Aggregator
CVE-2024-41742 | IBM TXSeries for Multiplatforms 10.1 allocation of resources
CVE-2024-41743 | IBM TXSeries for Multiplatforms 10.1 Persistent Connection allocation of resources
CVE-2025-0730 | TP-Link TL-SG108E 1.0.0 Build 20201208 Rel. 40304 HTTP GET Request /usr_account_set.cgi username/password get request method with sensitive query strings
CVE-2025-49676 | Microsoft Windows Server 2008 R2 SP1 up to Server 2022 23H2 Routing/Remote Access Service heap-based overflow (EUVD-2025-20640)
CVE-2025-49681 | Microsoft Windows Server 2008 R2 SP1 up to Server 2022 23H2 Routing/Remote Access Service out-of-bounds (EUVD-2025-20569)
Думали, VPN защищает приватность? Поздравляем — теперь это самый дорогой способ попасть на штраф
JVN: 複数のHitachi Energy製品における複数の脆弱性
JVN: ABB製RMC-100における複数の脆弱性
JVN: 複数のLITEON製品におけるパスワードの平文保存の脆弱性
OpenAI избавила нас от промптов — теперь искусство создаётся в один клик
Falco: Open-source cloud-native runtime security tool for Linux
Falco is an open-source runtime security tool for Linux systems, built for cloud-native environments. It monitors the system in real time to spot unusual activity and possible security threats. Falco is a graduated project from the Cloud Native Computing Foundation (CNCF) and is used in production by many organizations. The tool works by watching system events such as syscalls, using custom rules. It can also add context from container runtimes and Kubernetes. The events it … More →
The post Falco: Open-source cloud-native runtime security tool for Linux appeared first on Help Net Security.
North Korean Hackers Weaponized 67 Malicious npm Packages to Deliver XORIndex Malware
North Korean threat actors have escalated their software supply chain attacks with the deployment of 67 malicious npm packages that collectively garnered over 17,000 downloads before detection. This latest campaign represents a significant expansion of the ongoing “Contagious Interview” operation, introducing a previously unreported malware loader dubbed XORIndex alongside the existing HexEval Loader infrastructure. The […]
The post North Korean Hackers Weaponized 67 Malicious npm Packages to Deliver XORIndex Malware appeared first on Cyber Security News.
Starting out, I’ve been doing free scans for local businesses to build experience. Any tips on reporting or client comms?
国家互联网信息办公室开展2025年个人信息保护网络问卷调查
Simple Editor - 高效智能地设计动效
Simple Editor - 高效智能地设计动效
国家互联网信息办公室开展2025年个人信息保护网络问卷调查
BaitTrap – 17,000+ Fake News Websites Caught Promoting Investment Frauds
A massive network of fraudulent news websites has been uncovered, with cybersecurity researchers identifying over 17,000 Baiting News Sites (BNS) across 50 countries orchestrating sophisticated investment fraud schemes. These malicious platforms masquerade as legitimate news outlets, publishing fabricated stories featuring well-known public figures and respected financial institutions to build trust and lure unsuspecting victims into […]
The post BaitTrap – 17,000+ Fake News Websites Caught Promoting Investment Frauds appeared first on Cyber Security News.
Most cybersecurity risk comes from just 10% of employees
A new report from Living Security and the Cyentia Institute sheds light on the real human element behind cybersecurity threats, and it’s not what most organizations expect. The Risky Business: Who Protects & Who Puts You at Risk report analyzes data from over 100 organizations and challenges conventional thinking by revealing that a small portion of users, just 10 percent, are responsible for nearly 73 percent of all risky behavior in the enterprise. “The riskiest … More →
The post Most cybersecurity risk comes from just 10% of employees appeared first on Help Net Security.