Aggregator
Google Releases Patches for 370 Vulnerabilities in Chrome 151
CVE-2026-58156 | Apache Traffic Server up to 8.1.9/9.2.14/10.1.3 privileges management (EUVD-2026-50185 / WID-SEC-2026-2561)
CVE-2026-58157 | Apache Traffic Server up to 8.1.9/9.2.14/10.1.3 information disclosure (WID-SEC-2026-2561)
CVE-2026-58153 | Apache Traffic Server up to 10.1.3 input validation (EUVD-2026-50205 / WID-SEC-2026-2561)
CVE-2026-58154 | Apache Traffic Server up to 8.1.9/9.2.14/10.1.3 out-of-bounds (EUVD-2026-50208 / WID-SEC-2026-2561)
CVE-2026-58152 | Apache Traffic Server up to 8.1.9/9.2.14/10.1.3 HPACK-XPACK Header Decoding buffer overflow (EUVD-2026-50204 / WID-SEC-2026-2561)
CVE-2026-58155 | Apache Traffic Server up to 8.1.9/9.2.14/10.1.3 request smuggling (EUVD-2026-50209 / WID-SEC-2026-2561)
CNCERT:关于“FakeSvc”挖矿组织大规模传播恶意程序的风险提示
工控遇袭!30多个地方供水系统遭协同网络攻击,有水厂临时关停
U.S. CISA adds a Cisco Secure Firewall Management Center (FMC) flaw to its Known Exploited Vulnerabilities catalog
熊本地震导致当地半导体工厂停工
«Антифрод 3.0»: власти хотят обязать иностранные сайты авторизовывать россиян только по номеру телефона
CVE-2026-17650 | Google Chrome up to 150.0.7871.186 Compositing use after free (Nessus ID 330772)
CVE-2026-18017 | Google Chrome up to 150.0.7871.186 Dawn use after free (Nessus ID 330772)
CVE-2025-47436 | Apache ORC up to 1.8.8/1.9.5/2.0.4/2.1.1 C++ LZO Decompression heap-based overflow (EUVD-2025-14947 / Nessus ID 330785)
诚邀渠道合作伙伴共启新征程
层层伪装 暗藏玄机--银狐木马借正规驱动静默接管你的电脑
Linux Cryptomining Campaign Weaponizes PAM to Hide XMRig Botnet Activity
A new Linux cryptomining campaign has surfaced using a rare trick to stay hidden inside compromised networks. Instead of behaving like typical malware, the operators turned a trusted Linux security feature into a tool for covering their tracks. This let them mine Monero cryptocurrency while dodging alerts that usually expose intruders. The attack began in […]
The post Linux Cryptomining Campaign Weaponizes PAM to Hide XMRig Botnet Activity appeared first on Cyber Security News.
Hackers Pose as IT Helpdesk on Microsoft Teams to Deploy Chaos Ransomware
Hackers are abusing Microsoft Teams voice calls and fake IT helpdesk personas to gain remote access to corporate endpoints, drop a custom post‑exploitation toolchain, and, in multiple cases rapidly pivot to Chaos ransomware deployment across North American organizations. Nearly 95% of observed intrusions hit North American targets, with services, manufacturing, energy, construction and IP‑focused legal […]
The post Hackers Pose as IT Helpdesk on Microsoft Teams to Deploy Chaos Ransomware appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.