Aggregator
Meta accuses NSO Group of defying spyware injunction, files contempt of court complaint
The company said it spotted a spearphishing campaign linked to the Israeli spyware maker targeting WhatsApp users, despite a court order prohibiting it.
The post Meta accuses NSO Group of defying spyware injunction, files contempt of court complaint appeared first on CyberScoop.
Leboncoin Immobilier Data Leak: 4M French Property Listings Exposed
Armenia’s pro-Europe party wins election despite Russia-linked disinformation
Meta Blocks NSO Group's New WhatsApp Phishing Attack, Files Contempt Order
Hackers Clone Ghidra, dnSpy and Other Tool Sites to Spread Malware
CVE-2026-11516 | UTT HiPER 2610G up to 3.0.0-171107 /goform/formNatStaticMap strcpy NatBinds buffer overflow (EUVD-2026-35066)
CVE-2024-58349 | WP Travel Kit Travelscape 1.0.3 on WordPress unrestricted upload (Exploit 51969 / EUVD-2024-55615)
CVE-2026-11481 | yoanbernabeu grepai up to 0.35.0 Postgres Embedding Cache indexer/chunker.go PostgresStore.LookupByContentHash content_hash weak hash (Issue 249 / EUVD-2026-35012)
CVE-2026-11487 | Neovim up to 0.12.2 View Branch secure.lua M.read path command injection (Issue 39914 / EUVD-2026-35018)
CVE-2026-11492 | D-Link DIR-823G 1.0.2B05 vsftpd /etc/vsftpd.conf least privilege violation (EUVD-2026-35023)
CVE-2026-11465 | songquanpeng one-api up to 0.6.11-preview.7 Redemption Code Top-Up Endpoint model/redemption.go Redeem logic error (Issue 2397 / EUVD-2026-34996)
CVE-2026-11500 | Weaviate up to 1.37.7 Static API Key client.go validateConfig StaticApiKey authorization (Issue 11392 / EUVD-2026-35034)
CVE-2026-11517 | UTT HiPER 2610G up to 3.0.0-171107 formConfigDnsFilterGlobal strcpy GroupName buffer overflow (EUVD-2026-35067)
CVE-2026-11518 | SourceCodester Inventory System 1.0 User Management Page /users.php fullname/username cross site scripting (EUVD-2026-35068)
CVE-2026-11488 | code-projects Simple Flight Ticket Booking System 1.0 POST Parameter checkUser.php Username sql injection (EUVD-2026-35019)
CVE-2026-11493 | Tenda AC15 15.03.05.19 Samba /etc_ro/smb.conf weak password (EUVD-2026-35024)
CVE-2024-58348 | background-image-cropper Background Image Cropper 1.2 PHP File ups.php unrestricted upload (Exploit 51998 / EUVD-2024-55614)
WhatsApp says NSO targeted users with spearfishing attacks in violation of court order
New Linux Kernel Vulnerability Lets Attackers Escalate Privileges to Root
A use-after-free vulnerability in the Linux kernel’s nftables subsystem has been disclosed, enabling unprivileged local attackers to escalate privileges to root on widely deployed distributions including Debian Bookworm, Debian Trixie, Ubuntu 22.04 LTS, and Ubuntu 24.04 LTS. Tracked as CVE-2026-23111, the flaw was discovered in early 2025 and patched upstream on February 5, 2026, via […]
The post New Linux Kernel Vulnerability Lets Attackers Escalate Privileges to Root appeared first on Cyber Security News.