àž£àž§àž¡àžà¹àž²àž§àžàž²àžà¹àž§àž SecurityOnline
#àž£àž§àž¡àžà¹àž²àž§IT #20251218 #securityonline
Mozilla à¹àžàžŽàžàž¢àžžàžà¹àž«àž¡à¹: Firefox à¹àžàž£àžµàž¢àž¡àžàž¥àž²àž¢à¹àžà¹àžà¹àžàž£àž²àž§à¹à¹àžàžàž£à¹àžàž¥àž±àž AI
Mozilla àžàž£àž°àžàž²àžšà¹àžàžàžàž²àž£à¹àž«àžà¹àž àž²àž¢à¹àžà¹àžàž²àž£àžàž³àžàžàž CEO àžàžà¹àž«àž¡à¹ Anthony Enzor-DeMeo àžàžµà¹àžàž°à¹àžàž¥àžµà¹àž¢àž Firefox àžàž²àžà¹àžàž£àž²àž§à¹à¹àžàžàž£à¹à¹àžàžàžàž±à¹àžà¹àžàžŽàž¡à¹àž«à¹àžàž¥àž²àž¢à¹àžà¹àžà¹àžàž¥àžàžàžàž£à¹àž¡àžàžµà¹àžàž±àžà¹àžàž¥àž·à¹àžàžàžà¹àž§àž¢ AI àžàžžàžàž¡àžžà¹àžàž«àž¡àž²àž¢àžàž·àžàžàž²àž£àžàž³à¹àž«à¹ Firefox à¹àž¡à¹à¹àžà¹à¹àžà¹à¹àžàž£àž·à¹àžàžàž¡àž·àžàžà¹àžàžà¹àž§à¹àž à¹àžà¹à¹àžà¹àžàžàž¹à¹àžà¹àž§àž¢àžàž±àžàžàž£àžŽàž¢àž°àžàžµà¹à¹àžà¹àž²à¹àžàžàž¹à¹à¹àžà¹à¹àž¥àž°àžªàž²àž¡àž²àž£àžàžàž£àž±àžà¹àžà¹àžàžàž£àž°àžªàžàžàž²àž£àžà¹àžàžàžà¹àž¥àžà¹à¹àžà¹àžàž¢à¹àž²àžàž¥àž¶àžàžàž¶à¹àž àžàž²àž£à¹àžàž¥àžµà¹àž¢àžà¹àžàž¥àžàžàžµà¹àžªàž°àžà¹àžàžàžàž¶àžàžàž§àž²àž¡àžàž¢àž²àž¢àž²àž¡àžàžàž Mozilla àžàžµà¹àžàž°àžàž¥àž±àžàž¡àž²à¹àžà¹àžàžàž±àžà¹àžàžàž¥àž²àžà¹àžàž£àž²àž§à¹à¹àžàžàž£à¹àžàžµà¹àžàž¹àžàžàž£àžàžàžàž³à¹àžàž¢ Chrome à¹àž¥àž° Edge
https://securityonline.info/mozillas-new-chapter-ceo-anthony-enzor-demeo-to-transform-firefox-into-an-ai-powered-powerhouse
Let’s Encrypt àžàž£àž±àžàž£àž°àžàž TLS à¹àž«àž¡à¹: à¹àžàž£àž±àžàž£àžàžàžªàž±à¹àžàž¥àžà¹àž«àž¥àž·àž 45 àž§àž±àž
Let’s Encrypt àžàž£àž°àžàž²àžšàžàž²àž£à¹àžàž¥àžµà¹àž¢àžà¹àžàž¥àžàžàž£àž±à¹àžà¹àž«àžà¹à¹àžàž£àž°àžàžàžàž²àž£àžàžàžà¹àžàž£àž±àžàž£àžàž TLS à¹àžàž¢àž¥àžàžàž²àž¢àžžàžàž²àž£à¹àžà¹àžàž²àžàžàž²àž 90 àž§àž±àžà¹àž«àž¥àž·àžà¹àžàžµàž¢àž 45 àž§àž±àž àžàž£à¹àžàž¡à¹àžàžŽàžàžàž±àž§à¹àžàž£àžàžªàž£à¹àž²àžà¹àž«àž¡à¹àžàžµà¹à¹àž£àžµàž¢àžàž§à¹àž² Generation Y Hierarchy à¹àž¥àž°àžàž²àž£àž£àžàžàž£àž±àž TLS à¹àžàžà¹àžà¹ IP à¹àžàž¢àžàž£àž àžàž²àž£à¹àžàž¥àžµà¹àž¢àžà¹àžàž¥àžàžàžµà¹àž¡àžµà¹àžà¹àž²àž«àž¡àž²àž¢à¹àžàž·à¹àžà¹àžàžŽà¹àž¡àžàž§àž²àž¡àžàž¥àžàžàž àž±àž¢ àž¥àžàžàž§àž²àž¡à¹àžªàžµà¹àž¢àžàžàž²àžà¹àžàž£àž±àžàž£àžàžàžàžµà¹àžàž¹àžàžà¹àž¡àž¢àž«àž£àž·àžà¹àž¡à¹à¹àžà¹àžàž±àžà¹àžàž à¹àž¥àž°àžàž³à¹àž«à¹àž£àž°àžàžàžàžŽàžà¹àžàžàž£à¹à¹àžà¹àžàž¡àžµàžàž§àž²àž¡àž¢àž·àžàž«àž¢àžžà¹àžàž¡àž²àžàžàž¶à¹àž à¹àž¡à¹àžàž°à¹àžàžŽà¹àž¡àž àž²àž£àž°à¹àž«à¹àžàž¹à¹àžàž¹à¹àž¥àž£àž°àžàž à¹àžà¹àžà¹àžàž·àžà¹àžà¹àžàžà¹àž²àž§àžªàž³àžàž±àžà¹àžàžàž²àž£àž¢àžàž£àž°àžàž±àžàž¡àž²àžàž£àžàž²àžàžàž§àž²àž¡àžàž¥àžàžàž àž±àž¢àžàžàžà¹àž§à¹àžàžàž±à¹àž§à¹àž¥àž
https://securityonline.info/the-45-day-era-begins-lets-encrypt-unveils-generation-y-hierarchy-and-ip-based-tls
àžà¹àžàžà¹àž«àž§à¹àž£à¹àž²àž¢à¹àž£àžà¹àž Apache Commons Text à¹àžªàžµà¹àž¢àžàžàž¹àžàž¢àž¶àžà¹àžàžŽàž£à¹àžà¹àž§àžàž£à¹
à¹àž£àž·à¹àžàžàžàžµà¹à¹àžà¹àžàžàž²àž£àžà¹àžàžàžàžà¹àžàžà¹àž«àž§à¹à¹àž«àž¡à¹à¹àžà¹àž¥àžàž£àž²àž£àžµ Java àžàžµà¹àžàž·à¹àž Apache Commons Text àžàž¶à¹àžàžàž¹àžà¹àžà¹àžàž¢à¹àž²àžà¹àžàž£à¹àž«àž¥àž²àž¢à¹àžàžàž²àž£àžàž±àžàžàž²àž£àžà¹àžàžàž§àž²àž¡ àžà¹àžàžà¹àž«àž§à¹àžàžµà¹àžàž¹àžàž£àž°àžàžžàž§à¹àž² CVE-2025-46295 à¹àž¥àž°àž¡àžµàžàž°à¹àžàžàžàž§àž²àž¡àž£àžžàžà¹àž£àžàžªàž¹àžàžàž¶àž 9.8 à¹àžà¹àž¡ 10 àžàžžàžàžàž±àžàžàž£àž²àž¢àžàž¢àž¹à¹àžàžµà¹àžàž±àžàžà¹àžàž±àž string interpolation àžàžµà¹à¹àžàžŽàžàžà¹àžàžà¹àž«à¹àžàž¹à¹à¹àžàž¡àžàžµàžªàž²àž¡àž²àž£àžàžªà¹àžàžà¹àžàž¡àž¹àž¥àžàžµà¹à¹àž¡à¹àžàž¥àžàžàž àž±àž¢à¹àžà¹àž²àž¡àž²à¹àž¥àž°àžàž³à¹àž«à¹à¹àžàžŽàžàžàž²àž£àž£àž±àžàžàž³àžªàž±à¹àžàžàž²àžàž£àž°àž¢àž°à¹àžàž¥à¹àžà¹ àž¥àž±àžàž©àžàž°àžàžµà¹àžàž¥à¹àž²àž¢àžàž±àžà¹àž«àžàžžàžàž²àž£àžà¹ Log4Shell àžàžµà¹à¹àžàž¢àžªàž£à¹àž²àžàžàž§àž²àž¡à¹àžªàžµàž¢àž«àž²àž¢à¹àž«àžà¹à¹àžàžàžàžµàž àžàžµàž¡àžàž±àžàžàž² FileMaker Server à¹àžà¹àž£àžµàžà¹àžà¹à¹àžà¹àžàž¢àžàž±àžà¹àžàžà¹àžà¹àžà¹àž§àžàž£à¹àžàž±àžà¹àž«àž¡à¹àžàžµà¹àžàž¥àžàžàž àž±àž¢à¹àž¥à¹àž§ à¹àž¥àž°à¹àžàž°àžàž³à¹àž«à¹àžàž¹à¹àžàž¹à¹àž¥àž£àž°àžàžàž£àžµàžàžàž±àžà¹àžàžàžàž±àžàžàžµà¹àžàž·à¹àžàžàžŽàžàžà¹àžàžà¹àž«àž§à¹
https://securityonline.info/cve-2025-46295-cvss-9-8-critical-apache-commons-text-flaw-risks-total-server-takeover
àž«àž¥àžàžàžà¹àž§àž¢à¹àžàžªàž±à¹àžàžàž£àž²àžàž£àžàž¥àžàž¡: à¹àžàž RTO Challan àžàž¹àžàžà¹àžàž¡àž¹àž¥à¹àž¥àž°à¹àžàžŽàž
à¹àžàžàžŽàžà¹àžàžµàž¢àž¡àžµàžàž²àž£à¹àžàž¡àžàžµà¹àž«àž¡à¹àžàžµà¹à¹àžà¹àžàž§àž²àž¡àžàž¥àž±àž§àžàž²àž£à¹àžàžà¹àžàžªàž±à¹àžàžàž£àž²àžàž£àž¡àž²à¹àžà¹àžà¹àžàž£àž·à¹àžàžàž¡àž·àž àž«àž¥àžàžà¹àž«à¹àžàž¹à¹à¹àžà¹àžàž²àž§àžà¹à¹àž«àž¥àžà¹àžàž “RTO Challan” àžà¹àž²àž WhatsApp à¹àžàž¢àžà¹àž²àžàž§à¹àž²à¹àžà¹àžà¹àžàžàžàž²àžàžàž²àž£à¹àžàž·à¹àžàžàž¹àž«àž¥àž±àžàžàž²àžàžàž²àž£àžàž£àž°àžàž³àžàžŽàž à¹àžà¹à¹àžà¹àžàž£àžŽàžà¹àž¥à¹àž§à¹àžà¹àžàž¡àž±àž¥à¹àž§àž£à¹àžàžµà¹àžà¹àžàžàžàž±àž§à¹àž¥àž°àžªàž£à¹àž²àž VPN àžàž¥àžàž¡à¹àžàž·à¹àžàžªà¹àžàžà¹àžàž¡àž¹àž¥àžàžàžà¹àžà¹àžàž¢à¹àž¡à¹àžàž¹àžàžàž£àž§àžàžàž±àž àž¡àž±àžàžªàž²àž¡àž²àž£àžàžà¹àž¡àž¢àžà¹àžàž¡àž¹àž¥àžªà¹àž§àžàžàž±àž§ àžàž±à¹àžà¹àžà¹àžàž±àžàž£ Aadhaar, PAN à¹àžàžàžàžàž¶àžàžà¹àžàž¡àž¹àž¥àžàžàž²àžàž²àž£ à¹àž¥àž°àž¢àž±àžàž«àž¥àžàžà¹àž«à¹àžàž¹à¹à¹àžà¹àžàž£àžàžàžà¹àžàž¡àž¹àž¥àžàž±àžàž£à¹àžàž£àžàžŽàžàžàž£à¹àžàž¡àž£àž«àž±àžª PIN à¹àžàž·à¹àžàžàž³àžàžžàž£àžàž£àž£àž¡àžàž¥àžàž¡à¹àžàžà¹àž£àžµàž¢àž¥à¹àžàž¡à¹ àžàž·àžà¹àžà¹àžàžàž²àž£à¹àžàž¡àžàžµàžàžµà¹àžàžªàž¡àžàžªàž²àžàžàž±à¹àžàž§àžŽàžšàž§àžàž£àž£àž¡àžªàž±àžàžàž¡à¹àž¥àž°à¹àžàžàžàžŽàžàžàž±à¹àžàžªàž¹àž àžàž¹à¹à¹àžà¹àžàž¹àžà¹àžàž·àžàžà¹àž«à¹àž£àž°àž§àž±àžàžà¹àžàžàž§àž²àž¡àžàž²àžà¹àžàžàž£à¹à¹àžàž¥àžà¹àž¥àž°à¹àž¡à¹àžàž²àž§àžà¹à¹àž«àž¥àžà¹àžàžàžàž²àžàž¥àžŽàžàžà¹àžàžµà¹à¹àž¡à¹àžà¹àž²à¹àžàž·à¹àžàžàž·àž
https://securityonline.info/rto-challan-scam-how-a-fake-traffic-ticket-and-a-malicious-vpn-can-drain-your-bank-account
Node.js systeminformation àžàžàžà¹àžàžà¹àž«àž§à¹à¹àžªàžµà¹àž¢àž RCE àžàž Windows
à¹àž¥àžàž£àž²àž£àžµàžàž·à¹àžàžàž±àž systeminformation àžàžµà¹àžàž¹àžàžàž²àž§àžà¹à¹àž«àž¥àžàžàž§à¹àž² 16 àž¥à¹àž²àžàžàž£àž±à¹àžàžà¹àžà¹àžàž·àžàž àžàž¹àžàžàžàžà¹àžàžà¹àž«àž§à¹àž£à¹àž²àž¢à¹àž£àž CVE-2025-68154 à¹àžàž¢à¹àžàžàž²àž°àžàž Windows àžàž±àžàžà¹àžàž±àž fsSize() àžàžµà¹à¹àžà¹àžàž£àž§àžàžªàžàžàžàžàž²àžàžàžŽàžªàžà¹à¹àž¡à¹à¹àžà¹àžàž£àžàžàžà¹àžàž¡àž¹àž¥àžàžŽàžàžàžžàž àžàž³à¹àž«à¹àžàž¹à¹à¹àžàž¡àžàžµàžªàž²àž¡àž²àž£àžà¹àžªà¹àžàž³àžªàž±à¹àž PowerShell à¹àžàžàžàž±àž§àžàž±àžàž©àž£à¹àžàž£àžà¹ à¹àž¥àž°àž£àž±àžàžàž³àžªàž±à¹àžàžàž±àžàžàž£àž²àž¢à¹àžà¹àžàž±àžàžàžµ àžàž¥àžàž£àž°àžàžàžàž·àžàžàž²àž£à¹àžà¹àž²àžàž§àžàžàžžàž¡àž£àž°àžàž àžà¹àž²àžàžà¹àžàž¡àž¹àž¥àž¥àž±àž àž«àž£àž·àžà¹àž¡à¹àžàž£àž°àžàž±à¹àžàžàž¥à¹àžàž¢ ransomware àžàž±àžàžàž±àžàžàž²àžàž¹àžà¹àžàž°àžàž³à¹àž«à¹àžàž±àžà¹àžàžà¹àžà¹àžà¹àž§àžàž£à¹àžàž±àž 5.27.14 àžàžµà¹à¹àžà¹à¹àžà¹àž¥à¹àž§à¹àžàž¢àžà¹àž§àž
https://securityonline.info/node-js-alert-systeminformation-flaw-risks-windows-rce-for-16m-monthly-users
OpenAI à¹àžàž£àžàž² Amazon àžàžàžàžžàžà¹àžàžŽà¹àž¡ 10 àžàž±àžàž¥à¹àž²àž àžàž£à¹àžàž¡à¹àžàž·à¹àžàžà¹àžà¹àžà¹àžàžŽàž AI àžàžàž Amazon
àž¡àžµàž£àž²àž¢àžàž²àžàž§à¹àž² OpenAI àžàž³àž¥àž±àžà¹àžàž£àžàž²àžàž±àž Amazon à¹àžàž·à¹àžàž£àž°àžàž¡àžàžžàžàž¡àž«àž²àžšàž²àž¥àžàž¶àž 10 àžàž±àžàž¥à¹àž²àžàžàžàž¥àž¥àž²àž£à¹ à¹àžàž¢àž¡àžµà¹àžàž·à¹àžàžà¹àžàžªàž³àžàž±àžàžàž·àž OpenAI àžà¹àžàžà¹àžà¹àžàžŽàž AI àžàžàž Amazon à¹àžà¹àž Trainium à¹àž¥àž° Inferentia à¹àžàžàžàž²àž£àžàž¶à¹àžàžàž² NVIDIA àžàžµà¹àž£àž²àžàž²à¹àžàžà¹àž¥àž°àžàž²àžàžàž¥àž²àž àž«àž²àžàžàžµàž¥àžàžµà¹à¹àžàžŽàžàžàž¶à¹àžàžàž£àžŽàžàžàž°à¹àžà¹àžàžàž²àž£àžàž¥àžŽàžà¹àžàž¡àžàž£àž±à¹àžà¹àž«àžà¹ à¹àžàž£àž²àž°àžàž°àžàž³à¹àž«à¹ Amazon à¹àžà¹àžàž²àž£àž¢àž·àžàž¢àž±àžàžàžžàžàž àž²àžàžàžŽàžàžàž²àžàžàž¹à¹à¹àž¥à¹àžàž£àž²àž¢à¹àž«àžà¹àžàžµà¹àžªàžžàžà¹àžàž§àžàžàž²àž£ AI à¹àž¥àž°àž¢àž±àžàžà¹àž§àž¢à¹àž«à¹ OpenAI àž¥àžàžà¹àžàžàžžàžàžàž²àž£àžàž£àž°àž¡àž§àž¥àžàž¥ àžàžàž°à¹àžàžµàž¢àž§àžàž±àžàžà¹àžªàž£à¹àž²àžàžªàž¡àžàžžàž¥àž£àž°àž«àž§à¹àž²àž Microsoft à¹àž¥àž° Amazon à¹àžàžàž²àž£à¹àžà¹àžàžàž±àžàžàž¡àžŽàžàž£àžà¹àž²àžàžàž¥àž²àž§àžà¹
https://securityonline.info/the-10b-pivot-openai-in-talks-for-massive-amazon-funding-but-theres-a-silicon-catch
Cloudflare à¹àžàž¢àž£àž²àž¢àžàž²àžàžàžµ 2025: àžªàžàžàž£àž²àž¡àžàžàž AI à¹àž¥àž°àžàž²àž£àžàž£àž²àžàž£àžàžŽàžà¹àžàžàž£à¹à¹àžà¹àžàžàžžà¹àž 19%
