Aggregator
CVE-2025-2241 | Red Hat Multicluster Engine for Kubernetes Hive sensitive information
CVE-2025-25684 | GL-iNet Beryl AX GL-MT3000 4.7.0 POST Request /download path information disclosure
CVE-2024-48017 | Dell SmartFabric OS10 Software 10.5.4.x/10.5.5.x/10.5.6.x/10.6.0.x command injection (dsa-2025-070)
Fast Answers, Less Noise: Meet BX5, Our New AI Engine, and the Heavily Updated BIX
Cybersecurity can quickly spiral out of control. Dashboards pile up, alerts never stop buzzing, and vulnerabilities keep pouring in faster than teams can handle. That’s exactly why we built BX5, our latest AI engine, and enhanced our GenAI cybersecurity assistant, BIX—to bring clarity and speed back into your security operations. And today we are very …
The post Fast Answers, Less Noise: Meet BX5, Our New AI Engine, and the Heavily Updated BIX appeared first on Security Boulevard.
Cobalt Strike 4.11: Shhhhhh, Beacon is Sleeping….
Cobalt Strike 4.11 is now available. This release introduces a novel Sleepmask, a novel process injection technique, new out-of-the-box obfuscation options for Beacon, asynchronous BOFs, and a DNS over HTTPS (DoH) Beacon. Additionally, we have overhauled Beacon’s reflective loader and there are numerous QoL updates. Out-of-the-Box Evasion Overhaul The focus of this release (and the [...]
Read More... from Cobalt Strike 4.11: Shhhhhh, Beacon is Sleeping….
The post Cobalt Strike 4.11: Shhhhhh, Beacon is Sleeping…. appeared first on Cobalt Strike.
CVE-2024-26682 | Linux Kernel up to 6.7.4 mac80211 denial of service (ea88bde8e3fe/35e2385dbe78)
CVE-2024-26683 | Linux Kernel up to 6.7.4 cfg80211 denial of service (ce112c941c2b/177fbbcb4ed6)
CVE-2024-26684 | Linux Kernel up to 6.7.4 DPP DMA_DPP_Interrupt_Status denial of service
CVE-2024-26677 | Linux Kernel up to 6.6.16/6.7.4 rxrpc information disclosure (200cb50b9e15/63719f490e6a/e7870cf13d20 / Nessus ID 207818)
CVE-2024-26675 | Linux Kernel up to 6.7.4 ppp_async mm/page_alloc.c __alloc_pages buffer overflow (Nessus ID 210815)
CVE-2024-26674 | Linux Kernel up to 6.6.16/6.7.4 _ASM_EXTABLE_UA denial of service (2aed1b6c33af/2da241c5ed78/8eed4e00a370 / Nessus ID 210815)
CVE-2024-26678 | Linux Kernel up to 6.7.4 efistub memory corruption (4adeeff8c123/1ad55cecf22f / Nessus ID 210815)
CVE-2024-26680 | Linux Kernel up to 6.1.77/6.6.16/6.7.4 atlantic kernel/dma/debug.c aq_ring_hwts_rx_alloc use after free (Nessus ID 210815)
CVE-2024-26679 | Linux Kernel up to 6.7.4 inet_recv_error access control (Nessus ID 210815)
CVE-2024-26681 | Linux Kernel up to 6.1.77/6.6.16/6.7.4 lib/debugobjects.c nsim_dev_trap_report_work infinite loop (Nessus ID 209512)
CVE-2005-3860 | Oliver May Athena PHP Website Administration 0.1a athena.php athena_dir code injection (EDB-26598 / BID-15574)
23,000 GitHub Repositories Targeted In Supply Chain Attack
In a massive security breach discovered this week, approximately 23,000 GitHub repositories have been compromised in what security experts are calling one of the largest supply chain attacks to date. The attackers exploited vulnerabilities in the software development pipeline to potentially distribute malicious code to thousands of downstream applications and services. GitHub, a platform hosting […]
The post 23,000 GitHub Repositories Targeted In Supply Chain Attack appeared first on Cyber Security News.