaos Mesh Critical Vulnerabilities Expose Kubernetes Clusters to Takeover
Security Research recently uncovered four new flaws, CVE-2025-59358, CVE-2025-59359, CVE-2025-59360, and CVE-2025-59361, in the default configuration of the Chaos Controller Manager GraphQL server, a popular open-source chaos engineering platform for Kubernetes. Three of these flaws carry a maximum CVSS 3.1 score of 9.8, enabling any pod in the cluster to run arbitrary commands or inject […]
The post Chaos Mesh Critical Vulnerabilities Expose Kubernetes Clusters to Takeover appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.