àž£àž²àž¢àžàž²àžàžàž£àž°àžàž³àžàžµàžàžàž Cloudflare àžàžµà¹à¹àž«à¹à¹àž«à¹àžàž§à¹àž²àžàžµ 2025 àžàžŽàžà¹àžàžàž£à¹à¹àžà¹àžàžàž³àž¥àž±àžà¹àžàž¥àžµà¹àž¢àžà¹àžàž¥àžàžàž£àž±à¹àžà¹àž«àžà¹ àžàž£àžŽàž¡àž²àžàžàž²àž£à¹àžà¹àžàž²àžà¹àžàžŽà¹àž¡àžàž¶à¹àž 19% à¹àž¥àž°à¹àžàžŽàž “àžªàžàžàž£àž²àž¡àžàžàž AI” àžàžµà¹à¹àžà¹àžàžàž±àžàžàž±àžà¹àžà¹àžàžà¹àžàž¡àž¹àž¥àžàžàžà¹àž¥àžà¹ à¹àžàž¢ Google àžàž£àžàžàžàž±àžàžàž±àžàž«àžàž¶à¹àžàžà¹àž²àžàžàž²àž£à¹àžà¹àžàžà¹àžàž¡àž¹àž¥àžà¹àž²àž crawler à¹àžàž·à¹àžà¹àžà¹àžàž¶àžà¹àž¡à¹àžàž¥ AI àžàž¢à¹àž²àž Gemini àžàžàž°à¹àžàžµàž¢àž§àžàž±àžàžàžàžà¹àžàž£à¹àž¡à¹à¹àžªàž§àžàž«àž²àžàž³à¹àž£àžàž¥àž±àžàžàž¥àž²àž¢à¹àžà¹àžà¹àžà¹àž²àž«àž¡àž²àž¢à¹àžàž¡àžàžµà¹àžà¹àžàžàž£à¹àž¡àž²àžàžàžµà¹àžªàžžàž à¹àžàž·à¹àžàžàžàž²àžàž¡àžµàžà¹àžàž¡àž¹àž¥àžà¹àžàžà¹àž«àž§à¹àžà¹àžàž²àžàžàž£àž±àžàž¢àž²àžàž£àžà¹àžàžàžàž±àž àž£àž²àž¢àžàž²àžàž¢àž±àžàž£àž°àžàžžàž§à¹àž²àž¡àžµàžàž²àž£à¹àžàž¡àžàžµ DDoS àžàž£àž±à¹àžà¹àž«àžà¹àžàž§à¹àž² 25 àžàž£àž±à¹àžà¹àžàžàžµà¹àžàžµàž¢àž§ à¹àž¥àž°àžàž£àž¶à¹àžàž«àžàž¶à¹àžàžàžàžàžàž²àž£àž«àž¢àžžàžàžàž°àžàž±àžàžàžŽàžà¹àžàžàž£à¹à¹àžà¹àžàžàž±à¹àž§à¹àž¥àžà¹àžàžŽàžàžàž²àžàžàž²àž£àžàž£àž°àžàž³àžàžàžàž£àž±àžàžàž²àž¥ àžàž²àž£à¹àžàž¥àžµà¹àž¢àžà¹àžàž¥àžàžàžµà¹àžªàž°àžà¹àžàžàžàž±à¹àžàžàž§àž²àž¡àžà¹àž²àž§àž«àžà¹àž²à¹àž¥àž°àžàž§àž²àž¡à¹àžàž£àž²àž°àžàž²àžàžàžàžà¹àž¥àžàžàžàžà¹àž¥àžà¹
https://securityonline.info/the-internet-rewired-cloudflare-2025-review-unveils-the-ai-bot-war-and-a-19-traffic-surge
Locked Out of the Cloud: à¹àž¡àž·à¹àžà¹àž®àžà¹àžàžàž£à¹à¹àžà¹ AWS Termination Protection àžàž¥à¹àžàžàž¥àž±àžàžàž£àž°àž¡àž§àž¥àžàž¥à¹àžàžàžžàžàžàž£àžŽàžà¹àž
à¹àž£àž·à¹àžàžàžàžµà¹à¹àžà¹àžàžàž²àž£à¹àžàž¡àžàžµàžàžµà¹àžàž±àžàžà¹àžàžàž¡àž²àžà¹àžà¹àž¥àžàžàž¥àž²àž§àžà¹ à¹àž®àžà¹àžàžàž£à¹à¹àžàž²àž°à¹àžà¹àž²àž¡àž²à¹àžàž£àž°àžàž AWS à¹àžàž¢à¹àžà¹àžàž±àžàžàžµàžàžµà¹àžàž¹àžàžà¹àž¡àž¢ à¹àž¥à¹àž§àž£àžµàž deploy à¹àžàž£àž·à¹àžàžàžàžžàžàžàž£àžŽàžà¹àžàž àž²àž¢à¹àžà¹àž§àž¥àž²à¹àž¡à¹àžàž¶àž 10 àžàž²àžàžµ àžàžžàžàžàžµà¹àžà¹àž²àžàž¥àž±àž§àžàž·àžàžàž§àžà¹àžàž²à¹àžà¹àžàžµà¹àžàžàž£à¹ DryRun à¹àžàž·à¹àžàžàž£àž§àžàžªàžàžàžªàžŽàžàžàžŽà¹à¹àžàž¢à¹àž¡à¹àžàžŽà¹àžàž£à¹àžàžàž£àžàž¢ à¹àž¥àž°à¹àž¡àž·à¹àžà¹àžàž£àž·à¹àžàžàžàžžàžàžàž¹àžàžªàž£à¹àž²àžàžàž¶à¹àž àžàž§àžà¹àžàž²à¹àžàžŽàžàžàž²àž£àžà¹àžàžàžàž±àžàžàž²àž£àž¥àž (termination protection) àžàž³à¹àž«à¹à¹àžà¹àž²àžàžàžàž£àž°àžàžà¹àž¡à¹àžªàž²àž¡àž²àž£àžàž¥àžà¹àžàž£àž·à¹àžàžà¹àžà¹àžàž±àžàžàžµ àžà¹àžàžàžàžŽàžàžàž²àž£àžà¹àžàžàžàž±àžàžà¹àžàžàžàž¶àžàžàž°àžàž±àžàžàž²àž£à¹àžà¹ àžàž±à¹àžàžàž³à¹àž«à¹à¹àž®àžà¹àžàžàž£à¹àž¡àžµà¹àž§àž¥àž²àžàžžàžàžàž£àžŽàžà¹àžà¹àžàžŽà¹àž¡àžàž¶à¹àž àžàžàžàžàž²àžàžàžµà¹àž¢àž±àžàž¡àžµàžàž²àž£àžªàž£à¹àž²àž backdoor àžà¹àž²àž AWS Lambda à¹àž¥àž°à¹àžàž£àžµàž¢àž¡à¹àžà¹ Amazon SES à¹àžàž·à¹àžàžªà¹àžàžàžµà¹àž¡àž¥àžàžŽàžàžàžŽà¹àžàžà¹àžà¹àž à¹àž«àžàžžàžàž²àž£àžà¹àžàžµà¹à¹àž¡à¹à¹àžà¹àžàž²àž£à¹àžàž²àž° AWS à¹àžàž¢àžàž£àž à¹àžà¹à¹àžà¹àžàžàž²àž£à¹àžà¹ credential àžàžµà¹àžàž¹àžàžà¹àž¡àž¢à¹àžàžàž¢à¹àž²àžàžàž²àžàžàž¥àž²àž
https://securityonline.info/locked-out-of-the-cloud-hackers-use-aws-termination-protection-to-hijack-ecs-for-unstoppable-crypto-mining
Blurred Deception: àžàž¥àž¢àžžàžàžà¹àžàžŽàžàžàžŽà¹àžàžàžàžàžàž¥àžžà¹àž¡ APT
àž£àž±àžªà¹àžàžµàž¢àžàžµà¹à¹àžà¹ “à¹àžàžàžªàž²àž£à¹àžàž¥àž” àžàž¥àžžà¹àž¡ APT àžàž²àžàž£àž±àžªà¹àžàžµàž¢àžªà¹àžàžàžµà¹àž¡àž¥àžàž¥àžàž¡à¹àžàžàž·à¹àžàžàž³àžªàž±à¹àžàžàž²àžàžàž£àž°àžàž²àžàž²àžàžŽàžàžàžµ Transnistria à¹àžàž¢à¹àžàžà¹àžàž¥à¹àžàžµà¹àžàž¹à¹àž«àž¡àž·àžàžà¹àžàžàžªàž²àž£àžàž²àžàžàž²àž£ à¹àžà¹à¹àžàž·à¹àžàž«àž²àžàž¹àžàžàž³à¹àž«à¹à¹àžàž¥àžàžà¹àž§àž¢ CSS filter àžàž¹à¹àž£àž±àžàžàž¶àžàžà¹àžàžà¹àžªà¹àžàžµà¹àž¡àž¥à¹àž¥àž°àž£àž«àž±àžªàžà¹àž²àžà¹àžàž·à¹àž “àžàž¥àžàž¥à¹àžàž” à¹àžàžàžªàž²àž£ àžàž¶à¹àžàžàž£àžŽàž ๠à¹àž¥à¹àž§à¹àžà¹àžàžàž²àž£àž«àž¥àžàžàžà¹àž¡àž¢àžà¹àžàž¡àž¹àž¥à¹àžà¹àž²àžªàž¹à¹àž£àž°àžàž àžàž±àžàžà¹àžàž±àž JavaScript àžàžµà¹à¹àžà¹àž¢àž±àžàž¡àžµàž¥àž¹àžà¹àž¥à¹àžàžàž·àžà¹àž¡à¹àž§à¹àž²àž£àž«àž±àžªàžà¹àž²àžàžàž°àžàž¹àžàž«àž£àž·àžàžàžŽàžàžà¹àžàž¹àžàžªà¹àžà¹àžàž¢àž±àžà¹àžàžŽàž£à¹àžà¹àž§àžàž£à¹àžàžàžà¹àž®àžà¹àžàžàž£à¹àžàž¢àž¹à¹àžàžµ à¹àžàž¡à¹àžàžàžàžµà¹à¹àž¡à¹à¹àžà¹àž«àž¢àžžàžà¹àžà¹ Transnistria à¹àžà¹àž¢àž±àžàžàž¢àž²àž¢à¹àžàž¢àž±àžàžàž£àž°à¹àžàžšà¹àžàž¢àžžà¹àž£àžàžàž°àž§àž±àžàžàžàžà¹àž¥àž°àž«àžà¹àž§àž¢àžàž²àž NATO àžà¹àž§àž¢ àžàž·àžà¹àžà¹àžàžàž²àž£à¹àžàž¡àžàžµàžàžµà¹à¹àžà¹àžàž§àž²àž¡à¹àž£à¹àžàžà¹àž§àžà¹àž¥àž°àžàž§àž²àž¡àžàž¢àž²àžàž£àž¹à¹àžàž¢àž²àžà¹àž«à¹àžàžàžàžà¹àž«àž¢àž·à¹àžà¹àžà¹àžàžàž±àž§àž¥à¹àž
https://securityonline.info/blurred-deception-russian-apt-targets-transnistria-and-nato-with-high-pressure-phishing-lures
“Better Auth” Framework Alert: àžà¹àžàžà¹àž«àž§à¹ Double-Slash àžàžµà¹àžàž³à¹àž«à¹àž£àž°àžàžàžà¹àžàžàžàž±àžàžàž±àž
àž¡àžµàžàž²àž£àžà¹àžàžàžàžà¹àžàžà¹àž«àž§à¹àž£à¹àž²àž¢à¹àž£àžà¹àž Better Auth àžàž¶à¹àžà¹àžà¹àž framework àž¢àžàžàžàžŽàž¢àž¡àžªàž³àž«àž£àž±àž TypeScript àžàžµà¹à¹àžà¹àžàž±àžàžàž§à¹àž²àžàžàž§àž²àž àžàž±àžàž«àž²àžàž·àž router àž àž²àž¢à¹àžàžàž·à¹àž rou3 àž¡àžàž URL àžàžµà¹àž¡àžµàž«àž¥àž²àž¢ slash à¹àžà¹àž //sign-in/email àž§à¹àž²à¹àž«àž¡àž·àžàžàžàž±àž /sign-in/email à¹àžà¹àž£àž°àžàžàžà¹àžàžàžàž±àžàžàž²àžàžàž¢à¹àž²àžà¹àž¡à¹à¹àžà¹ normalize URL à¹àžàžà¹àžàžµàž¢àž§àžàž±àž àžàž³à¹àž«à¹à¹àž®àžà¹àžàžàž£à¹àžªàž²àž¡àž²àž£àžà¹àžà¹àž²àžàž¶àž path àžàžµà¹àžàž¹àžàžàžŽàžà¹àž§à¹ àž«àž£àž·àžà¹àž¥àžµà¹àž¢àž rate limit à¹àžà¹àžà¹àž²àž¢ ๠àžà¹àžàžà¹àž«àž§à¹àžàžµà¹àž¡àžµàžàž°à¹àžàž CVSS àžªàž¹àžàžàž¶àž 8.6 à¹àž¥àž°àžàž£àž°àžàžàžàž¹à¹à¹àžà¹àžàž³àžàž§àžàž¡àž²àž àžàž²àž£à¹àžà¹à¹àžàžàž·àžàžàž±àžà¹àžàžà¹àž§àžàž£à¹àžàž±àžà¹àž«àž¡à¹ àž«àž£àž·àžàžàž£àž±àž proxy à¹àž«à¹ normalize URL àžà¹àžàžàžàž¶àžàž£àž°àžàž àž«àž²àžà¹àž¡à¹àžàž³àžà¹à¹àžªàžµà¹àž¢àžàžàžµà¹àž£àž°àžàžàžàž°àžàž¹àžà¹àžàž²àž°àžà¹àž²àžàžà¹àžàžà¹àž«àž§à¹à¹àž¥à¹àž ๠à¹àžà¹àž£à¹àž²àž¢à¹àž£àžàžàžµà¹
https://securityonline.info/better-auth-framework-alert-the-double-slash-trick-that-bypasses-security-controls
Ink Dragon’s Global Mesh: à¹àž¡àž·à¹àžà¹àžàžŽàž£à¹àžà¹àž§àžàž£à¹àž£àž±àžàžàž²àž¥àžàž¹àžà¹àžàž¥àžµà¹àž¢àžà¹àžà¹àžà¹àž«àžàžàžªàžàžà¹àžàž¡
àžàž¥àžžà¹àž¡àžªàžàžà¹àžàž¡à¹àžà¹àžàžàž£à¹àžàž²àžàžàžµàžàžàžµà¹àžàž·à¹àž Ink Dragon à¹àžà¹à¹àžàžàžàžŽàžà¹àž«àž¡à¹à¹àžàžàž²àž£àžªàž£à¹àž²àžà¹àžàž£àž·àžàžà¹àž²àž¢àžªàž±à¹àžàžàž²àž£ à¹àžàž¢à¹àžàž¥àžµà¹àž¢àžà¹àžàžŽàž£à¹àžà¹àž§àžàž£à¹àž£àž±àžàžàž²àž¥àžàžµà¹àžàž¹àžà¹àžàž²àž°à¹àž«à¹àžàž¥àž²àž¢à¹àžà¹àžà¹àž«àžàž relay àžªà¹àžàžà¹àžàžàž³àžªàž±à¹àžà¹àž¥àž°àžà¹àžàž¡àž¹àž¥à¹àžàž¢àž±àžà¹àžà¹àž²àž«àž¡àž²àž¢àžàž·à¹àž ๠àžà¹àž²àžà¹àž¡àžàž¹àž¥ ShadowPad IIS Listener àžàž³à¹àž«à¹àžàž²àž£àžàžŽàžàžàž²àž¡à¹àžàžà¹àžà¹àžà¹àžà¹àž¡à¹à¹àžà¹ à¹àžàž£àž²àž°àžàž³àžªàž±à¹àžàžàž²àžàž§àžŽà¹àžàžà¹àž²àžàž«àž¥àž²àž¢àžàžàžà¹àžàž£àžà¹àžàžàžàž¶àžà¹àžà¹àž²àž«àž¡àž²àž¢àžàž£àžŽàž àžàž§àžà¹àžàž²àž¢àž±àžà¹àžà¹àžà¹àžàžà¹àž«àž§à¹ IIS àžàžµà¹àž£àž¹à¹àžàž±àžàžàž±àžàž¡àž²àžàž²àžà¹àž¥àž° misconfiguration àžàžàž ASP.NET à¹àžàž·à¹àžà¹àžà¹àž²àž¡àž² àžàž²àžàžàž±à¹àžàžàžŽàžàžàž±à¹àž malware àž£àžžà¹àžà¹àž«àž¡à¹àžàžµà¹àžà¹àžàžàžàž²àž£àžªàž·à¹àžàžªàž²àž£àžà¹àž²àž Microsoft Graph API àžàž²àž£àžàž¢àž²àž¢à¹àžà¹àž²àž«àž¡àž²àž¢à¹àžàž¢àž±àžàž¢àžžà¹àž£àžàžàž³à¹àž«à¹àž àž±àž¢àžàžµà¹à¹àž¡à¹à¹àžà¹à¹àžà¹àž£àž°àžàž±àžàž àž¹àž¡àžŽàž àž²àž à¹àžà¹à¹àžà¹àžà¹àžàž£àžàžªàž£à¹àž²àžàžªàžàžà¹àžàž¡àžà¹àž²àž¡àžàž²àžàžŽàžàžµà¹à¹àžà¹à¹àžàž£àžàžªàž£à¹àž²àžàžàžàžà¹àž«àž¢àž·à¹àžà¹àžàžà¹àžà¹àžà¹àžàž£àž·à¹àžàžàž¡àž·àž
https://securityonline.info/ink-dragons-global-mesh-how-chinese-spies-turn-compromised-government-servers-into-c2-relay-nodes
Academic Ambush: à¹àž¡àž·à¹àžàžàž¥àžžà¹àž¡ APT àžàž¥àžàž¡àž£àž²àž¢àžàž²àž “Plagiarism” à¹àžàž·à¹àžà¹àžàž²àž°àž£àž°àžàžàžàž±àžàž§àžŽàžàž²àžàž²àž£
àžàžµà¹àžàž·àžà¹àžàž¡à¹àžàžàžàžµà¹à¹àžà¹àžàž§àž²àž¡àžàž±àžàž§àž¥àžàžàžàžàž±àžàž§àžŽàžàž²àžàž²àž£à¹àžà¹àžàžàž±àž§àž¥à¹àž à¹àž®àžà¹àžàžàž£à¹àžªà¹àžàžàžµà¹àž¡àž¥àžàž¥àžàž¡à¹àžàžàž·à¹àž “Forum Troll APT” à¹àžàž¢àžà¹àž²àžàž§à¹àž²àžàž¥àžàž²àžàžàžàžà¹àž«àž¢àž·à¹àžàžàž¹àžàžàž£àž§àžàžàžàžàž²àž£àž¥àžàžà¹àž¥àžµàž¢àžà¹àžàž àžàž£à¹àžàž¡à¹àžàžà¹àžàž¥à¹ Word àžàžµà¹àžàž¹à¹àž«àž¡àž·àžàžàž£àž²àž¢àžàž²àžàžàž£àž§àžàžªàžàž à¹àžà¹àžàž£àžŽàž ๠à¹àž¥à¹àž§à¹àžà¹àžà¹àžàžàžªàž²àž£àžàžµà¹àžàž±àžà¹àžà¹àžàžàž±àžàžàž£àž²àž¢ à¹àž¡àž·à¹àžà¹àž«àž¢àž·à¹àžà¹àžàžŽàžà¹àžàž¥à¹ à¹àžà¹àžàžàž°àžàž¹àžà¹àž£àžµàž¢àžà¹àžà¹à¹àžàž·à¹àžàžàž²àž§àžà¹à¹àž«àž¥àžàž¡àž±àž¥à¹àž§àž£à¹à¹àžà¹àž²àž¡àž²à¹àžà¹àžàž£àž·à¹àžàžàžàž±àžàžàžµ àžàž²àž£à¹àžàž¡àžàžµàžàžµà¹à¹àž¥à¹àžàžàž±àžàžàž§àž²àž¡àžàž¥àž±àž§à¹àž£àž·à¹àžàžàžàž·à¹àžà¹àžªàžµàž¢àžà¹àž¥àž°àžàž§àž²àž¡àžà¹àž²à¹àžàž·à¹àžàžàž·àžà¹àžàž§àžàž§àžŽàžàž²àžàž²àž£ àžàž³à¹àž«à¹àžàž¹à¹àž£àž±àžàž¡àžµà¹àžàž§à¹àžà¹àž¡à¹àžàžŽàžà¹àžàž¥à¹à¹àžàž¢à¹àž¡à¹àž£àž°àž§àž±àž àžàž·àžà¹àžà¹àžàžàž²àž£à¹àžà¹ “à¹àž£àžàžàžàžàž±àžàžàž²àžàžªàž±àžàžàž¡” à¹àžà¹àžàžàž²àž§àžžàžà¹àžà¹àžàžàž£à¹
