Brevo supply-chain attack injected ClickFix scripts on customer sites
Brevo confirmed that attackers stole a Cloudflare API key and used it to inject malicious ClickFix scripts into …
آسیبپذیریها و تهدیدات روز با رتبهبندی CVSS و شدت — مستقیم از تیم تحلیل تهدیدات سیاره فناوری اطلاعات.
Brevo confirmed that attackers stole a Cloudflare API key and used it to inject malicious ClickFix scripts into …
A new Android malware called RatHat has been discovered, targeting users with an AI-powered subsystem that helps operators …
Check Point Software has released security updates to address a critical vulnerability that can let attackers execute code …
An ongoing malware campaign uses SEO-optimized GitHub repositories to impersonate well-known software firms to push a previously undocumented …
The Gyazo image-sharing platform has confirmed it suffered a data breach after hackers exploited a server vulnerability that …
Overview A vulnerability exists in Sentry Seer when the system is configured to automatically hand issues to a …
Overview A vulnerability in MLflow’s dspy and statsmodels model flavors allows unauthorized pickle deserialization executions despite a safety …
Overview Dokploy versions 0.29.8 and 0.29.11, as well as commit 24b02f5 on the canary branch, are vulnerable to …
Ivanti Pulse Connect Secure contains a use-after-free vulnerability that allow a remote, unauthenticated attacker to execute code via …
Ivanti Pulse Connect Secure contains an unspecified vulnerability in the admin web interface that could allow an authenticated …