Aggregator
TP-Link Router 0-Day RCE Vulnerability Exploited Bypassing ASLR Protections – PoC Released
A critical zero-day remote code execution (RCE) vulnerability, identified as CVE-2025-9961, has been discovered in TP-Link routers. Security research firm ByteRay has released a proof-of-concept (PoC) exploit, demonstrating how attackers can bypass Address Space Layout Randomization (ASLR) protections to gain full control over affected devices. The vulnerability resides in the router’s Customer Premises Equipment (CPE) […]
The post TP-Link Router 0-Day RCE Vulnerability Exploited Bypassing ASLR Protections – PoC Released appeared first on Cyber Security News.
Windows Greenshot Vulnerability Lets Attackers Execute Malicious Code – PoC Published
A critical security vulnerability in the popular Greenshot screenshot utility has been discovered that allows local attackers to execute arbitrary malicious code within the trusted application process. The vulnerability, tracked as CVE-2025-59050, affects Greenshot versions up to 1.3.300 and has been patched in version 1.3.301 released on September 16, 2025. Greenshot image editor interface showing capture […]
The post Windows Greenshot Vulnerability Lets Attackers Execute Malicious Code – PoC Published appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
聚焦国家网络安全宣传周:关键网络安全知识,一文读懂!
GNOME 49 释出
Запасной парашют для бизнеса: автоматизируем процессы обеспечения непрерывности деятельности. 25 сентября, начало в 11:00
TC260-004《政务大模型应用安全规范》发布
网络犯罪组织WhiteCobra植入24款恶意扩展程序 瞄准VSCode、Cursor及Windsurf用户
Behind the scenes of cURL with its founder: Releases, updates, and security
In this Help Net Security interview, Daniel Stenberg, lead developer od cURL, discusses how the widely used tool remains secure across billions of devices, from cloud services to IoT. He shares insights into cURL’s decades-long journey of testing, reviewing, and refining its code to minimize risks. Stenberg also explains the team’s approach to handling vulnerabilities, ensuring transparency, and maintaining trust in the open-source ecosystem. cURL is embedded in billions of devices, from cloud services to … More →
The post Behind the scenes of cURL with its founder: Releases, updates, and security appeared first on Help Net Security.
Submit #653344: fuyang_lipengjun platform v1.0 broken function level authorization [Accepted]
Submit #653343: fuyang_lipengjun platform v1.0 broken function level authorization [Accepted]
Submit #653342: fuyang_lipengjun platform v1.0 broken function level authorization [Accepted]
黑猩猩每天食用熟果摄入的酒精量相当于一瓶啤酒
Google Patches Chrome Zero-Day CVE-2025-10585 as Active V8 Exploit Threatens Millions
Submit #653191: itsourcecode Student Information Management System V1.0 SQL injection [Accepted]
Raven Stealer Targets Google Chrome Users to Exfiltrate Sensitive Data
Raven Stealer, a sophisticated information-stealing malware that has been wreaking havoc on users’ sensitive data. This contemporary malware represents a concerning evolution in credential theft technology, combining advanced evasion techniques with streamlined data exfiltration capabilities. Raven Stealer stands out as a lightweight yet highly effective information-stealing malware developed primarily in Delphi and C++. Cybersecurity researchers […]
The post Raven Stealer Targets Google Chrome Users to Exfiltrate Sensitive Data appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.