https://securityonline.info/academic-ambush-how-the-forum-troll-apt-hijacks-scholars-systems-via-fake-plagiarism-reports
GitHub àž¢àžàž¡àžàžàž¢ àž«àž¥àž±àžàžàž±àžàžàž±àžàžàž²àž£àž§àž¡àžàž¥àž±àžàžà¹àž²àžàžà¹àž²àžàž£àž£àž¡à¹àžàžµàž¢àž¡ Self-Hosted Runner
à¹àž£àž·à¹àžàžàžàžµà¹à¹àž£àžŽà¹àž¡àžàž²àž GitHub àžàž£àž°àžàž²àžšàž§à¹àž²àžàž°à¹àžà¹àžàžà¹àž²àžàž£àž£àž¡à¹àžàžµàž¢àž¡à¹àžàžŽà¹àž¡à¹àžàžŽàž¡àžªàž³àž«àž£àž±àžàžàž²àž£à¹àžà¹àžàž²àž self-hosted runner à¹àž GitHub Actions àžàž±à¹àžà¹àžà¹àž¡àžµàžàž²àžàž¡ 2026 à¹àžàž¢àžàžŽàžàžàž²àžàžµàž¥àž° 0.002 àžàžàž¥àž¥àž²àž£à¹ à¹àž¡à¹àžàž¹à¹à¹àžà¹àžàž°àž¥àžàžàžžàžà¹àžàž£àž·à¹àžàžà¹àžàžà¹àž¥à¹àž§àžà¹àžàž²àž¡ àžà¹àž²àž§àžàžµà¹àžàž³à¹àž«à¹àžàžžàž¡àžàžàžàž±àžàžàž±àžàžàž²àž¥àžžàžàž®àž·àžàžàž±àžàžàžµ à¹àžªàžµàž¢àžàž§àžŽàžàž²àž£àžà¹àžàž±àžà¹àžàžàž±à¹àž§àž§à¹àž²à¹àžà¹àžàžàž²àž£àžàž±àžàžªàžŽàžà¹àžàžàžµà¹à¹àž¡à¹àžàž±àžà¹àžªàžµàž¢àžàžàž¹à¹à¹àžà¹ àžªàžžàžàžà¹àž²àž¢ GitHub àžà¹àžàžàžàžàžàž¡àž²àžàž£àž°àžàž²àžšà¹àž¥àž·à¹àžàžàžàž²àž£à¹àžà¹àžàžà¹àž²àžàž£àž£àž¡à¹àžàžµàž¢àž¡àžàžàžà¹àž àžàž£à¹àžàž¡àž¥àžàž£àž²àžàž²àžªàž³àž«àž£àž±àž runner àžàžµà¹ GitHub à¹àž®àžªàžà¹à¹àžàžàž¥àžàžàž¶àž 39% àžàž±à¹àžà¹àžà¹àžà¹àžàžàžµ 2026 à¹àž¥àž°àž¢à¹àž³àž§à¹àž²àžàž°àžàž¥àž±àžà¹àžàžàž±àžà¹àžªàžµàž¢àžàžàž±àžàžàž±àžàžàž²à¹àž«à¹àž¡àž²àžàžàž¶à¹àžàžà¹àžàžàžàž£àž±àžà¹àžàžà¹àž«àž¡à¹ à¹àž£àž·à¹àžàžàžàžµà¹àžªàž°àžà¹àžàžàž§à¹àž²àžàž¥àž±àžàžàžàžàžàžžàž¡àžàžàžªàž²àž¡àž²àž£àžàžàžàžàž±àžà¹àž«à¹à¹àžàž¥àžàžàžàž£à¹àž¡àž¢àž±àžàž©à¹à¹àž«àžà¹àžà¹àžàžàžàžàžàž§àžàžàž²àž£àžàž±àžàžªàžŽàžà¹àžà¹àžà¹
https://securityonline.info/the-developer-win-github-postpones-self-hosted-runner-fee-after-massive-community-outcry
àžà¹àžàžà¹àž«àž§à¹àž£à¹àž²àž¢à¹àž£àž HPE OneView à¹àžàžŽàžàžàž²àžà¹àž«à¹àž¢àž¶àžàžšàž¹àžàž¢à¹àžà¹àžàž¡àž¹àž¥à¹àžà¹àžàž±àžàžàžµ
Hewlett Packard Enterprise (HPE) à¹àžà¹àžà¹àžàž·àžàžàžà¹àžàžà¹àž«àž§à¹ CVE-2025-37164 àžàžµà¹àž¡àžµàžàž°à¹àžàžàžàž§àž²àž¡àž£àžžàžà¹àž£àžàžªàž¹àžàžªàžžàž 10.0 à¹àžàžàžàžàžà¹à¹àž§àž£à¹ OneView àžàž¶à¹àžà¹àžà¹àžàž«àž±àž§à¹àžà¹àžàžàž²àž£àžàž±àžàžàž²àž£à¹àžàžŽàž£à¹àžà¹àž§àžàž£à¹à¹àž¥àž°àž£àž°àžàžà¹àžàž£àž·àžàžà¹àž²àž¢ àžà¹àžàžà¹àž«àž§à¹àžàžµà¹à¹àžàžŽàžà¹àžàžàž²àžªà¹àž«à¹àžàž¹à¹à¹àžàž¡àžàžµàžàžµà¹à¹àž¡à¹àžà¹àžàžàž¥à¹àžàžàžàžŽàžàžªàž²àž¡àž²àž£àžàžªàž±à¹àžàž£àž±àžà¹àžà¹àžàžàž²àžàž£àž°àž¢àž°à¹àžàž¥à¹àžà¹àžàž±àžàžàžµ à¹àžà¹àž²àžàž±àžàž§à¹àž²àžªàž²àž¡àž²àž£àžàž¢àž¶àžàžšàž¹àžàž¢à¹àžà¹àžàž¡àž¹àž¥àžàž±à¹àžàž£àž°àžàžà¹àžà¹à¹àž¥àž¢ HPE àž£àžµàžàžàžàžà¹àžàžàžà¹ v11.00 à¹àž¥àž°à¹àžàž°àžàž³à¹àž«à¹àžàž¹à¹à¹àžà¹àž£àžµàžàžàž±àžà¹àžàžà¹àžàž¢àžà¹àž§àž àžªàž³àž«àž£àž±àžàžàž¹à¹àžàžµà¹àž¢àž±àžà¹àžà¹à¹àž§àžàž£à¹àžàž±àžà¹àžà¹àž² àž¡àžµ hotfix à¹àž«à¹ à¹àžà¹àžà¹àžàžàž£àž°àž§àž±àžàž§à¹àž²àž«àž¥àž±àžàžàž±àžà¹àžàž£àžàžàž²àžà¹àž§àžàž£à¹àžàž±àžàžà¹àžàžàžàžŽàžàžàž±à¹àžàžà¹àž³àžàžµàžàžàž£àž±à¹àž à¹àž¡à¹à¹àžà¹àžàžàž±à¹àžàžàž°àž¢àž±àžà¹àžªàžµà¹àž¢àžàžàž¢àž¹à¹
https://securityonline.info/cve-2025-37164-cvss-10-0-unauthenticated-hpe-oneview-rce-grants-total-control-over-data-centers
CISA à¹àžàž·àžàžàžà¹àž§àž à¹àž®à¹àžà¹àžàžàž£à¹àžàžµàžà¹àžà¹àžà¹àžàžà¹àž«àž§à¹ Cisco à¹àž¥àž° SonicWall à¹àžàž¡àžàžµàžàž£àžŽàžà¹àž¥à¹àž§
àž«àžà¹àž§àž¢àžàž²àž CISA àžàžàžàžªàž«àž£àž±àžàž¯ àžàžàžàžàž£àž°àžàž²àžšà¹àžàžŽà¹àž¡àžà¹àžàžà¹àž«àž§à¹àž£à¹àž²àž¢à¹àž£àžà¹àžà¹àž²àž£àž²àž¢àžàž²àž£ KEV àž«àž¥àž±àžàžàžàž§à¹àž²àžàž¥àžžà¹àž¡à¹àž®à¹àžà¹àžàžàž£à¹àžàžµàž UAT-9686 àžàž³àž¥àž±àžà¹àžà¹àžà¹àžàžà¹àž«àž§à¹ Cisco Secure Email Gateway àžàžµà¹àž¡àžµàžàž°à¹àžàž 10 à¹àžà¹àž¡à¹àžàžàž²àž£à¹àžà¹àž²àžàž¶àžàž£àž°àžàžà¹àžàž¢à¹àž¡à¹àžà¹àžàžàž¢àž·àžàž¢àž±àžàžàž±àž§àžàž àžàž£à¹àžàž¡àžàžŽàžàžàž±à¹àžàž¡àž±àž¥à¹àž§àž£à¹ AquaShell à¹àž¥àž° AquaPurge à¹àžàž·à¹àžàžà¹àžàžàž£à¹àžàžàž£àžàž¢ àžàžàžàžàž²àžàžàžµà¹àž¢àž±àžàžàžàžàž²àž£à¹àžàž¡àžàžµ SonicWall SMA1000 à¹àžàž¢à¹àžà¹àžà¹àžàžà¹àž«àž§à¹à¹àžàžŽàž¡àž£à¹àž§àž¡àžàž±àžàžà¹àžàžà¹àž«àž§à¹à¹àž«àž¡à¹à¹àžàž·à¹àžàž¢àž¶àžàž£àž°àžàžà¹àžà¹àžàž±à¹àžàž«àž¡àž à¹àž¥àž°àž¢àž±àžàž¡àžµàžàž²àž£àžàž³àžà¹àžàžà¹àž«àž§à¹à¹àžà¹àž²à¹àž ASUS Live Update àžàžµà¹àž«àž¡àžàžàž²àž£àžªàžàž±àžàžªàžàžžàžà¹àž¥à¹àž§àžàž¥àž±àžàž¡àž²à¹àžà¹à¹àžàž¡àžàžµà¹àžàž¥àž±àžàž©àžàž° supply chain àžàžµàžàžà¹àž§àž¢ àžàž³à¹àž«à¹àž«àžà¹àž§àž¢àžàž²àžàž£àž±àžàžà¹àžàžà¹àž£à¹àžà¹àžàžàžà¹àžà¹àžàžà¹àžªà¹àžàžàž²àž¢ 24 àžàž±àžàž§àž²àžàž¡ 2025 https://securityonline.info/cisa-alert-chinese-hackers-weaponize-cvss-10-cisco-zero-day-sonicwall-exploit-chains
à¹àž®à¹àžà¹àžàžàž£à¹àžàžµàž UAT-9686 à¹àžà¹àž¡àž±àž¥à¹àž§àž£à¹ Aqua à¹àžàž²àž° Cisco Secure Email
Cisco Talos à¹àžàžŽàžà¹àžàž¢àž§à¹àž²àžàž¥àžžà¹àž¡ UAT-9686 àžàž³àž¥àž±àžà¹àžà¹àžà¹àžàžà¹àž«àž§à¹ CVE-2025-20393 à¹àž Cisco Secure Email Gateway à¹àž¥àž° Web Manager à¹àžàž·à¹àžà¹àžà¹àž²àžàž¶àžàž£àž°àžàžà¹àžàž£àž°àžàž±àž root à¹àžàž¢àžàž²àžšàž±àž¢àžàž²àž£à¹àžàžŽàžà¹àžà¹àžàž²àžàžàžµà¹àžàžàž£à¹ Spam Quarantine àžàžµà¹à¹àžàž·à¹àžàž¡àžà¹àžàžàžŽàžà¹àžàžàž£à¹à¹àžà¹àž àžàž¶à¹àžàž«àž²àžà¹àžàžŽàžà¹àž§à¹àžàž°àžàž¥àž²àž¢à¹àžà¹àžàžà¹àžàžàžàž²àžà¹àž«à¹à¹àžàž¡àžàžµà¹àžà¹àžàž±àžàžàžµ à¹àž¡àž·à¹àžà¹àžà¹àž²àž¡àž²à¹àž¥à¹àž§àžàž§àžà¹àžàž²àžàžŽàžàžàž±à¹àžàž¡àž±àž¥à¹àž§àž£à¹àžàžžàž “Aqua” à¹àžà¹à¹àžà¹ AquaShell àžàžµà¹àžàž±àžàžàž±àž§à¹àžà¹àžàž¥à¹à¹àžàžŽàž£à¹àžà¹àž§àžàž£à¹, AquaPurge àžàžµà¹àž¥àžàž«àž¥àž±àžàžàž²àžà¹àž log à¹àž¥àž° AquaTunnel àžàžµà¹àžªàž£à¹àž²àžàžàž²àž£à¹àžàž·à¹àžàž¡àžà¹àžàž¢à¹àžàžàžàž¥àž±àžà¹àžàž·à¹àžàž£àž±àžàž©àž²àžàž²àž£à¹àžà¹àž²àžàž¶àž à¹àž¡à¹à¹àžà¹àžà¹àžàžà¹àž«àž§à¹à¹àž¥à¹àž§àžà¹àž¢àž±àžà¹àž¡à¹àžà¹àžàž àž±àž¢ à¹àžàž£àž²àž°àž¡àž±àž¥à¹àž§àž£à¹àžàž±àžàž¥àž¶àžàžàž Cisco à¹àžàž°àžàž³àž§à¹àž²àž«àž²àžàžàž¹àžà¹àžàž²àž°à¹àž¥à¹àž§àžà¹àžàž rebuild à¹àžàž£àž·à¹àžàžà¹àž«àž¡à¹à¹àžà¹àž²àžàž±à¹àž
https://securityonline.info/cisco-zero-day-siege-chinese-group-uat-9686-deploys-aqua-malware-via-cvss-10-root-exploit
SonicWall à¹àžàž·àžàžàžà¹àžàžà¹àž«àž§à¹à¹àž«àž¡à¹àžàž¹àžà¹àžà¹àž£à¹àž§àž¡àžàž±àžàžà¹àžàžà¹àž«àž§à¹à¹àžàžŽàž¡ àž¢àž¶àžàž£àž°àžàžà¹àžà¹à¹àžàž root
SonicWall àžàžàžàžàž£àž°àžàž²àžšàžà¹àž§àžà¹àžàžµà¹àž¢àž§àžàž±àžàžà¹àžàžà¹àž«àž§à¹ CVE-2025-40602 à¹àžàžàžžàžàžàž£àžà¹ SMA1000 à¹àž¡à¹àžàž°à¹àžàž CVSS à¹àžàžµàž¢àž 6.6 à¹àžà¹à¹àž¡àž·à¹àžàžàž¹àžà¹àžà¹àž£à¹àž§àž¡àžàž±àžàžà¹àžàžà¹àž«àž§à¹ CVE-2025-23006 àžàžµà¹àž£à¹àž²àž¢à¹àž£àžàžàž§à¹àž² àžàž°àžàž¥àž²àž¢à¹àžà¹àžàžàž²àž£à¹àžàž¡àžàžµà¹àžàž chain àžàžµà¹àžàž³à¹àž«à¹àžàž¹à¹à¹àžàž¡àžàžµàžªàž²àž¡àž²àž£àžà¹àžà¹àž²àžàž¶àžàž£àž°àžàžà¹àžàž¢à¹àž¡à¹àžà¹àžàžàž¥à¹àžàžàžàžŽàž à¹àž¥àž°àž¢àžàž£àž°àžàž±àžàžªàžŽàžàžàžŽà¹à¹àžà¹àž root à¹àžà¹àžàž±àžàžàžµ à¹àžà¹àž²àžàž±àžàž¢àž¶àžàž£àž°àžàžàžàž±à¹àžàžàžàžà¹àžàž£à¹àžà¹à¹àžàž¢à¹àž¡à¹àžà¹àžàžàž¡àžµàž£àž«àž±àžªàžà¹àž²àž SonicWall à¹àžà¹àžàžàžà¹àžàžàžà¹à¹àž«àž¡à¹à¹àž¥àž°à¹àžàž°àžàž³à¹àž«à¹àžàž¹à¹à¹àžà¹àž£àžµàžàžàž±àžà¹àžàžàžàž±àžàžàžµ àž«àž²àžà¹àž¡à¹àžªàž²àž¡àž²àž£àžàžàž³à¹àžà¹àžàž§àž£àžàžŽàžàžàž²àž£à¹àžà¹àž²àžàž¶àž AMC à¹àž¥àž° SSH àžàž²àžàžàžŽàžà¹àžàžàž£à¹à¹àžà¹àžà¹àžàž·à¹àžàžà¹àžàžàžàž±àžàžàž²àž£à¹àžàž¡àžàžµ
âââââââ https://securityonline.info/zero-day-warning-hackers-chain-sonicwall-sma1000-flaws-for-unauthenticated-root-rce
#àž£àž§àž¡àžà¹àž²àž§IT #20251218 #securityonline
Mozilla à¹àžàžŽàžàž¢àžžàžà¹àž«àž¡à¹: Firefox à¹àžàž£àžµàž¢àž¡àžàž¥àž²àž¢à¹àžà¹àžà¹àžàž£àž²àž§à¹à¹àžàžàž£à¹àžàž¥àž±àž AI
