Aggregator
CVE-2022-50370 | Linux Kernel up to 5.15.74/5.19.16/6.0.2 designware i2c_dw_xfer_msg null pointer dereference
CVE-2022-50361 | Linux Kernel up to 6.1.15/6.2.2 net/core/dev.c unregister_netdev injection
CVE-2022-50355 | Linux Kernel up to 6.0.2 staging initialization
CVE-2022-50356 | Linux Kernel up to 5.10.151/5.15.75/6.0.5 sched sfb_init null pointer dereference
Threat Actors Abuse Adtech Companies to Target Users With Malicious Ads
The digital advertising ecosystem has become a prime hunting ground for cybercriminals, who are increasingly exploiting advertising technology companies to distribute malware and conduct malicious campaigns. Rather than simply abusing legitimate platforms, threat actors are now operating as the platforms themselves, creating a sophisticated web of deception that leverages the inherent complexity and fragmentation of […]
The post Threat Actors Abuse Adtech Companies to Target Users With Malicious Ads appeared first on Cyber Security News.
ChatGPT 将估计用户年龄,可能要求验证年龄
CVE-2024-40925 | Linux Kernel up to 6.6.34/6.9.5 __blk_mq_alloc_requests_batch initialization (fe1e395563cc/87907bd69721/d0321c812d89)
CVE-2024-40935 | Linux Kernel up to 6.1.94/6.6.34/6.9.5 /dev/cachefiles cachefiles_daemon_write reference count (Nessus ID 209785)
CVE-2025-7892 | IDnow App up to 9.6.0 on Android de.idnow AndroidManifest.xml improper export of android application components (EUVD-2025-22012)
CVE-2025-7893 | Foresight News App up to 2.6.4 on Android pro.foresightnews.appa AndroidManifest.xml improper export of android application components (EUVD-2025-22017)
CVE-2025-7894 | Onyx up to 0.29.1 Chat Interface a3_generate_simple_sql.py generate_simple_sql sql injection (EUVD-2025-22016)
CVE-2025-8129 | KoaJS Koa up to 3.0.0 HTTP Header lib/response.js back Referrer redirect (Issue 1892 / EUVD-2025-22567)
CVE-2025-7890 | Dunamu StockPlus App up to 7.62.10 on Android com.dunamu.stockplus AndroidManifest.xml improper export of android application components (EUVD-2025-22014)
CVE-2025-7891 | InstantBits Web Video Cast App up to 5.12.4 on Android com.instantbits.cast.webvideo AndroidManifest.xml improper export of android application components (EUVD-2025-22013)
CVE-2024-40927 | Linux Kernel up to 5.15.161/6.1.94/6.6.34/6.9.5 xhci_invalidate_cancelled_tds use after free (Nessus ID 207738)
CVE-2024-40929 | Linux Kernel up to 5.10.220/5.15.161/6.1.94/6.6.34/6.9.5 iwlwifi n_ssids out-of-bounds (Nessus ID 207773)
CVE-2024-40963 | Linux Kernel up to 6.9.6 mips BMIPS_GET_CBR denial of service (Nessus ID 207802)
CVE-2025-9760 | Portabilis i-Educar up to 2.10 Matricula API /module/Api/matricula improper authorization
PureHVNC RAT Developers Leverage GitHub Host Source Code
The PureHVNC remote administration tool (RAT) has emerged as a sophisticated component of the Pure malware family, gaining prominence in mid-2025 amid an uptick in targeted intrusion campaigns. Originating from underground forums and Telegram channels, PureHVNC is marketed by its author, known as PureCoder, alongside companion tools such as PureCrypter, PureLogs, and PureMiner. Its adoption […]
The post PureHVNC RAT Developers Leverage GitHub Host Source Code appeared first on Cyber Security News.