Aggregator
CVE-2025-53934 | LabRedesCefetRJ WeGIA up to 3.4.4 control.php descricao_emergencia cross site scripting (GHSA-gqwp-637v-v49v / EUVD-2025-21720)
CVE-2025-53933 | LabRedesCefetRJ WeGIA up to 3.4.4 adicionar_enfermidade.php nome cross site scripting (GHSA-6558-m8rp-5qg6 / EUVD-2025-21722)
CVE-2025-53932 | LabRedesCefetRJ WeGIA up to 3.4.4 cadastro_adotante.php cpf cross site scripting (GHSA-3vfw-749q-qp6r / EUVD-2025-21726)
CVE-2025-53943 | Death1Clown VoidBot_open-source up to 0.8.1 authorization (GHSA-6rr8-9c8q-m5rv / EUVD-2025-21715)
CVE-2025-53936 | LabRedesCefetRJ WeGIA up to 3.4.4 personalizacao_selecao.php nome_car cross site scripting (GHSA-34vc-q923-v26p / EUVD-2025-21718)
CVE-2025-53935 | LabRedesCefetRJ WeGIA up to 3.4.4 personalizacao_selecao.php cross site scripting (GHSA-5x6v-h459-xjqh / EUVD-2025-21719)
CVE-2025-53938 | LabRedesCefetRJ WeGIA up to 3.4.4 HTTP Request verificar_recursos_cargo.php missing authentication (GHSA-6p76-7mm4-j5rj / EUVD-2025-21716)
CVE-2025-53937 | LabRedesCefetRJ WeGIA up to 3.4.4 /controle/control.php cargo sql injection (GHSA-j3qv-v3m7-73pj / EUVD-2025-21717)
CVE-2025-20272 | Cisco Evolved Programmable Network Manager REST API sql injection (cisco-sa-piepnm-bsi-25JJqsbb / EUVD-2025-21713)
CVE-2025-20285 | Cisco Identity Services Engine Software up to 3.4.0 IP Access Restriction Feature authentication bypass by assumed-immutable data (cisco-sa-ise-multi-3VpsXOxO / EUVD-2025-21709)
Квантовые сети против Эйнштейна: начался эксперимент, способный переписать физику
CVE-2025-20283 | Cisco Identity Services Engine Software 3.3.0/3.4.0 API injection (cisco-sa-ise-multi-3VpsXOxO / EUVD-2025-21712)
CVE-2025-20288 | Cisco Unified Contact Center Express Web-based Management Interface server-side request forgery (cisco-sa-cuis-ssrf-JSuDjeV / EUVD-2025-21710)
CVE-2025-20284 | Cisco Identity Services Engine Software 3.3.0/3.4.0 API injection (cisco-sa-ise-multi-3VpsXOxO / EUVD-2025-21711)
CVE-2025-20337 | Cisco Identity Services Engine Software 3.3.0/3.4.0 API injection (cisco-sa-ise-unauth-rce-ZAd2GnJ6 / EUVD-2025-21708)
CVE-2025-20274 | Cisco Unified Contact Center Express Web-based Management Interface unrestricted upload (cisco-sa-cuis-file-upload-UhNEtStm / EUVD-2025-21714)
Dark Partners Hackers Group Wiping Crypto Wallets With Fake Ai Tools and VPN Services
A sophisticated cybercrime group dubbed “Dark Partners” has emerged as a significant threat to cryptocurrency users worldwide, orchestrating large-scale theft campaigns through an extensive network of fake websites impersonating AI tools, VPN services, and popular software brands. Active since at least May 2025, this financially motivated group has deployed a complex infrastructure spanning over 250 […]
The post Dark Partners Hackers Group Wiping Crypto Wallets With Fake Ai Tools and VPN Services appeared first on Cyber Security News.
International operation disrupts pro-Russian hacker group NoName057(16)
Bridging the Visibility Gap: 2025 Global Cybersecurity Maturity Report
Reuven “Rubi” Aronashvili, CEO of CYE, asks a blunt question: Why are breaches still rampant when security budgets have never been larger? Drawing on his journey from leading an Israeli red‑team unit to advising Fortune‑500 boards, Aronashvili argues that most companies are still flying blind. Visibility—knowing exactly which assets, vulnerabilities and business processes are at..
The post Bridging the Visibility Gap: 2025 Global Cybersecurity Maturity Report appeared first on Security Boulevard.