Mozilla àžàž£àž°àžàž²àžšà¹àžàžàžàž²àž£à¹àž«àžà¹àž àž²àž¢à¹àžà¹àžàž²àž£àžàž³àžàžàž CEO àžàžà¹àž«àž¡à¹ Anthony Enzor-DeMeo àžàžµà¹àžàž°à¹àžàž¥àžµà¹àž¢àž Firefox àžàž²àžà¹àžàž£àž²àž§à¹à¹àžàžàž£à¹à¹àžàžàžàž±à¹àžà¹àžàžŽàž¡à¹àž«à¹àžàž¥àž²àž¢à¹àžà¹àžà¹àžàž¥àžàžàžàž£à¹àž¡àžàžµà¹àžàž±àžà¹àžàž¥àž·à¹àžàžàžà¹àž§àž¢ AI àžàžžàžàž¡àžžà¹àžàž«àž¡àž²àž¢àžàž·àžàžàž²àž£àžàž³à¹àž«à¹ Firefox à¹àž¡à¹à¹àžà¹à¹àžà¹à¹àžàž£àž·à¹àžàžàž¡àž·àžàžà¹àžàžà¹àž§à¹àž à¹àžà¹à¹àžà¹àžàžàž¹à¹àžà¹àž§àž¢àžàž±àžàžàž£àžŽàž¢àž°àžàžµà¹à¹àžà¹àž²à¹àžàžàž¹à¹à¹àžà¹à¹àž¥àž°àžªàž²àž¡àž²àž£àžàžàž£àž±àžà¹àžà¹àžàžàž£àž°àžªàžàžàž²àž£àžà¹àžàžàžà¹àž¥àžà¹à¹àžà¹àžàž¢à¹àž²àžàž¥àž¶àžàžàž¶à¹àž àžàž²àž£à¹àžàž¥àžµà¹àž¢àžà¹àžàž¥àžàžàžµà¹àžªàž°àžà¹àžàžàžàž¶àžàžàž§àž²àž¡àžàž¢àž²àž¢àž²àž¡àžàžàž Mozilla àžàžµà¹àžàž°àžàž¥àž±àžàž¡àž²à¹àžà¹àžàžàž±àžà¹àžàžàž¥àž²àžà¹àžàž£àž²àž§à¹à¹àžàžàž£à¹àžàžµà¹àžàž¹àžàžàž£àžàžàžàž³à¹àžàž¢ Chrome à¹àž¥àž° Edge
https://securityonline.info/mozillas-new-chapter-ceo-anthony-enzor-demeo-to-transform-firefox-into-an-ai-powered-powerhouse
Let’s Encrypt àžàž£àž±àžàž£àž°àžàž TLS à¹àž«àž¡à¹: à¹àžàž£àž±àžàž£àžàžàžªàž±à¹àžàž¥àžà¹àž«àž¥àž·àž 45 àž§àž±àž
Let’s Encrypt àžàž£àž°àžàž²àžšàžàž²àž£à¹àžàž¥àžµà¹àž¢àžà¹àžàž¥àžàžàž£àž±à¹àžà¹àž«àžà¹à¹àžàž£àž°àžàžàžàž²àž£àžàžàžà¹àžàž£àž±àžàž£àžàž TLS à¹àžàž¢àž¥àžàžàž²àž¢àžžàžàž²àž£à¹àžà¹àžàž²àžàžàž²àž 90 àž§àž±àžà¹àž«àž¥àž·àžà¹àžàžµàž¢àž 45 àž§àž±àž àžàž£à¹àžàž¡à¹àžàžŽàžàžàž±àž§à¹àžàž£àžàžªàž£à¹àž²àžà¹àž«àž¡à¹àžàžµà¹à¹àž£àžµàž¢àžàž§à¹àž² Generation Y Hierarchy à¹àž¥àž°àžàž²àž£àž£àžàžàž£àž±àž TLS à¹àžàžà¹àžà¹ IP à¹àžàž¢àžàž£àž àžàž²àž£à¹àžàž¥àžµà¹àž¢àžà¹àžàž¥àžàžàžµà¹àž¡àžµà¹àžà¹àž²àž«àž¡àž²àž¢à¹àžàž·à¹àžà¹àžàžŽà¹àž¡àžàž§àž²àž¡àžàž¥àžàžàž àž±àž¢ àž¥àžàžàž§àž²àž¡à¹àžªàžµà¹àž¢àžàžàž²àžà¹àžàž£àž±àžàž£àžàžàžàžµà¹àžàž¹àžàžà¹àž¡àž¢àž«àž£àž·àžà¹àž¡à¹à¹àžà¹àžàž±àžà¹àžàž à¹àž¥àž°àžàž³à¹àž«à¹àž£àž°àžàžàžàžŽàžà¹àžàžàž£à¹à¹àžà¹àžàž¡àžµàžàž§àž²àž¡àž¢àž·àžàž«àž¢àžžà¹àžàž¡àž²àžàžàž¶à¹àž à¹àž¡à¹àžàž°à¹àžàžŽà¹àž¡àž àž²àž£àž°à¹àž«à¹àžàž¹à¹àžàž¹à¹àž¥àž£àž°àžàž à¹àžà¹àžà¹àžàž·àžà¹àžà¹àžàžà¹àž²àž§àžªàž³àžàž±àžà¹àžàžàž²àž£àž¢àžàž£àž°àžàž±àžàž¡àž²àžàž£àžàž²àžàžàž§àž²àž¡àžàž¥àžàžàž àž±àž¢àžàžàžà¹àž§à¹àžàžàž±à¹àž§à¹àž¥àž
https://securityonline.info/the-45-day-era-begins-lets-encrypt-unveils-generation-y-hierarchy-and-ip-based-tls
àžà¹àžàžà¹àž«àž§à¹àž£à¹àž²àž¢à¹àž£àžà¹àž Apache Commons Text à¹àžªàžµà¹àž¢àžàžàž¹àžàž¢àž¶àžà¹àžàžŽàž£à¹àžà¹àž§àžàž£à¹
à¹àž£àž·à¹àžàžàžàžµà¹à¹àžà¹àžàžàž²àž£àžà¹àžàžàžàžà¹àžàžà¹àž«àž§à¹à¹àž«àž¡à¹à¹àžà¹àž¥àžàž£àž²àž£àžµ Java àžàžµà¹àžàž·à¹àž Apache Commons Text àžàž¶à¹àžàžàž¹àžà¹àžà¹àžàž¢à¹àž²àžà¹àžàž£à¹àž«àž¥àž²àž¢à¹àžàžàž²àž£àžàž±àžàžàž²àž£àžà¹àžàžàž§àž²àž¡ àžà¹àžàžà¹àž«àž§à¹àžàžµà¹àžàž¹àžàž£àž°àžàžžàž§à¹àž² CVE-2025-46295 à¹àž¥àž°àž¡àžµàžàž°à¹àžàžàžàž§àž²àž¡àž£àžžàžà¹àž£àžàžªàž¹àžàžàž¶àž 9.8 à¹àžà¹àž¡ 10 àžàžžàžàžàž±àžàžàž£àž²àž¢àžàž¢àž¹à¹àžàžµà¹àžàž±àžàžà¹àžàž±àž string interpolation àžàžµà¹à¹àžàžŽàžàžà¹àžàžà¹àž«à¹àžàž¹à¹à¹àžàž¡àžàžµàžªàž²àž¡àž²àž£àžàžªà¹àžàžà¹àžàž¡àž¹àž¥àžàžµà¹à¹àž¡à¹àžàž¥àžàžàž àž±àž¢à¹àžà¹àž²àž¡àž²à¹àž¥àž°àžàž³à¹àž«à¹à¹àžàžŽàžàžàž²àž£àž£àž±àžàžàž³àžªàž±à¹àžàžàž²àžàž£àž°àž¢àž°à¹àžàž¥à¹àžà¹ àž¥àž±àžàž©àžàž°àžàžµà¹àžàž¥à¹àž²àž¢àžàž±àžà¹àž«àžàžžàžàž²àž£àžà¹ Log4Shell àžàžµà¹à¹àžàž¢àžªàž£à¹àž²àžàžàž§àž²àž¡à¹àžªàžµàž¢àž«àž²àž¢à¹àž«àžà¹à¹àžàžàžàžµàž àžàžµàž¡àžàž±àžàžàž² FileMaker Server à¹àžà¹àž£àžµàžà¹àžà¹à¹àžà¹àžàž¢àžàž±àžà¹àžàžà¹àžà¹àžà¹àž§àžàž£à¹àžàž±àžà¹àž«àž¡à¹àžàžµà¹àžàž¥àžàžàž àž±àž¢à¹àž¥à¹àž§ à¹àž¥àž°à¹àžàž°àžàž³à¹àž«à¹àžàž¹à¹àžàž¹à¹àž¥àž£àž°àžàžàž£àžµàžàžàž±àžà¹àžàžàžàž±àžàžàžµà¹àžàž·à¹àžàžàžŽàžàžà¹àžàžà¹àž«àž§à¹
https://securityonline.info/cve-2025-46295-cvss-9-8-critical-apache-commons-text-flaw-risks-total-server-takeover
àž«àž¥àžàžàžà¹àž§àž¢à¹àžàžªàž±à¹àžàžàž£àž²àžàž£àžàž¥àžàž¡: à¹àžàž RTO Challan àžàž¹àžàžà¹àžàž¡àž¹àž¥à¹àž¥àž°à¹àžàžŽàž
à¹àžàžàžŽàžà¹àžàžµàž¢àž¡àžµàžàž²àž£à¹àžàž¡àžàžµà¹àž«àž¡à¹àžàžµà¹à¹àžà¹àžàž§àž²àž¡àžàž¥àž±àž§àžàž²àž£à¹àžàžà¹àžàžªàž±à¹àžàžàž£àž²àžàž£àž¡àž²à¹àžà¹àžà¹àžàž£àž·à¹àžàžàž¡àž·àž àž«àž¥àžàžà¹àž«à¹àžàž¹à¹à¹àžà¹àžàž²àž§àžà¹à¹àž«àž¥àžà¹àžàž “RTO Challan” àžà¹àž²àž WhatsApp à¹àžàž¢àžà¹àž²àžàž§à¹àž²à¹àžà¹àžà¹àžàžàžàž²àžàžàž²àž£à¹àžàž·à¹àžàžàž¹àž«àž¥àž±àžàžàž²àžàžàž²àž£àžàž£àž°àžàž³àžàžŽàž à¹àžà¹à¹àžà¹àžàž£àžŽàžà¹àž¥à¹àž§à¹àžà¹àžàž¡àž±àž¥à¹àž§àž£à¹àžàžµà¹àžà¹àžàžàžàž±àž§à¹àž¥àž°àžªàž£à¹àž²àž VPN àžàž¥àžàž¡à¹àžàž·à¹àžàžªà¹àžàžà¹àžàž¡àž¹àž¥àžàžàžà¹àžà¹àžàž¢à¹àž¡à¹àžàž¹àžàžàž£àž§àžàžàž±àž àž¡àž±àžàžªàž²àž¡àž²àž£àžàžà¹àž¡àž¢àžà¹àžàž¡àž¹àž¥àžªà¹àž§àžàžàž±àž§ àžàž±à¹àžà¹àžà¹àžàž±àžàž£ Aadhaar, PAN à¹àžàžàžàžàž¶àžàžà¹àžàž¡àž¹àž¥àžàžàž²àžàž²àž£ à¹àž¥àž°àž¢àž±àžàž«àž¥àžàžà¹àž«à¹àžàž¹à¹à¹àžà¹àžàž£àžàžàžà¹àžàž¡àž¹àž¥àžàž±àžàž£à¹àžàž£àžàžŽàžàžàž£à¹àžàž¡àž£àž«àž±àžª PIN à¹àžàž·à¹àžàžàž³àžàžžàž£àžàž£àž£àž¡àžàž¥àžàž¡à¹àžàžà¹àž£àžµàž¢àž¥à¹àžàž¡à¹ àžàž·àžà¹àžà¹àžàžàž²àž£à¹àžàž¡àžàžµàžàžµà¹àžàžªàž¡àžàžªàž²àžàžàž±à¹àžàž§àžŽàžšàž§àžàž£àž£àž¡àžªàž±àžàžàž¡à¹àž¥àž°à¹àžàžàžàžŽàžàžàž±à¹àžàžªàž¹àž àžàž¹à¹à¹àžà¹àžàž¹àžà¹àžàž·àžàžà¹àž«à¹àž£àž°àž§àž±àžàžà¹àžàžàž§àž²àž¡àžàž²àžà¹àžàžàž£à¹à¹àžàž¥àžà¹àž¥àž°à¹àž¡à¹àžàž²àž§àžà¹à¹àž«àž¥àžà¹àžàžàžàž²àžàž¥àžŽàžàžà¹àžàžµà¹à¹àž¡à¹àžà¹àž²à¹àžàž·à¹àžàžàž·àž
https://securityonline.info/rto-challan-scam-how-a-fake-traffic-ticket-and-a-malicious-vpn-can-drain-your-bank-account
Node.js systeminformation àžàžàžà¹àžàžà¹àž«àž§à¹à¹àžªàžµà¹àž¢àž RCE àžàž Windows
à¹àž¥àžàž£àž²àž£àžµàžàž·à¹àžàžàž±àž systeminformation àžàžµà¹àžàž¹àžàžàž²àž§àžà¹à¹àž«àž¥àžàžàž§à¹àž² 16 àž¥à¹àž²àžàžàž£àž±à¹àžàžà¹àžà¹àžàž·àžàž àžàž¹àžàžàžàžà¹àžàžà¹àž«àž§à¹àž£à¹àž²àž¢à¹àž£àž CVE-2025-68154 à¹àžàž¢à¹àžàžàž²àž°àžàž Windows àžàž±àžàžà¹àžàž±àž fsSize() àžàžµà¹à¹àžà¹àžàž£àž§àžàžªàžàžàžàžàž²àžàžàžŽàžªàžà¹à¹àž¡à¹à¹àžà¹àžàž£àžàžàžà¹àžàž¡àž¹àž¥àžàžŽàžàžàžžàž àžàž³à¹àž«à¹àžàž¹à¹à¹àžàž¡àžàžµàžªàž²àž¡àž²àž£àžà¹àžªà¹àžàž³àžªàž±à¹àž PowerShell à¹àžàžàžàž±àž§àžàž±àžàž©àž£à¹àžàž£àžà¹ à¹àž¥àž°àž£àž±àžàžàž³àžªàž±à¹àžàžàž±àžàžàž£àž²àž¢à¹àžà¹àžàž±àžàžàžµ àžàž¥àžàž£àž°àžàžàžàž·àžàžàž²àž£à¹àžà¹àž²àžàž§àžàžàžžàž¡àž£àž°àžàž àžà¹àž²àžàžà¹àžàž¡àž¹àž¥àž¥àž±àž àž«àž£àž·àžà¹àž¡à¹àžàž£àž°àžàž±à¹àžàžàž¥à¹àžàž¢ ransomware àžàž±àžàžàž±àžàžàž²àžàž¹àžà¹àžàž°àžàž³à¹àž«à¹àžàž±àžà¹àžàžà¹àžà¹àžà¹àž§àžàž£à¹àžàž±àž 5.27.14 àžàžµà¹à¹àžà¹à¹àžà¹àž¥à¹àž§à¹àžàž¢àžà¹àž§àž
https://securityonline.info/node-js-alert-systeminformation-flaw-risks-windows-rce-for-16m-monthly-users
OpenAI à¹àžàž£àžàž² Amazon àžàžàžàžžàžà¹àžàžŽà¹àž¡ 10 àžàž±àžàž¥à¹àž²àž àžàž£à¹àžàž¡à¹àžàž·à¹àžàžà¹àžà¹àžà¹àžàžŽàž AI àžàžàž Amazon
àž¡àžµàž£àž²àž¢àžàž²àžàž§à¹àž² OpenAI àžàž³àž¥àž±àžà¹àžàž£àžàž²àžàž±àž Amazon à¹àžàž·à¹àžàž£àž°àžàž¡àžàžžàžàž¡àž«àž²àžšàž²àž¥àžàž¶àž 10 àžàž±àžàž¥à¹àž²àžàžàžàž¥àž¥àž²àž£à¹ à¹àžàž¢àž¡àžµà¹àžàž·à¹àžàžà¹àžàžªàž³àžàž±àžàžàž·àž OpenAI àžà¹àžàžà¹àžà¹àžàžŽàž AI àžàžàž Amazon à¹àžà¹àž Trainium à¹àž¥àž° Inferentia à¹àžàžàžàž²àž£àžàž¶à¹àžàžàž² NVIDIA àžàžµà¹àž£àž²àžàž²à¹àžàžà¹àž¥àž°àžàž²àžàžàž¥àž²àž àž«àž²àžàžàžµàž¥àžàžµà¹à¹àžàžŽàžàžàž¶à¹àžàžàž£àžŽàžàžàž°à¹àžà¹àžàžàž²àž£àžàž¥àžŽàžà¹àžàž¡àžàž£àž±à¹àžà¹àž«àžà¹ à¹àžàž£àž²àž°àžàž°àžàž³à¹àž«à¹ Amazon à¹àžà¹àžàž²àž£àž¢àž·àžàž¢àž±àžàžàžžàžàž àž²àžàžàžŽàžàžàž²àžàžàž¹à¹à¹àž¥à¹àžàž£àž²àž¢à¹àž«àžà¹àžàžµà¹àžªàžžàžà¹àžàž§àžàžàž²àž£ AI à¹àž¥àž°àž¢àž±àžàžà¹àž§àž¢à¹àž«à¹ OpenAI àž¥àžàžà¹àžàžàžžàžàžàž²àž£àžàž£àž°àž¡àž§àž¥àžàž¥ àžàžàž°à¹àžàžµàž¢àž§àžàž±àžàžà¹àžªàž£à¹àž²àžàžªàž¡àžàžžàž¥àž£àž°àž«àž§à¹àž²àž Microsoft à¹àž¥àž° Amazon à¹àžàžàž²àž£à¹àžà¹àžàžàž±àžàžàž¡àžŽàžàž£àžà¹àž²àžàžàž¥àž²àž§àžà¹
https://securityonline.info/the-10b-pivot-openai-in-talks-for-massive-amazon-funding-but-theres-a-silicon-catch
Cloudflare à¹àžàž¢àž£àž²àž¢àžàž²àžàžàžµ 2025: àžªàžàžàž£àž²àž¡àžàžàž AI à¹àž¥àž°àžàž²àž£àžàž£àž²àžàž£àžàžŽàžà¹àžàžàž£à¹à¹àžà¹àžàžàžžà¹àž 19%
àž£àž²àž¢àžàž²àžàžàž£àž°àžàž³àžàžµàžàžàž Cloudflare àžàžµà¹à¹àž«à¹à¹àž«à¹àžàž§à¹àž²àžàžµ 2025 àžàžŽàžà¹àžàžàž£à¹à¹àžà¹àžàžàž³àž¥àž±àžà¹àžàž¥àžµà¹àž¢àžà¹àžàž¥àžàžàž£àž±à¹àžà¹àž«àžà¹ àžàž£àžŽàž¡àž²àžàžàž²àž£à¹àžà¹àžàž²àžà¹àžàžŽà¹àž¡àžàž¶à¹àž 19% à¹àž¥àž°à¹àžàžŽàž “àžªàžàžàž£àž²àž¡àžàžàž AI” àžàžµà¹à¹àžà¹àžàžàž±àžàžàž±àžà¹àžà¹àžàžà¹àžàž¡àž¹àž¥àžàžàžà¹àž¥àžà¹ à¹àžàž¢ Google àžàž£àžàžàžàž±àžàžàž±àžàž«àžàž¶à¹àžàžà¹àž²àžàžàž²àž£à¹àžà¹àžàžà¹àžàž¡àž¹àž¥àžà¹àž²àž crawler à¹àžàž·à¹àžà¹àžà¹àžàž¶àžà¹àž¡à¹àžàž¥ AI àžàž¢à¹àž²àž Gemini àžàžàž°à¹àžàžµàž¢àž§àžàž±àžàžàžàžà¹àžàž£à¹àž¡à¹à¹àžªàž§àžàž«àž²àžàž³à¹àž£àžàž¥àž±àžàžàž¥àž²àž¢à¹àžà¹àžà¹àžà¹àž²àž«àž¡àž²àž¢à¹àžàž¡àžàžµà¹àžà¹àžàžàž£à¹àž¡àž²àžàžàžµà¹àžªàžžàž à¹àžàž·à¹àžàžàžàž²àžàž¡àžµàžà¹àžàž¡àž¹àž¥àžà¹àžàžà¹àž«àž§à¹àžà¹àžàž²àžàžàž£àž±àžàž¢àž²àžàž£àžà¹àžàžàžàž±àž àž£àž²àž¢àžàž²àžàž¢àž±àžàž£àž°àžàžžàž§à¹àž²àž¡àžµàžàž²àž£à¹àžàž¡àžàžµ DDoS àžàž£àž±à¹àžà¹àž«àžà¹àžàž§à¹àž² 25 àžàž£àž±à¹àžà¹àžàžàžµà¹àžàžµàž¢àž§ à¹àž¥àž°àžàž£àž¶à¹àžàž«àžàž¶à¹àžàžàžàžàžàž²àž£àž«àž¢àžžàžàžàž°àžàž±àžàžàžŽàžà¹àžàžàž£à¹à¹àžà¹àžàžàž±à¹àž§à¹àž¥àžà¹àžàžŽàžàžàž²àžàžàž²àž£àžàž£àž°àžàž³àžàžàžàž£àž±àžàžàž²àž¥ àžàž²àž£à¹àžàž¥àžµà¹àž¢àžà¹àžàž¥àžàžàžµà¹àžªàž°àžà¹àžàžàžàž±à¹àžàžàž§àž²àž¡àžà¹àž²àž§àž«àžà¹àž²à¹àž¥àž°àžàž§àž²àž¡à¹àžàž£àž²àž°àžàž²àžàžàžàžà¹àž¥àžàžàžàžà¹àž¥àžà¹
