Aggregator
News alert: OpenSSL conference to convene experts on cryptograohy, compliance and open-source
Newark, NJ, Aug. 4, 2025, CyberNewswire—Early Bird registration is now available for the inaugural OpenSSL Conference, scheduled for October 7–9, 2025, in Prague. The event will bring together leading voices in cryptography, secure systems, and open-source infrastructure. Early registrants … (more…)
The post News alert: OpenSSL conference to convene experts on cryptograohy, compliance and open-source first appeared on The Last Watchdog.
The post News alert: OpenSSL conference to convene experts on cryptograohy, compliance and open-source appeared first on Security Boulevard.
Установили MITRE Caldera? Проверьте ещё раз — доступ «из коробки» может быть не только у вас
记一次完整的内网渗透过程总结
CVE-2018-5715 | SugarCRM 3.5.1 phprint.php key cross site scripting (EDB-43683)
CVE-2018-14840 | Intelliants Subrion CMS 4.2.1 uploads/.htaccess HTM File cross site scripting (EDB-45150)
CVE-2018-5782 | Mitel Connect ONSITE up to R1711-PREM/14.2 Conferencing vsethost.php code injection (EDB-46174)
CVE-2018-11535 | SITEMAKIN SLAC 1.0 users.php my_item_search sql injection (EDB-44793)
CVE-2018-14417 | SoftNAS Cloud up to 4.0.2 Web Administration Console recentVersion os command injection (EDB-45097 / BID-104914)
CVE-2018-19422 | Subrion CMS 4.2.1 /panel/uploads unrestricted upload (Issue 162591 / EDB-49876)
CVE-2018-10258 | Shopy Point of Sale 1.0 CSV File code injection (ID 147362 / EDB-44534)
CVE-2018-12519 | ShopNx up to 2017-11-17 Credentials unrestricted upload (EDB-44978 / ID 2025784)
清华大学 | TrafficFormer: 针对流量数据的有效预训练模型
清华大学 | TrafficFormer: 针对流量数据的有效预训练模型
CVE-2025-47001 | Adobe Experience Manager up to 6.5.22 cross site scripting (apsb25-48)
CVE-2025-41658 | CODESYS Runtime Toolkit prior 3.5.21.20 default permission (VDE-2025-049 / EUVD-2025-23492)
CVE-2025-0932 | Arm Bifrost GPU Userspace Driver use after free (EUVD-2025-23496)
CVE-2025-8504 | code-projects Kitchen Treasure 1.0 /userregistration.php photo unrestricted upload (EUVD-2025-23472)
Researchers Exploited Google kernelCTF Instances And Debian 12 With A 0-Day
Researchers exploited CVE-2025-38001—a previously unknown Use-After-Free (UAF) vulnerability in the Linux HFSC queuing discipline—to compromise all Google kernelCTF instances (LTS, COS, and mitigation) as well as fully patched Debian 12 systems. Their work netted an estimated $82,000 in cumulative bounties and underscores the continuing importance of in-depth code auditing beyond automated fuzzing. Key Takeaways1. NETEM’s […]
The post Researchers Exploited Google kernelCTF Instances And Debian 12 With A 0-Day appeared first on Cyber Security News.