https://securityonline.info/the-internet-rewired-cloudflare-2025-review-unveils-the-ai-bot-war-and-a-19-traffic-surge
Locked Out of the Cloud: à¹àž¡àž·à¹àžà¹àž®àžà¹àžàžàž£à¹à¹àžà¹ AWS Termination Protection àžàž¥à¹àžàžàž¥àž±àžàžàž£àž°àž¡àž§àž¥àžàž¥à¹àžàžàžžàžàžàž£àžŽàžà¹àž
à¹àž£àž·à¹àžàžàžàžµà¹à¹àžà¹àžàžàž²àž£à¹àžàž¡àžàžµàžàžµà¹àžàž±àžàžà¹àžàžàž¡àž²àžà¹àžà¹àž¥àžàžàž¥àž²àž§àžà¹ à¹àž®àžà¹àžàžàž£à¹à¹àžàž²àž°à¹àžà¹àž²àž¡àž²à¹àžàž£àž°àžàž AWS à¹àžàž¢à¹àžà¹àžàž±àžàžàžµàžàžµà¹àžàž¹àžàžà¹àž¡àž¢ à¹àž¥à¹àž§àž£àžµàž deploy à¹àžàž£àž·à¹àžàžàžàžžàžàžàž£àžŽàžà¹àžàž àž²àž¢à¹àžà¹àž§àž¥àž²à¹àž¡à¹àžàž¶àž 10 àžàž²àžàžµ àžàžžàžàžàžµà¹àžà¹àž²àžàž¥àž±àž§àžàž·àžàžàž§àžà¹àžàž²à¹àžà¹àžàžµà¹àžàžàž£à¹ DryRun à¹àžàž·à¹àžàžàž£àž§àžàžªàžàžàžªàžŽàžàžàžŽà¹à¹àžàž¢à¹àž¡à¹àžàžŽà¹àžàž£à¹àžàžàž£àžàž¢ à¹àž¥àž°à¹àž¡àž·à¹àžà¹àžàž£àž·à¹àžàžàžàžžàžàžàž¹àžàžªàž£à¹àž²àžàžàž¶à¹àž àžàž§àžà¹àžàž²à¹àžàžŽàžàžàž²àž£àžà¹àžàžàžàž±àžàžàž²àž£àž¥àž (termination protection) àžàž³à¹àž«à¹à¹àžà¹àž²àžàžàžàž£àž°àžàžà¹àž¡à¹àžªàž²àž¡àž²àž£àžàž¥àžà¹àžàž£àž·à¹àžàžà¹àžà¹àžàž±àžàžàžµ àžà¹àžàžàžàžŽàžàžàž²àž£àžà¹àžàžàžàž±àžàžà¹àžàžàžàž¶àžàžàž°àžàž±àžàžàž²àž£à¹àžà¹ àžàž±à¹àžàžàž³à¹àž«à¹à¹àž®àžà¹àžàžàž£à¹àž¡àžµà¹àž§àž¥àž²àžàžžàžàžàž£àžŽàžà¹àžà¹àžàžŽà¹àž¡àžàž¶à¹àž àžàžàžàžàž²àžàžàžµà¹àž¢àž±àžàž¡àžµàžàž²àž£àžªàž£à¹àž²àž backdoor àžà¹àž²àž AWS Lambda à¹àž¥àž°à¹àžàž£àžµàž¢àž¡à¹àžà¹ Amazon SES à¹àžàž·à¹àžàžªà¹àžàžàžµà¹àž¡àž¥àžàžŽàžàžàžŽà¹àžàžà¹àžà¹àž à¹àž«àžàžžàžàž²àž£àžà¹àžàžµà¹à¹àž¡à¹à¹àžà¹àžàž²àž£à¹àžàž²àž° AWS à¹àžàž¢àžàž£àž à¹àžà¹à¹àžà¹àžàžàž²àž£à¹àžà¹ credential àžàžµà¹àžàž¹àžàžà¹àž¡àž¢à¹àžàžàž¢à¹àž²àžàžàž²àžàžàž¥àž²àž
https://securityonline.info/locked-out-of-the-cloud-hackers-use-aws-termination-protection-to-hijack-ecs-for-unstoppable-crypto-mining
Blurred Deception: àžàž¥àž¢àžžàžàžà¹àžàžŽàžàžàžŽà¹àžàžàžàžàžàž¥àžžà¹àž¡ APT
àž£àž±àžªà¹àžàžµàž¢àžàžµà¹à¹àžà¹ “à¹àžàžàžªàž²àž£à¹àžàž¥àž” àžàž¥àžžà¹àž¡ APT àžàž²àžàž£àž±àžªà¹àžàžµàž¢àžªà¹àžàžàžµà¹àž¡àž¥àžàž¥àžàž¡à¹àžàžàž·à¹àžàžàž³àžªàž±à¹àžàžàž²àžàžàž£àž°àžàž²àžàž²àžàžŽàžàžàžµ Transnistria à¹àžàž¢à¹àžàžà¹àžàž¥à¹àžàžµà¹àžàž¹à¹àž«àž¡àž·àžàžà¹àžàžàžªàž²àž£àžàž²àžàžàž²àž£ à¹àžà¹à¹àžàž·à¹àžàž«àž²àžàž¹àžàžàž³à¹àž«à¹à¹àžàž¥àžàžà¹àž§àž¢ CSS filter àžàž¹à¹àž£àž±àžàžàž¶àžàžà¹àžàžà¹àžªà¹àžàžµà¹àž¡àž¥à¹àž¥àž°àž£àž«àž±àžªàžà¹àž²àžà¹àžàž·à¹àž “àžàž¥àžàž¥à¹àžàž” à¹àžàžàžªàž²àž£ àžàž¶à¹àžàžàž£àžŽàž ๠à¹àž¥à¹àž§à¹àžà¹àžàžàž²àž£àž«àž¥àžàžàžà¹àž¡àž¢àžà¹àžàž¡àž¹àž¥à¹àžà¹àž²àžªàž¹à¹àž£àž°àžàž àžàž±àžàžà¹àžàž±àž JavaScript àžàžµà¹à¹àžà¹àž¢àž±àžàž¡àžµàž¥àž¹àžà¹àž¥à¹àžàžàž·àžà¹àž¡à¹àž§à¹àž²àž£àž«àž±àžªàžà¹àž²àžàžàž°àžàž¹àžàž«àž£àž·àžàžàžŽàžàžà¹àžàž¹àžàžªà¹àžà¹àžàž¢àž±àžà¹àžàžŽàž£à¹àžà¹àž§àžàž£à¹àžàžàžà¹àž®àžà¹àžàžàž£à¹àžàž¢àž¹à¹àžàžµ à¹àžàž¡à¹àžàžàžàžµà¹à¹àž¡à¹à¹àžà¹àž«àž¢àžžàžà¹àžà¹ Transnistria à¹àžà¹àž¢àž±àžàžàž¢àž²àž¢à¹àžàž¢àž±àžàžàž£àž°à¹àžàžšà¹àžàž¢àžžà¹àž£àžàžàž°àž§àž±àžàžàžàžà¹àž¥àž°àž«àžà¹àž§àž¢àžàž²àž NATO àžà¹àž§àž¢ àžàž·àžà¹àžà¹àžàžàž²àž£à¹àžàž¡àžàžµàžàžµà¹à¹àžà¹àžàž§àž²àž¡à¹àž£à¹àžàžà¹àž§àžà¹àž¥àž°àžàž§àž²àž¡àžàž¢àž²àžàž£àž¹à¹àžàž¢àž²àžà¹àž«à¹àžàžàžàžà¹àž«àž¢àž·à¹àžà¹àžà¹àžàžàž±àž§àž¥à¹àž
https://securityonline.info/blurred-deception-russian-apt-targets-transnistria-and-nato-with-high-pressure-phishing-lures
“Better Auth” Framework Alert: àžà¹àžàžà¹àž«àž§à¹ Double-Slash àžàžµà¹àžàž³à¹àž«à¹àž£àž°àžàžàžà¹àžàžàžàž±àžàžàž±àž
àž¡àžµàžàž²àž£àžà¹àžàžàžàžà¹àžàžà¹àž«àž§à¹àž£à¹àž²àž¢à¹àž£àžà¹àž Better Auth àžàž¶à¹àžà¹àžà¹àž framework àž¢àžàžàžàžŽàž¢àž¡àžªàž³àž«àž£àž±àž TypeScript àžàžµà¹à¹àžà¹àžàž±àžàžàž§à¹àž²àžàžàž§àž²àž àžàž±àžàž«àž²àžàž·àž router àž àž²àž¢à¹àžàžàž·à¹àž rou3 àž¡àžàž URL àžàžµà¹àž¡àžµàž«àž¥àž²àž¢ slash à¹àžà¹àž //sign-in/email àž§à¹àž²à¹àž«àž¡àž·àžàžàžàž±àž /sign-in/email à¹àžà¹àž£àž°àžàžàžà¹àžàžàžàž±àžàžàž²àžàžàž¢à¹àž²àžà¹àž¡à¹à¹àžà¹ normalize URL à¹àžàžà¹àžàžµàž¢àž§àžàž±àž àžàž³à¹àž«à¹à¹àž®àžà¹àžàžàž£à¹àžªàž²àž¡àž²àž£àžà¹àžà¹àž²àžàž¶àž path àžàžµà¹àžàž¹àžàžàžŽàžà¹àž§à¹ àž«àž£àž·àžà¹àž¥àžµà¹àž¢àž rate limit à¹àžà¹àžà¹àž²àž¢ ๠àžà¹àžàžà¹àž«àž§à¹àžàžµà¹àž¡àžµàžàž°à¹àžàž CVSS àžªàž¹àžàžàž¶àž 8.6 à¹àž¥àž°àžàž£àž°àžàžàžàž¹à¹à¹àžà¹àžàž³àžàž§àžàž¡àž²àž àžàž²àž£à¹àžà¹à¹àžàžàž·àžàžàž±àžà¹àžàžà¹àž§àžàž£à¹àžàž±àžà¹àž«àž¡à¹ àž«àž£àž·àžàžàž£àž±àž proxy à¹àž«à¹ normalize URL àžà¹àžàžàžàž¶àžàž£àž°àžàž àž«àž²àžà¹àž¡à¹àžàž³àžà¹à¹àžªàžµà¹àž¢àžàžàžµà¹àž£àž°àžàžàžàž°àžàž¹àžà¹àžàž²àž°àžà¹àž²àžàžà¹àžàžà¹àž«àž§à¹à¹àž¥à¹àž ๠à¹àžà¹àž£à¹àž²àž¢à¹àž£àžàžàžµà¹
https://securityonline.info/better-auth-framework-alert-the-double-slash-trick-that-bypasses-security-controls
Ink Dragon’s Global Mesh: à¹àž¡àž·à¹àžà¹àžàžŽàž£à¹àžà¹àž§àžàž£à¹àž£àž±àžàžàž²àž¥àžàž¹àžà¹àžàž¥àžµà¹àž¢àžà¹àžà¹àžà¹àž«àžàžàžªàžàžà¹àžàž¡
àžàž¥àžžà¹àž¡àžªàžàžà¹àžàž¡à¹àžà¹àžàžàž£à¹àžàž²àžàžàžµàžàžàžµà¹àžàž·à¹àž Ink Dragon à¹àžà¹à¹àžàžàžàžŽàžà¹àž«àž¡à¹à¹àžàžàž²àž£àžªàž£à¹àž²àžà¹àžàž£àž·àžàžà¹àž²àž¢àžªàž±à¹àžàžàž²àž£ à¹àžàž¢à¹àžàž¥àžµà¹àž¢àžà¹àžàžŽàž£à¹àžà¹àž§àžàž£à¹àž£àž±àžàžàž²àž¥àžàžµà¹àžàž¹àžà¹àžàž²àž°à¹àž«à¹àžàž¥àž²àž¢à¹àžà¹àžà¹àž«àžàž relay àžªà¹àžàžà¹àžàžàž³àžªàž±à¹àžà¹àž¥àž°àžà¹àžàž¡àž¹àž¥à¹àžàž¢àž±àžà¹àžà¹àž²àž«àž¡àž²àž¢àžàž·à¹àž ๠àžà¹àž²àžà¹àž¡àžàž¹àž¥ ShadowPad IIS Listener àžàž³à¹àž«à¹àžàž²àž£àžàžŽàžàžàž²àž¡à¹àžàžà¹àžà¹àžà¹àžà¹àž¡à¹à¹àžà¹ à¹àžàž£àž²àž°àžàž³àžªàž±à¹àžàžàž²àžàž§àžŽà¹àžàžà¹àž²àžàž«àž¥àž²àž¢àžàžàžà¹àžàž£àžà¹àžàžàžàž¶àžà¹àžà¹àž²àž«àž¡àž²àž¢àžàž£àžŽàž àžàž§àžà¹àžàž²àž¢àž±àžà¹àžà¹àžà¹àžàžà¹àž«àž§à¹ IIS àžàžµà¹àž£àž¹à¹àžàž±àžàžàž±àžàž¡àž²àžàž²àžà¹àž¥àž° misconfiguration àžàžàž ASP.NET à¹àžàž·à¹àžà¹àžà¹àž²àž¡àž² àžàž²àžàžàž±à¹àžàžàžŽàžàžàž±à¹àž malware àž£àžžà¹àžà¹àž«àž¡à¹àžàžµà¹àžà¹àžàžàžàž²àž£àžªàž·à¹àžàžªàž²àž£àžà¹àž²àž Microsoft Graph API àžàž²àž£àžàž¢àž²àž¢à¹àžà¹àž²àž«àž¡àž²àž¢à¹àžàž¢àž±àžàž¢àžžà¹àž£àžàžàž³à¹àž«à¹àž àž±àž¢àžàžµà¹à¹àž¡à¹à¹àžà¹à¹àžà¹àž£àž°àžàž±àžàž àž¹àž¡àžŽàž àž²àž à¹àžà¹à¹àžà¹àžà¹àžàž£àžàžªàž£à¹àž²àžàžªàžàžà¹àžàž¡àžà¹àž²àž¡àžàž²àžàžŽàžàžµà¹à¹àžà¹à¹àžàž£àžàžªàž£à¹àž²àžàžàžàžà¹àž«àž¢àž·à¹àžà¹àžàžà¹àžà¹àžà¹àžàž£àž·à¹àžàžàž¡àž·àž
https://securityonline.info/ink-dragons-global-mesh-how-chinese-spies-turn-compromised-government-servers-into-c2-relay-nodes
Academic Ambush: à¹àž¡àž·à¹àžàžàž¥àžžà¹àž¡ APT àžàž¥àžàž¡àž£àž²àž¢àžàž²àž “Plagiarism” à¹àžàž·à¹àžà¹àžàž²àž°àž£àž°àžàžàžàž±àžàž§àžŽàžàž²àžàž²àž£
àžàžµà¹àžàž·àžà¹àžàž¡à¹àžàžàžàžµà¹à¹àžà¹àžàž§àž²àž¡àžàž±àžàž§àž¥àžàžàžàžàž±àžàž§àžŽàžàž²àžàž²àž£à¹àžà¹àžàžàž±àž§àž¥à¹àž à¹àž®àžà¹àžàžàž£à¹àžªà¹àžàžàžµà¹àž¡àž¥àžàž¥àžàž¡à¹àžàžàž·à¹àž “Forum Troll APT” à¹àžàž¢àžà¹àž²àžàž§à¹àž²àžàž¥àžàž²àžàžàžàžà¹àž«àž¢àž·à¹àžàžàž¹àžàžàž£àž§àžàžàžàžàž²àž£àž¥àžàžà¹àž¥àžµàž¢àžà¹àžàž àžàž£à¹àžàž¡à¹àžàžà¹àžàž¥à¹ Word àžàžµà¹àžàž¹à¹àž«àž¡àž·àžàžàž£àž²àž¢àžàž²àžàžàž£àž§àžàžªàžàž à¹àžà¹àžàž£àžŽàž ๠à¹àž¥à¹àž§à¹àžà¹àžà¹àžàžàžªàž²àž£àžàžµà¹àžàž±àžà¹àžà¹àžàžàž±àžàžàž£àž²àž¢ à¹àž¡àž·à¹àžà¹àž«àž¢àž·à¹àžà¹àžàžŽàžà¹àžàž¥à¹ à¹àžà¹àžàžàž°àžàž¹àžà¹àž£àžµàž¢àžà¹àžà¹à¹àžàž·à¹àžàžàž²àž§àžà¹à¹àž«àž¥àžàž¡àž±àž¥à¹àž§àž£à¹à¹àžà¹àž²àž¡àž²à¹àžà¹àžàž£àž·à¹àžàžàžàž±àžàžàžµ àžàž²àž£à¹àžàž¡àžàžµàžàžµà¹à¹àž¥à¹àžàžàž±àžàžàž§àž²àž¡àžàž¥àž±àž§à¹àž£àž·à¹àžàžàžàž·à¹àžà¹àžªàžµàž¢àžà¹àž¥àž°àžàž§àž²àž¡àžà¹àž²à¹àžàž·à¹àžàžàž·àžà¹àžàž§àžàž§àžŽàžàž²àžàž²àž£ àžàž³à¹àž«à¹àžàž¹à¹àž£àž±àžàž¡àžµà¹àžàž§à¹àžà¹àž¡à¹àžàžŽàžà¹àžàž¥à¹à¹àžàž¢à¹àž¡à¹àž£àž°àž§àž±àž àžàž·àžà¹àžà¹àžàžàž²àž£à¹àžà¹ “à¹àž£àžàžàžàžàž±àžàžàž²àžàžªàž±àžàžàž¡” à¹àžà¹àžàžàž²àž§àžžàžà¹àžà¹àžàžàž£à¹
https://securityonline.info/academic-ambush-how-the-forum-troll-apt-hijacks-scholars-systems-via-fake-plagiarism-reports
GitHub àž¢àžàž¡àžàžàž¢ àž«àž¥àž±àžàžàž±àžàžàž±àžàžàž²àž£àž§àž¡àžàž¥àž±àžàžà¹àž²àžàžà¹àž²àžàž£àž£àž¡à¹àžàžµàž¢àž¡ Self-Hosted Runner
à¹àž£àž·à¹àžàžàžàžµà¹à¹àž£àžŽà¹àž¡àžàž²àž GitHub àžàž£àž°àžàž²àžšàž§à¹àž²àžàž°à¹àžà¹àžàžà¹àž²àžàž£àž£àž¡à¹àžàžµàž¢àž¡à¹àžàžŽà¹àž¡à¹àžàžŽàž¡àžªàž³àž«àž£àž±àžàžàž²àž£à¹àžà¹àžàž²àž self-hosted runner à¹àž GitHub Actions àžàž±à¹àžà¹àžà¹àž¡àžµàžàž²àžàž¡ 2026 à¹àžàž¢àžàžŽàžàžàž²àžàžµàž¥àž° 0.002 àžàžàž¥àž¥àž²àž£à¹ à¹àž¡à¹àžàž¹à¹à¹àžà¹àžàž°àž¥àžàžàžžàžà¹àžàž£àž·à¹àžàžà¹àžàžà¹àž¥à¹àž§àžà¹àžàž²àž¡ àžà¹àž²àž§àžàžµà¹àžàž³à¹àž«à¹àžàžžàž¡àžàžàžàž±àžàžàž±àžàžàž²àž¥àžžàžàž®àž·àžàžàž±àžàžàžµ à¹àžªàžµàž¢àžàž§àžŽàžàž²àž£àžà¹àžàž±àžà¹àžàžàž±à¹àž§àž§à¹àž²à¹àžà¹àžàžàž²àž£àžàž±àžàžªàžŽàžà¹àžàžàžµà¹à¹àž¡à¹àžàž±àžà¹àžªàžµàž¢àžàžàž¹à¹à¹àžà¹ àžªàžžàžàžà¹àž²àž¢ GitHub àžà¹àžàžàžàžàžàž¡àž²àžàž£àž°àžàž²àžšà¹àž¥àž·à¹àžàžàžàž²àž£à¹àžà¹àžàžà¹àž²àžàž£àž£àž¡à¹àžàžµàž¢àž¡àžàžàžà¹àž àžàž£à¹àžàž¡àž¥àžàž£àž²àžàž²àžªàž³àž«àž£àž±àž runner àžàžµà¹ GitHub à¹àž®àžªàžà¹à¹àžàžàž¥àžàžàž¶àž 39% àžàž±à¹àžà¹àžà¹àžà¹àžàžàžµ 2026 à¹àž¥àž°àž¢à¹àž³àž§à¹àž²àžàž°àžàž¥àž±àžà¹àžàžàž±àžà¹àžªàžµàž¢àžàžàž±àžàžàž±àžàžàž²à¹àž«à¹àž¡àž²àžàžàž¶à¹àžàžà¹àžàžàžàž£àž±àžà¹àžàžà¹àž«àž¡à¹ à¹àž£àž·à¹àžàžàžàžµà¹àžªàž°àžà¹àžàžàž§à¹àž²àžàž¥àž±àžàžàžàžàžàžžàž¡àžàžàžªàž²àž¡àž²àž£àžàžàžàžàž±àžà¹àž«à¹à¹àžàž¥àžàžàžàž£à¹àž¡àž¢àž±àžàž©à¹à¹àž«àžà¹àžà¹àžàžàžàžàžàž§àžàžàž²àž£àžàž±àžàžªàžŽàžà¹àžà¹àžà¹
https://securityonline.info/the-developer-win-github-postpones-self-hosted-runner-fee-after-massive-community-outcry
àžà¹àžàžà¹àž«àž§à¹àž£à¹àž²àž¢à¹àž£àž HPE OneView à¹àžàžŽàžàžàž²àžà¹àž«à¹àž¢àž¶àžàžšàž¹àžàž¢à¹àžà¹àžàž¡àž¹àž¥à¹àžà¹àžàž±àžàžàžµ
Hewlett Packard Enterprise (HPE) à¹àžà¹àžà¹àžàž·àžàžàžà¹àžàžà¹àž«àž§à¹ CVE-2025-37164 àžàžµà¹àž¡àžµàžàž°à¹àžàžàžàž§àž²àž¡àž£àžžàžà¹àž£àžàžªàž¹àžàžªàžžàž 10.0 à¹àžàžàžàžàžà¹à¹àž§àž£à¹ OneView àžàž¶à¹àžà¹àžà¹àžàž«àž±àž§à¹àžà¹àžàžàž²àž£àžàž±àžàžàž²àž£à¹àžàžŽàž£à¹àžà¹àž§àžàž£à¹à¹àž¥àž°àž£àž°àžàžà¹àžàž£àž·àžàžà¹àž²àž¢ àžà¹àžàžà¹àž«àž§à¹àžàžµà¹à¹àžàžŽàžà¹àžàžàž²àžªà¹àž«à¹àžàž¹à¹à¹àžàž¡àžàžµàžàžµà¹à¹àž¡à¹àžà¹àžàžàž¥à¹àžàžàžàžŽàžàžªàž²àž¡àž²àž£àžàžªàž±à¹àžàž£àž±àžà¹àžà¹àžàžàž²àžàž£àž°àž¢àž°à¹àžàž¥à¹àžà¹àžàž±àžàžàžµ à¹àžà¹àž²àžàž±àžàž§à¹àž²àžªàž²àž¡àž²àž£àžàž¢àž¶àžàžšàž¹àžàž¢à¹àžà¹àžàž¡àž¹àž¥àžàž±à¹àžàž£àž°àžàžà¹àžà¹à¹àž¥àž¢ HPE àž£àžµàžàžàžàžà¹àžàžàžà¹ v11.00 à¹àž¥àž°à¹àžàž°àžàž³à¹àž«à¹àžàž¹à¹à¹àžà¹àž£àžµàžàžàž±àžà¹àžàžà¹àžàž¢àžà¹àž§àž àžªàž³àž«àž£àž±àžàžàž¹à¹àžàžµà¹àž¢àž±àžà¹àžà¹à¹àž§àžàž£à¹àžàž±àžà¹àžà¹àž² àž¡àžµ hotfix à¹àž«à¹ à¹àžà¹àžà¹àžàžàž£àž°àž§àž±àžàž§à¹àž²àž«àž¥àž±àžàžàž±àžà¹àžàž£àžàžàž²àžà¹àž§àžàž£à¹àžàž±àžàžà¹àžàžàžàžŽàžàžàž±à¹àžàžà¹àž³àžàžµàžàžàž£àž±à¹àž à¹àž¡à¹à¹àžà¹àžàžàž±à¹àžàžàž°àž¢àž±àžà¹àžªàžµà¹àž¢àžàžàž¢àž¹à¹
https://securityonline.info/cve-2025-37164-cvss-10-0-unauthenticated-hpe-oneview-rce-grants-total-control-over-data-centers
CISA à¹àžàž·àžàžàžà¹àž§àž à¹àž®à¹àžà¹àžàžàž£à¹àžàžµàžà¹àžà¹àžà¹àžàžà¹àž«àž§à¹ Cisco à¹àž¥àž° SonicWall à¹àžàž¡àžàžµàžàž£àžŽàžà¹àž¥à¹àž§
àž«àžà¹àž§àž¢àžàž²àž CISA àžàžàžàžªàž«àž£àž±àžàž¯ àžàžàžàžàž£àž°àžàž²àžšà¹àžàžŽà¹àž¡àžà¹àžàžà¹àž«àž§à¹àž£à¹àž²àž¢à¹àž£àžà¹àžà¹àž²àž£àž²àž¢àžàž²àž£ KEV àž«àž¥àž±àžàžàžàž§à¹àž²àžàž¥àžžà¹àž¡à¹àž®à¹àžà¹àžàžàž£à¹àžàžµàž UAT-9686 àžàž³àž¥àž±àžà¹àžà¹àžà¹àžàžà¹àž«àž§à¹ Cisco Secure Email Gateway àžàžµà¹àž¡àžµàžàž°à¹àžàž 10 à¹àžà¹àž¡à¹àžàžàž²àž£à¹àžà¹àž²àžàž¶àžàž£àž°àžàžà¹àžàž¢à¹àž¡à¹àžà¹àžàžàž¢àž·àžàž¢àž±àžàžàž±àž§àžàž àžàž£à¹àžàž¡àžàžŽàžàžàž±à¹àžàž¡àž±àž¥à¹àž§àž£à¹ AquaShell à¹àž¥àž° AquaPurge à¹àžàž·à¹àžàžà¹àžàžàž£à¹àžàžàž£àžàž¢ àžàžàžàžàž²àžàžàžµà¹àž¢àž±àžàžàžàžàž²àž£à¹àžàž¡àžàžµ SonicWall SMA1000 à¹àžàž¢à¹àžà¹àžà¹àžàžà¹àž«àž§à¹à¹àžàžŽàž¡àž£à¹àž§àž¡àžàž±àžàžà¹àžàžà¹àž«àž§à¹à¹àž«àž¡à¹à¹àžàž·à¹àžàž¢àž¶àžàž£àž°àžàžà¹àžà¹àžàž±à¹àžàž«àž¡àž à¹àž¥àž°àž¢àž±àžàž¡àžµàžàž²àž£àžàž³àžà¹àžàžà¹àž«àž§à¹à¹àžà¹àž²à¹àž ASUS Live Update àžàžµà¹àž«àž¡àžàžàž²àž£àžªàžàž±àžàžªàžàžžàžà¹àž¥à¹àž§àžàž¥àž±àžàž¡àž²à¹àžà¹à¹àžàž¡àžàžµà¹àžàž¥àž±àžàž©àžàž° supply chain àžàžµàžàžà¹àž§àž¢ àžàž³à¹àž«à¹àž«àžà¹àž§àž¢àžàž²àžàž£àž±àžàžà¹àžàžà¹àž£à¹àžà¹àžàžàžà¹àžà¹àžàžà¹àžªà¹àžàžàž²àž¢ 24 àžàž±àžàž§àž²àžàž¡ 2025 https://securityonline.info/cisa-alert-chinese-hackers-weaponize-cvss-10-cisco-zero-day-sonicwall-exploit-chains
à¹àž®à¹àžà¹àžàžàž£à¹àžàžµàž UAT-9686 à¹àžà¹àž¡àž±àž¥à¹àž§àž£à¹ Aqua à¹àžàž²àž° Cisco Secure Email
Cisco Talos à¹àžàžŽàžà¹àžàž¢àž§à¹àž²àžàž¥àžžà¹àž¡ UAT-9686 àžàž³àž¥àž±àžà¹àžà¹àžà¹àžàžà¹àž«àž§à¹ CVE-2025-20393 à¹àž Cisco Secure Email Gateway à¹àž¥àž° Web Manager à¹àžàž·à¹àžà¹àžà¹àž²àžàž¶àžàž£àž°àžàžà¹àžàž£àž°àžàž±àž root à¹àžàž¢àžàž²àžšàž±àž¢àžàž²àž£à¹àžàžŽàžà¹àžà¹àžàž²àžàžàžµà¹àžàžàž£à¹ Spam Quarantine àžàžµà¹à¹àžàž·à¹àžàž¡àžà¹àžàžàžŽàžà¹àžàžàž£à¹à¹àžà¹àž àžàž¶à¹àžàž«àž²àžà¹àžàžŽàžà¹àž§à¹àžàž°àžàž¥àž²àž¢à¹àžà¹àžàžà¹àžàžàžàž²àžà¹àž«à¹à¹àžàž¡àžàžµà¹àžà¹àžàž±àžàžàžµ à¹àž¡àž·à¹àžà¹àžà¹àž²àž¡àž²à¹àž¥à¹àž§àžàž§àžà¹àžàž²àžàžŽàžàžàž±à¹àžàž¡àž±àž¥à¹àž§àž£à¹àžàžžàž “Aqua” à¹àžà¹à¹àžà¹ AquaShell àžàžµà¹àžàž±àžàžàž±àž§à¹àžà¹àžàž¥à¹à¹àžàžŽàž£à¹àžà¹àž§àžàž£à¹, AquaPurge àžàžµà¹àž¥àžàž«àž¥àž±àžàžàž²àžà¹àž log à¹àž¥àž° AquaTunnel àžàžµà¹àžªàž£à¹àž²àžàžàž²àž£à¹àžàž·à¹àžàž¡àžà¹àžàž¢à¹àžàžàžàž¥àž±àžà¹àžàž·à¹àžàž£àž±àžàž©àž²àžàž²àž£à¹àžà¹àž²àžàž¶àž à¹àž¡à¹à¹àžà¹àžà¹àžàžà¹àž«àž§à¹à¹àž¥à¹àž§àžà¹àž¢àž±àžà¹àž¡à¹àžà¹àžàž àž±àž¢ à¹àžàž£àž²àž°àž¡àž±àž¥à¹àž§àž£à¹àžàž±àžàž¥àž¶àžàžàž Cisco à¹àžàž°àžàž³àž§à¹àž²àž«àž²àžàžàž¹àžà¹àžàž²àž°à¹àž¥à¹àž§àžà¹àžàž rebuild à¹àžàž£àž·à¹àžàžà¹àž«àž¡à¹à¹àžà¹àž²àžàž±à¹àž
https://securityonline.info/cisco-zero-day-siege-chinese-group-uat-9686-deploys-aqua-malware-via-cvss-10-root-exploit
SonicWall à¹àžàž·àžàžàžà¹àžàžà¹àž«àž§à¹à¹àž«àž¡à¹àžàž¹àžà¹àžà¹àž£à¹àž§àž¡àžàž±àžàžà¹àžàžà¹àž«àž§à¹à¹àžàžŽàž¡ àž¢àž¶àžàž£àž°àžàžà¹àžà¹à¹àžàž root
SonicWall àžàžàžàžàž£àž°àžàž²àžšàžà¹àž§àžà¹àžàžµà¹àž¢àž§àžàž±àžàžà¹àžàžà¹àž«àž§à¹ CVE-2025-40602 à¹àžàžàžžàžàžàž£àžà¹ SMA1000 à¹àž¡à¹àžàž°à¹àžàž CVSS à¹àžàžµàž¢àž 6.6 à¹àžà¹à¹àž¡àž·à¹àžàžàž¹àžà¹àžà¹àž£à¹àž§àž¡àžàž±àžàžà¹àžàžà¹àž«àž§à¹ CVE-2025-23006 àžàžµà¹àž£à¹àž²àž¢à¹àž£àžàžàž§à¹àž² àžàž°àžàž¥àž²àž¢à¹àžà¹àžàžàž²àž£à¹àžàž¡àžàžµà¹àžàž chain àžàžµà¹àžàž³à¹àž«à¹àžàž¹à¹à¹àžàž¡àžàžµàžªàž²àž¡àž²àž£àžà¹àžà¹àž²àžàž¶àžàž£àž°àžàžà¹àžàž¢à¹àž¡à¹àžà¹àžàžàž¥à¹àžàžàžàžŽàž à¹àž¥àž°àž¢àžàž£àž°àžàž±àžàžªàžŽàžàžàžŽà¹à¹àžà¹àž root à¹àžà¹àžàž±àžàžàžµ à¹àžà¹àž²àžàž±àžàž¢àž¶àžàž£àž°àžàžàžàž±à¹àžàžàžàžà¹àžàž£à¹àžà¹à¹àžàž¢à¹àž¡à¹àžà¹àžàžàž¡àžµàž£àž«àž±àžªàžà¹àž²àž SonicWall à¹àžà¹àžàžàžà¹àžàžàžà¹à¹àž«àž¡à¹à¹àž¥àž°à¹àžàž°àžàž³à¹àž«à¹àžàž¹à¹à¹àžà¹àž£àžµàžàžàž±àžà¹àžàžàžàž±àžàžàžµ àž«àž²àžà¹àž¡à¹àžªàž²àž¡àž²àž£àžàžàž³à¹àžà¹àžàž§àž£àžàžŽàžàžàž²àž£à¹àžà¹àž²àžàž¶àž AMC à¹àž¥àž° SSH àžàž²àžàžàžŽàžà¹àžàžàž£à¹à¹àžà¹àžà¹àžàž·à¹àžàžà¹àžàžàžàž±àžàžàž²àž£à¹àžàž¡àžàžµ
âââââââ https://securityonline.info/zero-day-warning-hackers-chain-sonicwall-sma1000-flaws-for-unauthenticated-root-rce
ððð àž£àž§àž¡àžà¹àž²àž§àžàž²àžà¹àž§àž SecurityOnline ð ðð
#àž£àž§àž¡àžà¹àž²àž§IT #20251218 #securityonline
ðŠ Mozilla à¹àžàžŽàžàž¢àžžàžà¹àž«àž¡à¹: Firefox à¹àžàž£àžµàž¢àž¡àžàž¥àž²àž¢à¹àžà¹àžà¹àžàž£àž²àž§à¹à¹àžàžàž£à¹àžàž¥àž±àž AI
Mozilla àžàž£àž°àžàž²àžšà¹àžàžàžàž²àž£à¹àž«àžà¹àž àž²àž¢à¹àžà¹àžàž²àž£àžàž³àžàžàž CEO àžàžà¹àž«àž¡à¹ Anthony Enzor-DeMeo àžàžµà¹àžàž°à¹àžàž¥àžµà¹àž¢àž Firefox àžàž²àžà¹àžàž£àž²àž§à¹à¹àžàžàž£à¹à¹àžàžàžàž±à¹àžà¹àžàžŽàž¡à¹àž«à¹àžàž¥àž²àž¢à¹àžà¹àžà¹àžàž¥àžàžàžàž£à¹àž¡àžàžµà¹àžàž±àžà¹àžàž¥àž·à¹àžàžàžà¹àž§àž¢ AI àžàžžàžàž¡àžžà¹àžàž«àž¡àž²àž¢àžàž·àžàžàž²àž£àžàž³à¹àž«à¹ Firefox à¹àž¡à¹à¹àžà¹à¹àžà¹à¹àžàž£àž·à¹àžàžàž¡àž·àžàžà¹àžàžà¹àž§à¹àž à¹àžà¹à¹àžà¹àžàžàž¹à¹àžà¹àž§àž¢àžàž±àžàžàž£àžŽàž¢àž°àžàžµà¹à¹àžà¹àž²à¹àžàžàž¹à¹à¹àžà¹à¹àž¥àž°àžªàž²àž¡àž²àž£àžàžàž£àž±àžà¹àžà¹àžàžàž£àž°àžªàžàžàž²àž£àžà¹àžàžàžà¹àž¥àžà¹à¹àžà¹àžàž¢à¹àž²àžàž¥àž¶àžàžàž¶à¹àž àžàž²àž£à¹àžàž¥àžµà¹àž¢àžà¹àžàž¥àžàžàžµà¹àžªàž°àžà¹àžàžàžàž¶àžàžàž§àž²àž¡àžàž¢àž²àž¢àž²àž¡àžàžàž Mozilla àžàžµà¹àžàž°àžàž¥àž±àžàž¡àž²à¹àžà¹àžàžàž±àžà¹àžàžàž¥àž²àžà¹àžàž£àž²àž§à¹à¹àžàžàž£à¹àžàžµà¹àžàž¹àžàžàž£àžàžàžàž³à¹àžàž¢ Chrome à¹àž¥àž° Edge
ð https://securityonline.info/mozillas-new-chapter-ceo-anthony-enzor-demeo-to-transform-firefox-into-an-ai-powered-powerhouse
ð Let’s Encrypt àžàž£àž±àžàž£àž°àžàž TLS à¹àž«àž¡à¹: à¹àžàž£àž±àžàž£àžàžàžªàž±à¹àžàž¥àžà¹àž«àž¥àž·àž 45 àž§àž±àž
Let’s Encrypt àžàž£àž°àžàž²àžšàžàž²àž£à¹àžàž¥àžµà¹àž¢àžà¹àžàž¥àžàžàž£àž±à¹àžà¹àž«àžà¹à¹àžàž£àž°àžàžàžàž²àž£àžàžàžà¹àžàž£àž±àžàž£àžàž TLS à¹àžàž¢àž¥àžàžàž²àž¢àžžàžàž²àž£à¹àžà¹àžàž²àžàžàž²àž 90 àž§àž±àžà¹àž«àž¥àž·àžà¹àžàžµàž¢àž 45 àž§àž±àž àžàž£à¹àžàž¡à¹àžàžŽàžàžàž±àž§à¹àžàž£àžàžªàž£à¹àž²àžà¹àž«àž¡à¹àžàžµà¹à¹àž£àžµàž¢àžàž§à¹àž² Generation Y Hierarchy à¹àž¥àž°àžàž²àž£àž£àžàžàž£àž±àž TLS à¹àžàžà¹àžà¹ IP à¹àžàž¢àžàž£àž àžàž²àž£à¹àžàž¥àžµà¹àž¢àžà¹àžàž¥àžàžàžµà¹àž¡àžµà¹àžà¹àž²àž«àž¡àž²àž¢à¹àžàž·à¹àžà¹àžàžŽà¹àž¡àžàž§àž²àž¡àžàž¥àžàžàž àž±àž¢ àž¥àžàžàž§àž²àž¡à¹àžªàžµà¹àž¢àžàžàž²àžà¹àžàž£àž±àžàž£àžàžàžàžµà¹àžàž¹àžàžà¹àž¡àž¢àž«àž£àž·àžà¹àž¡à¹à¹àžà¹àžàž±àžà¹àžàž à¹àž¥àž°àžàž³à¹àž«à¹àž£àž°àžàžàžàžŽàžà¹àžàžàž£à¹à¹àžà¹àžàž¡àžµàžàž§àž²àž¡àž¢àž·àžàž«àž¢àžžà¹àžàž¡àž²àžàžàž¶à¹àž à¹àž¡à¹àžàž°à¹àžàžŽà¹àž¡àž àž²àž£àž°à¹àž«à¹àžàž¹à¹àžàž¹à¹àž¥àž£àž°àžàž à¹àžà¹àžà¹àžàž·àžà¹àžà¹àžàžà¹àž²àž§àžªàž³àžàž±àžà¹àžàžàž²àž£àž¢àžàž£àž°àžàž±àžàž¡àž²àžàž£àžàž²àžàžàž§àž²àž¡àžàž¥àžàžàž àž±àž¢àžàžàžà¹àž§à¹àžàžàž±à¹àž§à¹àž¥àž
ð https://securityonline.info/the-45-day-era-begins-lets-encrypt-unveils-generation-y-hierarchy-and-ip-based-tls
ð¡ïž àžà¹àžàžà¹àž«àž§à¹àž£à¹àž²àž¢à¹àž£àžà¹àž Apache Commons Text à¹àžªàžµà¹àž¢àžàžàž¹àžàž¢àž¶àžà¹àžàžŽàž£à¹àžà¹àž§àžàž£à¹
à¹àž£àž·à¹àžàžàžàžµà¹à¹àžà¹àžàžàž²àž£àžà¹àžàžàžàžà¹àžàžà¹àž«àž§à¹à¹àž«àž¡à¹à¹àžà¹àž¥àžàž£àž²àž£àžµ Java àžàžµà¹àžàž·à¹àž Apache Commons Text àžàž¶à¹àžàžàž¹àžà¹àžà¹àžàž¢à¹àž²àžà¹àžàž£à¹àž«àž¥àž²àž¢à¹àžàžàž²àž£àžàž±àžàžàž²àž£àžà¹àžàžàž§àž²àž¡ àžà¹àžàžà¹àž«àž§à¹àžàžµà¹àžàž¹àžàž£àž°àžàžžàž§à¹àž² CVE-2025-46295 à¹àž¥àž°àž¡àžµàžàž°à¹àžàžàžàž§àž²àž¡àž£àžžàžà¹àž£àžàžªàž¹àžàžàž¶àž 9.8 à¹àžà¹àž¡ 10 àžàžžàžàžàž±àžàžàž£àž²àž¢àžàž¢àž¹à¹àžàžµà¹àžàž±àžàžà¹àžàž±àž string interpolation àžàžµà¹à¹àžàžŽàžàžà¹àžàžà¹àž«à¹àžàž¹à¹à¹àžàž¡àžàžµàžªàž²àž¡àž²àž£àžàžªà¹àžàžà¹àžàž¡àž¹àž¥àžàžµà¹à¹àž¡à¹àžàž¥àžàžàž àž±àž¢à¹àžà¹àž²àž¡àž²à¹àž¥àž°àžàž³à¹àž«à¹à¹àžàžŽàžàžàž²àž£àž£àž±àžàžàž³àžªàž±à¹àžàžàž²àžàž£àž°àž¢àž°à¹àžàž¥à¹àžà¹ àž¥àž±àžàž©àžàž°àžàžµà¹àžàž¥à¹àž²àž¢àžàž±àžà¹àž«àžàžžàžàž²àž£àžà¹ Log4Shell àžàžµà¹à¹àžàž¢àžªàž£à¹àž²àžàžàž§àž²àž¡à¹àžªàžµàž¢àž«àž²àž¢à¹àž«àžà¹à¹àžàžàžàžµàž àžàžµàž¡àžàž±àžàžàž² FileMaker Server à¹àžà¹àž£àžµàžà¹àžà¹à¹àžà¹àžàž¢àžàž±àžà¹àžàžà¹àžà¹àžà¹àž§àžàž£à¹àžàž±àžà¹àž«àž¡à¹àžàžµà¹àžàž¥àžàžàž àž±àž¢à¹àž¥à¹àž§ à¹àž¥àž°à¹àžàž°àžàž³à¹àž«à¹àžàž¹à¹àžàž¹à¹àž¥àž£àž°àžàžàž£àžµàžàžàž±àžà¹àžàžàžàž±àžàžàžµà¹àžàž·à¹àžàžàžŽàžàžà¹àžàžà¹àž«àž§à¹
ð https://securityonline.info/cve-2025-46295-cvss-9-8-critical-apache-commons-text-flaw-risks-total-server-takeover
ðŠ àž«àž¥àžàžàžà¹àž§àž¢à¹àžàžªàž±à¹àžàžàž£àž²àžàž£àžàž¥àžàž¡: à¹àžàž RTO Challan àžàž¹àžàžà¹àžàž¡àž¹àž¥à¹àž¥àž°à¹àžàžŽàž
à¹àžàžàžŽàžà¹àžàžµàž¢àž¡àžµàžàž²àž£à¹àžàž¡àžàžµà¹àž«àž¡à¹àžàžµà¹à¹àžà¹àžàž§àž²àž¡àžàž¥àž±àž§àžàž²àž£à¹àžàžà¹àžàžªàž±à¹àžàžàž£àž²àžàž£àž¡àž²à¹àžà¹àžà¹àžàž£àž·à¹àžàžàž¡àž·àž àž«àž¥àžàžà¹àž«à¹àžàž¹à¹à¹àžà¹àžàž²àž§àžà¹à¹àž«àž¥àžà¹àžàž “RTO Challan” àžà¹àž²àž WhatsApp à¹àžàž¢àžà¹àž²àžàž§à¹àž²à¹àžà¹àžà¹àžàžàžàž²àžàžàž²àž£à¹àžàž·à¹àžàžàž¹àž«àž¥àž±àžàžàž²àžàžàž²àž£àžàž£àž°àžàž³àžàžŽàž à¹àžà¹à¹àžà¹àžàž£àžŽàžà¹àž¥à¹àž§à¹àžà¹àžàž¡àž±àž¥à¹àž§àž£à¹àžàžµà¹àžà¹àžàžàžàž±àž§à¹àž¥àž°àžªàž£à¹àž²àž VPN àžàž¥àžàž¡à¹àžàž·à¹àžàžªà¹àžàžà¹àžàž¡àž¹àž¥àžàžàžà¹àžà¹àžàž¢à¹àž¡à¹àžàž¹àžàžàž£àž§àžàžàž±àž àž¡àž±àžàžªàž²àž¡àž²àž£àžàžà¹àž¡àž¢àžà¹àžàž¡àž¹àž¥àžªà¹àž§àžàžàž±àž§ àžàž±à¹àžà¹àžà¹àžàž±àžàž£ Aadhaar, PAN à¹àžàžàžàžàž¶àžàžà¹àžàž¡àž¹àž¥àžàžàž²àžàž²àž£ à¹àž¥àž°àž¢àž±àžàž«àž¥àžàžà¹àž«à¹àžàž¹à¹à¹àžà¹àžàž£àžàžàžà¹àžàž¡àž¹àž¥àžàž±àžàž£à¹àžàž£àžàžŽàžàžàž£à¹àžàž¡àž£àž«àž±àžª PIN à¹àžàž·à¹àžàžàž³àžàžžàž£àžàž£àž£àž¡àžàž¥àžàž¡à¹àžàžà¹àž£àžµàž¢àž¥à¹àžàž¡à¹ àžàž·àžà¹àžà¹àžàžàž²àž£à¹àžàž¡àžàžµàžàžµà¹àžàžªàž¡àžàžªàž²àžàžàž±à¹àžàž§àžŽàžšàž§àžàž£àž£àž¡àžªàž±àžàžàž¡à¹àž¥àž°à¹àžàžàžàžŽàžàžàž±à¹àžàžªàž¹àž àžàž¹à¹à¹àžà¹àžàž¹àžà¹àžàž·àžàžà¹àž«à¹àž£àž°àž§àž±àžàžà¹àžàžàž§àž²àž¡àžàž²àžà¹àžàžàž£à¹à¹àžàž¥àžà¹àž¥àž°à¹àž¡à¹àžàž²àž§àžà¹à¹àž«àž¥àžà¹àžàžàžàž²àžàž¥àžŽàžàžà¹àžàžµà¹à¹àž¡à¹àžà¹àž²à¹àžàž·à¹àžàžàž·àž
ð https://securityonline.info/rto-challan-scam-how-a-fake-traffic-ticket-and-a-malicious-vpn-can-drain-your-bank-account
ð» Node.js systeminformation àžàžàžà¹àžàžà¹àž«àž§à¹à¹àžªàžµà¹àž¢àž RCE àžàž Windows
à¹àž¥àžàž£àž²àž£àžµàžàž·à¹àžàžàž±àž systeminformation àžàžµà¹àžàž¹àžàžàž²àž§àžà¹à¹àž«àž¥àžàžàž§à¹àž² 16 àž¥à¹àž²àžàžàž£àž±à¹àžàžà¹àžà¹àžàž·àžàž àžàž¹àžàžàžàžà¹àžàžà¹àž«àž§à¹àž£à¹àž²àž¢à¹àž£àž CVE-2025-68154 à¹àžàž¢à¹àžàžàž²àž°àžàž Windows àžàž±àžàžà¹àžàž±àž fsSize() àžàžµà¹à¹àžà¹àžàž£àž§àžàžªàžàžàžàžàž²àžàžàžŽàžªàžà¹à¹àž¡à¹à¹àžà¹àžàž£àžàžàžà¹àžàž¡àž¹àž¥àžàžŽàžàžàžžàž àžàž³à¹àž«à¹àžàž¹à¹à¹àžàž¡àžàžµàžªàž²àž¡àž²àž£àžà¹àžªà¹àžàž³àžªàž±à¹àž PowerShell à¹àžàžàžàž±àž§àžàž±àžàž©àž£à¹àžàž£àžà¹ à¹àž¥àž°àž£àž±àžàžàž³àžªàž±à¹àžàžàž±àžàžàž£àž²àž¢à¹àžà¹àžàž±àžàžàžµ àžàž¥àžàž£àž°àžàžàžàž·àžàžàž²àž£à¹àžà¹àž²àžàž§àžàžàžžàž¡àž£àž°àžàž àžà¹àž²àžàžà¹àžàž¡àž¹àž¥àž¥àž±àž àž«àž£àž·àžà¹àž¡à¹àžàž£àž°àžàž±à¹àžàžàž¥à¹àžàž¢ ransomware àžàž±àžàžàž±àžàžàž²àžàž¹àžà¹àžàž°àžàž³à¹àž«à¹àžàž±àžà¹àžàžà¹àžà¹àžà¹àž§àžàž£à¹àžàž±àž 5.27.14 àžàžµà¹à¹àžà¹à¹àžà¹àž¥à¹àž§à¹àžàž¢àžà¹àž§àž
ð https://securityonline.info/node-js-alert-systeminformation-flaw-risks-windows-rce-for-16m-monthly-users
ð° OpenAI à¹àžàž£àžàž² Amazon àžàžàžàžžàžà¹àžàžŽà¹àž¡ 10 àžàž±àžàž¥à¹àž²àž àžàž£à¹àžàž¡à¹àžàž·à¹àžàžà¹àžà¹àžà¹àžàžŽàž AI àžàžàž Amazon
àž¡àžµàž£àž²àž¢àžàž²àžàž§à¹àž² OpenAI àžàž³àž¥àž±àžà¹àžàž£àžàž²àžàž±àž Amazon à¹àžàž·à¹àžàž£àž°àžàž¡àžàžžàžàž¡àž«àž²àžšàž²àž¥àžàž¶àž 10 àžàž±àžàž¥à¹àž²àžàžàžàž¥àž¥àž²àž£à¹ à¹àžàž¢àž¡àžµà¹àžàž·à¹àžàžà¹àžàžªàž³àžàž±àžàžàž·àž OpenAI àžà¹àžàžà¹àžà¹àžàžŽàž AI àžàžàž Amazon à¹àžà¹àž Trainium à¹àž¥àž° Inferentia à¹àžàžàžàž²àž£àžàž¶à¹àžàžàž² NVIDIA àžàžµà¹àž£àž²àžàž²à¹àžàžà¹àž¥àž°àžàž²àžàžàž¥àž²àž àž«àž²àžàžàžµàž¥àžàžµà¹à¹àžàžŽàžàžàž¶à¹àžàžàž£àžŽàžàžàž°à¹àžà¹àžàžàž²àž£àžàž¥àžŽàžà¹àžàž¡àžàž£àž±à¹àžà¹àž«àžà¹ à¹àžàž£àž²àž°àžàž°àžàž³à¹àž«à¹ Amazon à¹àžà¹àžàž²àž£àž¢àž·àžàž¢àž±àžàžàžžàžàž àž²àžàžàžŽàžàžàž²àžàžàž¹à¹à¹àž¥à¹àžàž£àž²àž¢à¹àž«àžà¹àžàžµà¹àžªàžžàžà¹àžàž§àžàžàž²àž£ AI à¹àž¥àž°àž¢àž±àžàžà¹àž§àž¢à¹àž«à¹ OpenAI àž¥àžàžà¹àžàžàžžàžàžàž²àž£àžàž£àž°àž¡àž§àž¥àžàž¥ àžàžàž°à¹àžàžµàž¢àž§àžàž±àžàžà¹àžªàž£à¹àž²àžàžªàž¡àžàžžàž¥àž£àž°àž«àž§à¹àž²àž Microsoft à¹àž¥àž° Amazon à¹àžàžàž²àž£à¹àžà¹àžàžàž±àžàžàž¡àžŽàžàž£àžà¹àž²àžàžàž¥àž²àž§àžà¹
ð https://securityonline.info/the-10b-pivot-openai-in-talks-for-massive-amazon-funding-but-theres-a-silicon-catch
ð Cloudflare à¹àžàž¢àž£àž²àž¢àžàž²àžàžàžµ 2025: àžªàžàžàž£àž²àž¡àžàžàž AI à¹àž¥àž°àžàž²àž£àžàž£àž²àžàž£àžàžŽàžà¹àžàžàž£à¹à¹àžà¹àžàžàžžà¹àž 19%
àž£àž²àž¢àžàž²àžàžàž£àž°àžàž³àžàžµàžàžàž Cloudflare àžàžµà¹à¹àž«à¹à¹àž«à¹àžàž§à¹àž²àžàžµ 2025 àžàžŽàžà¹àžàžàž£à¹à¹àžà¹àžàžàž³àž¥àž±àžà¹àžàž¥àžµà¹àž¢àžà¹àžàž¥àžàžàž£àž±à¹àžà¹àž«àžà¹ àžàž£àžŽàž¡àž²àžàžàž²àž£à¹àžà¹àžàž²àžà¹àžàžŽà¹àž¡àžàž¶à¹àž 19% à¹àž¥àž°à¹àžàžŽàž “àžªàžàžàž£àž²àž¡àžàžàž AI” àžàžµà¹à¹àžà¹àžàžàž±àžàžàž±àžà¹àžà¹àžàžà¹àžàž¡àž¹àž¥àžàžàžà¹àž¥àžà¹ à¹àžàž¢ Google àžàž£àžàžàžàž±àžàžàž±àžàž«àžàž¶à¹àžàžà¹àž²àžàžàž²àž£à¹àžà¹àžàžà¹àžàž¡àž¹àž¥àžà¹àž²àž crawler à¹àžàž·à¹àžà¹àžà¹àžàž¶àžà¹àž¡à¹àžàž¥ AI àžàž¢à¹àž²àž Gemini àžàžàž°à¹àžàžµàž¢àž§àžàž±àžàžàžàžà¹àžàž£à¹àž¡à¹à¹àžªàž§àžàž«àž²àžàž³à¹àž£àžàž¥àž±àžàžàž¥àž²àž¢à¹àžà¹àžà¹àžà¹àž²àž«àž¡àž²àž¢à¹àžàž¡àžàžµà¹àžà¹àžàžàž£à¹àž¡àž²àžàžàžµà¹àžªàžžàž à¹àžàž·à¹àžàžàžàž²àžàž¡àžµàžà¹àžàž¡àž¹àž¥àžà¹àžàžà¹àž«àž§à¹àžà¹àžàž²àžàžàž£àž±àžàž¢àž²àžàž£àžà¹àžàžàžàž±àž àž£àž²àž¢àžàž²àžàž¢àž±àžàž£àž°àžàžžàž§à¹àž²àž¡àžµàžàž²àž£à¹àžàž¡àžàžµ DDoS àžàž£àž±à¹àžà¹àž«àžà¹àžàž§à¹àž² 25 àžàž£àž±à¹àžà¹àžàžàžµà¹àžàžµàž¢àž§ à¹àž¥àž°àžàž£àž¶à¹àžàž«àžàž¶à¹àžàžàžàžàžàž²àž£àž«àž¢àžžàžàžàž°àžàž±àžàžàžŽàžà¹àžàžàž£à¹à¹àžà¹àžàžàž±à¹àž§à¹àž¥àžà¹àžàžŽàžàžàž²àžàžàž²àž£àžàž£àž°àžàž³àžàžàžàž£àž±àžàžàž²àž¥ àžàž²àž£à¹àžàž¥àžµà¹àž¢àžà¹àžàž¥àžàžàžµà¹àžªàž°àžà¹àžàžàžàž±à¹àžàžàž§àž²àž¡àžà¹àž²àž§àž«àžà¹àž²à¹àž¥àž°àžàž§àž²àž¡à¹àžàž£àž²àž°àžàž²àžàžàžàžà¹àž¥àžàžàžàžà¹àž¥àžà¹
ð https://securityonline.info/the-internet-rewired-cloudflare-2025-review-unveils-the-ai-bot-war-and-a-19-traffic-surge
ð¥ïž Locked Out of the Cloud: à¹àž¡àž·à¹àžà¹àž®àžà¹àžàžàž£à¹à¹àžà¹ AWS Termination Protection àžàž¥à¹àžàžàž¥àž±àžàžàž£àž°àž¡àž§àž¥àžàž¥à¹àžàžàžžàžàžàž£àžŽàžà¹àž
à¹àž£àž·à¹àžàžàžàžµà¹à¹àžà¹àžàžàž²àž£à¹àžàž¡àžàžµàžàžµà¹àžàž±àžàžà¹àžàžàž¡àž²àžà¹àžà¹àž¥àžàžàž¥àž²àž§àžà¹ à¹àž®àžà¹àžàžàž£à¹à¹àžàž²àž°à¹àžà¹àž²àž¡àž²à¹àžàž£àž°àžàž AWS à¹àžàž¢à¹àžà¹àžàž±àžàžàžµàžàžµà¹àžàž¹àžàžà¹àž¡àž¢ à¹àž¥à¹àž§àž£àžµàž deploy à¹àžàž£àž·à¹àžàžàžàžžàžàžàž£àžŽàžà¹àžàž àž²àž¢à¹àžà¹àž§àž¥àž²à¹àž¡à¹àžàž¶àž 10 àžàž²àžàžµ àžàžžàžàžàžµà¹àžà¹àž²àžàž¥àž±àž§àžàž·àžàžàž§àžà¹àžàž²à¹àžà¹àžàžµà¹àžàžàž£à¹ DryRun à¹àžàž·à¹àžàžàž£àž§àžàžªàžàžàžªàžŽàžàžàžŽà¹à¹àžàž¢à¹àž¡à¹àžàžŽà¹àžàž£à¹àžàžàž£àžàž¢ à¹àž¥àž°à¹àž¡àž·à¹àžà¹àžàž£àž·à¹àžàžàžàžžàžàžàž¹àžàžªàž£à¹àž²àžàžàž¶à¹àž àžàž§àžà¹àžàž²à¹àžàžŽàžàžàž²àž£àžà¹àžàžàžàž±àžàžàž²àž£àž¥àž (termination protection) àžàž³à¹àž«à¹à¹àžà¹àž²àžàžàžàž£àž°àžàžà¹àž¡à¹àžªàž²àž¡àž²àž£àžàž¥àžà¹àžàž£àž·à¹àžàžà¹àžà¹àžàž±àžàžàžµ àžà¹àžàžàžàžŽàžàžàž²àž£àžà¹àžàžàžàž±àžàžà¹àžàžàžàž¶àžàžàž°àžàž±àžàžàž²àž£à¹àžà¹ àžàž±à¹àžàžàž³à¹àž«à¹à¹àž®àžà¹àžàžàž£à¹àž¡àžµà¹àž§àž¥àž²àžàžžàžàžàž£àžŽàžà¹àžà¹àžàžŽà¹àž¡àžàž¶à¹àž àžàžàžàžàž²àžàžàžµà¹àž¢àž±àžàž¡àžµàžàž²àž£àžªàž£à¹àž²àž backdoor àžà¹àž²àž AWS Lambda à¹àž¥àž°à¹àžàž£àžµàž¢àž¡à¹àžà¹ Amazon SES à¹àžàž·à¹àžàžªà¹àžàžàžµà¹àž¡àž¥àžàžŽàžàžàžŽà¹àžàžà¹àžà¹àž à¹àž«àžàžžàžàž²àž£àžà¹àžàžµà¹à¹àž¡à¹à¹àžà¹àžàž²àž£à¹àžàž²àž° AWS à¹àžàž¢àžàž£àž à¹àžà¹à¹àžà¹àžàžàž²àž£à¹àžà¹ credential àžàžµà¹àžàž¹àžàžà¹àž¡àž¢à¹àžàžàž¢à¹àž²àžàžàž²àžàžàž¥àž²àž
ð https://securityonline.info/locked-out-of-the-cloud-hackers-use-aws-termination-protection-to-hijack-ecs-for-unstoppable-crypto-mining
ð§ Blurred Deception: àžàž¥àž¢àžžàžàžà¹àžàžŽàžàžàžŽà¹àžàžàžàžàžàž¥àžžà¹àž¡ APT
àž£àž±àžªà¹àžàžµàž¢àžàžµà¹à¹àžà¹ “à¹àžàžàžªàž²àž£à¹àžàž¥àž” àžàž¥àžžà¹àž¡ APT àžàž²àžàž£àž±àžªà¹àžàžµàž¢àžªà¹àžàžàžµà¹àž¡àž¥àžàž¥àžàž¡à¹àžàžàž·à¹àžàžàž³àžªàž±à¹àžàžàž²àžàžàž£àž°àžàž²àžàž²àžàžŽàžàžàžµ Transnistria à¹àžàž¢à¹àžàžà¹àžàž¥à¹àžàžµà¹àžàž¹à¹àž«àž¡àž·àžàžà¹àžàžàžªàž²àž£àžàž²àžàžàž²àž£ à¹àžà¹à¹àžàž·à¹àžàž«àž²àžàž¹àžàžàž³à¹àž«à¹à¹àžàž¥àžàžà¹àž§àž¢ CSS filter àžàž¹à¹àž£àž±àžàžàž¶àžàžà¹àžàžà¹àžªà¹àžàžµà¹àž¡àž¥à¹àž¥àž°àž£àž«àž±àžªàžà¹àž²àžà¹àžàž·à¹àž “àžàž¥àžàž¥à¹àžàž” à¹àžàžàžªàž²àž£ àžàž¶à¹àžàžàž£àžŽàž ๠à¹àž¥à¹àž§à¹àžà¹àžàžàž²àž£àž«àž¥àžàžàžà¹àž¡àž¢àžà¹àžàž¡àž¹àž¥à¹àžà¹àž²àžªàž¹à¹àž£àž°àžàž àžàž±àžàžà¹àžàž±àž JavaScript àžàžµà¹à¹àžà¹àž¢àž±àžàž¡àžµàž¥àž¹àžà¹àž¥à¹àžàžàž·àžà¹àž¡à¹àž§à¹àž²àž£àž«àž±àžªàžà¹àž²àžàžàž°àžàž¹àžàž«àž£àž·àžàžàžŽàžàžà¹àžàž¹àžàžªà¹àžà¹àžàž¢àž±àžà¹àžàžŽàž£à¹àžà¹àž§àžàž£à¹àžàžàžà¹àž®àžà¹àžàžàž£à¹àžàž¢àž¹à¹àžàžµ à¹àžàž¡à¹àžàžàžàžµà¹à¹àž¡à¹à¹àžà¹àž«àž¢àžžàžà¹àžà¹ Transnistria à¹àžà¹àž¢àž±àžàžàž¢àž²àž¢à¹àžàž¢àž±àžàžàž£àž°à¹àžàžšà¹àžàž¢àžžà¹àž£àžàžàž°àž§àž±àžàžàžàžà¹àž¥àž°àž«àžà¹àž§àž¢àžàž²àž NATO àžà¹àž§àž¢ àžàž·àžà¹àžà¹àžàžàž²àž£à¹àžàž¡àžàžµàžàžµà¹à¹àžà¹àžàž§àž²àž¡à¹àž£à¹àžàžà¹àž§àžà¹àž¥àž°àžàž§àž²àž¡àžàž¢àž²àžàž£àž¹à¹àžàž¢àž²àžà¹àž«à¹àžàžàžàžà¹àž«àž¢àž·à¹àžà¹àžà¹àžàžàž±àž§àž¥à¹àž
ð https://securityonline.info/blurred-deception-russian-apt-targets-transnistria-and-nato-with-high-pressure-phishing-lures
ð “Better Auth” Framework Alert: àžà¹àžàžà¹àž«àž§à¹ Double-Slash àžàžµà¹àžàž³à¹àž«à¹àž£àž°àžàžàžà¹àžàžàžàž±àžàžàž±àž
àž¡àžµàžàž²àž£àžà¹àžàžàžàžà¹àžàžà¹àž«àž§à¹àž£à¹àž²àž¢à¹àž£àžà¹àž Better Auth àžàž¶à¹àžà¹àžà¹àž framework àž¢àžàžàžàžŽàž¢àž¡àžªàž³àž«àž£àž±àž TypeScript àžàžµà¹à¹àžà¹àžàž±àžàžàž§à¹àž²àžàžàž§àž²àž àžàž±àžàž«àž²àžàž·àž router àž àž²àž¢à¹àžàžàž·à¹àž rou3 àž¡àžàž URL àžàžµà¹àž¡àžµàž«àž¥àž²àž¢ slash à¹àžà¹àž //sign-in/email àž§à¹àž²à¹àž«àž¡àž·àžàžàžàž±àž /sign-in/email à¹àžà¹àž£àž°àžàžàžà¹àžàžàžàž±àžàžàž²àžàžàž¢à¹àž²àžà¹àž¡à¹à¹àžà¹ normalize URL à¹àžàžà¹àžàžµàž¢àž§àžàž±àž àžàž³à¹àž«à¹à¹àž®àžà¹àžàžàž£à¹àžªàž²àž¡àž²àž£àžà¹àžà¹àž²àžàž¶àž path àžàžµà¹àžàž¹àžàžàžŽàžà¹àž§à¹ àž«àž£àž·àžà¹àž¥àžµà¹àž¢àž rate limit à¹àžà¹àžà¹àž²àž¢ ๠àžà¹àžàžà¹àž«àž§à¹àžàžµà¹àž¡àžµàžàž°à¹àžàž CVSS àžªàž¹àžàžàž¶àž 8.6 à¹àž¥àž°àžàž£àž°àžàžàžàž¹à¹à¹àžà¹àžàž³àžàž§àžàž¡àž²àž àžàž²àž£à¹àžà¹à¹àžàžàž·àžàžàž±àžà¹àžàžà¹àž§àžàž£à¹àžàž±àžà¹àž«àž¡à¹ àž«àž£àž·àžàžàž£àž±àž proxy à¹àž«à¹ normalize URL àžà¹àžàžàžàž¶àžàž£àž°àžàž àž«àž²àžà¹àž¡à¹àžàž³àžà¹à¹àžªàžµà¹àž¢àžàžàžµà¹àž£àž°àžàžàžàž°àžàž¹àžà¹àžàž²àž°àžà¹àž²àžàžà¹àžàžà¹àž«àž§à¹à¹àž¥à¹àž ๠à¹àžà¹àž£à¹àž²àž¢à¹àž£àžàžàžµà¹
ð https://securityonline.info/better-auth-framework-alert-the-double-slash-trick-that-bypasses-security-controls
ð Ink Dragon’s Global Mesh: à¹àž¡àž·à¹àžà¹àžàžŽàž£à¹àžà¹àž§àžàž£à¹àž£àž±àžàžàž²àž¥àžàž¹àžà¹àžàž¥àžµà¹àž¢àžà¹àžà¹àžà¹àž«àžàžàžªàžàžà¹àžàž¡
àžàž¥àžžà¹àž¡àžªàžàžà¹àžàž¡à¹àžà¹àžàžàž£à¹àžàž²àžàžàžµàžàžàžµà¹àžàž·à¹àž Ink Dragon à¹àžà¹à¹àžàžàžàžŽàžà¹àž«àž¡à¹à¹àžàžàž²àž£àžªàž£à¹àž²àžà¹àžàž£àž·àžàžà¹àž²àž¢àžªàž±à¹àžàžàž²àž£ à¹àžàž¢à¹àžàž¥àžµà¹àž¢àžà¹àžàžŽàž£à¹àžà¹àž§àžàž£à¹àž£àž±àžàžàž²àž¥àžàžµà¹àžàž¹àžà¹àžàž²àž°à¹àž«à¹àžàž¥àž²àž¢à¹àžà¹àžà¹àž«àžàž relay àžªà¹àžàžà¹àžàžàž³àžªàž±à¹àžà¹àž¥àž°àžà¹àžàž¡àž¹àž¥à¹àžàž¢àž±àžà¹àžà¹àž²àž«àž¡àž²àž¢àžàž·à¹àž ๠àžà¹àž²àžà¹àž¡àžàž¹àž¥ ShadowPad IIS Listener àžàž³à¹àž«à¹àžàž²àž£àžàžŽàžàžàž²àž¡à¹àžàžà¹àžà¹àžà¹àžà¹àž¡à¹à¹àžà¹ à¹àžàž£àž²àž°àžàž³àžªàž±à¹àžàžàž²àžàž§àžŽà¹àžàžà¹àž²àžàž«àž¥àž²àž¢àžàžàžà¹àžàž£àžà¹àžàžàžàž¶àžà¹àžà¹àž²àž«àž¡àž²àž¢àžàž£àžŽàž àžàž§àžà¹àžàž²àž¢àž±àžà¹àžà¹àžà¹àžàžà¹àž«àž§à¹ IIS àžàžµà¹àž£àž¹à¹àžàž±àžàžàž±àžàž¡àž²àžàž²àžà¹àž¥àž° misconfiguration àžàžàž ASP.NET à¹àžàž·à¹àžà¹àžà¹àž²àž¡àž² àžàž²àžàžàž±à¹àžàžàžŽàžàžàž±à¹àž malware àž£àžžà¹àžà¹àž«àž¡à¹àžàžµà¹àžà¹àžàžàžàž²àž£àžªàž·à¹àžàžªàž²àž£àžà¹àž²àž Microsoft Graph API àžàž²àž£àžàž¢àž²àž¢à¹àžà¹àž²àž«àž¡àž²àž¢à¹àžàž¢àž±àžàž¢àžžà¹àž£àžàžàž³à¹àž«à¹àž àž±àž¢àžàžµà¹à¹àž¡à¹à¹àžà¹à¹àžà¹àž£àž°àžàž±àžàž àž¹àž¡àžŽàž àž²àž à¹àžà¹à¹àžà¹àžà¹àžàž£àžàžªàž£à¹àž²àžàžªàžàžà¹àžàž¡àžà¹àž²àž¡àžàž²àžàžŽàžàžµà¹à¹àžà¹à¹àžàž£àžàžªàž£à¹àž²àžàžàžàžà¹àž«àž¢àž·à¹àžà¹àžàžà¹àžà¹àžà¹àžàž£àž·à¹àžàžàž¡àž·àž
ð https://securityonline.info/ink-dragons-global-mesh-how-chinese-spies-turn-compromised-government-servers-into-c2-relay-nodes
ð Academic Ambush: à¹àž¡àž·à¹àžàžàž¥àžžà¹àž¡ APT àžàž¥àžàž¡àž£àž²àž¢àžàž²àž “Plagiarism” à¹àžàž·à¹àžà¹àžàž²àž°àž£àž°àžàžàžàž±àžàž§àžŽàžàž²àžàž²àž£
àžàžµà¹àžàž·àžà¹àžàž¡à¹àžàžàžàžµà¹à¹àžà¹àžàž§àž²àž¡àžàž±àžàž§àž¥àžàžàžàžàž±àžàž§àžŽàžàž²àžàž²àž£à¹àžà¹àžàžàž±àž§àž¥à¹àž à¹àž®àžà¹àžàžàž£à¹àžªà¹àžàžàžµà¹àž¡àž¥àžàž¥àžàž¡à¹àžàžàž·à¹àž “Forum Troll APT” à¹àžàž¢àžà¹àž²àžàž§à¹àž²àžàž¥àžàž²àžàžàžàžà¹àž«àž¢àž·à¹àžàžàž¹àžàžàž£àž§àžàžàžàžàž²àž£àž¥àžàžà¹àž¥àžµàž¢àžà¹àžàž àžàž£à¹àžàž¡à¹àžàžà¹àžàž¥à¹ Word àžàžµà¹àžàž¹à¹àž«àž¡àž·àžàžàž£àž²àž¢àžàž²àžàžàž£àž§àžàžªàžàž à¹àžà¹àžàž£àžŽàž ๠à¹àž¥à¹àž§à¹àžà¹àžà¹àžàžàžªàž²àž£àžàžµà¹àžàž±àžà¹àžà¹àžàžàž±àžàžàž£àž²àž¢ à¹àž¡àž·à¹àžà¹àž«àž¢àž·à¹àžà¹àžàžŽàžà¹àžàž¥à¹ à¹àžà¹àžàžàž°àžàž¹àžà¹àž£àžµàž¢àžà¹àžà¹à¹àžàž·à¹àžàžàž²àž§àžà¹à¹àž«àž¥àžàž¡àž±àž¥à¹àž§àž£à¹à¹àžà¹àž²àž¡àž²à¹àžà¹àžàž£àž·à¹àžàžàžàž±àžàžàžµ àžàž²àž£à¹àžàž¡àžàžµàžàžµà¹à¹àž¥à¹àžàžàž±àžàžàž§àž²àž¡àžàž¥àž±àž§à¹àž£àž·à¹àžàžàžàž·à¹àžà¹àžªàžµàž¢àžà¹àž¥àž°àžàž§àž²àž¡àžà¹àž²à¹àžàž·à¹àžàžàž·àžà¹àžàž§àžàž§àžŽàžàž²àžàž²àž£ àžàž³à¹àž«à¹àžàž¹à¹àž£àž±àžàž¡àžµà¹àžàž§à¹àžà¹àž¡à¹àžàžŽàžà¹àžàž¥à¹à¹àžàž¢à¹àž¡à¹àž£àž°àž§àž±àž àžàž·àžà¹àžà¹àžàžàž²àž£à¹àžà¹ “à¹àž£àžàžàžàžàž±àžàžàž²àžàžªàž±àžàžàž¡” à¹àžà¹àžàžàž²àž§àžžàžà¹àžà¹àžàžàž£à¹
ð https://securityonline.info/academic-ambush-how-the-forum-troll-apt-hijacks-scholars-systems-via-fake-plagiarism-reports
ð ïž GitHub àž¢àžàž¡àžàžàž¢ àž«àž¥àž±àžàžàž±àžàžàž±àžàžàž²àž£àž§àž¡àžàž¥àž±àžàžà¹àž²àžàžà¹àž²àžàž£àž£àž¡à¹àžàžµàž¢àž¡ Self-Hosted Runner
à¹àž£àž·à¹àžàžàžàžµà¹à¹àž£àžŽà¹àž¡àžàž²àž GitHub àžàž£àž°àžàž²àžšàž§à¹àž²àžàž°à¹àžà¹àžàžà¹àž²àžàž£àž£àž¡à¹àžàžµàž¢àž¡à¹àžàžŽà¹àž¡à¹àžàžŽàž¡àžªàž³àž«àž£àž±àžàžàž²àž£à¹àžà¹àžàž²àž self-hosted runner à¹àž GitHub Actions àžàž±à¹àžà¹àžà¹àž¡àžµàžàž²àžàž¡ 2026 à¹àžàž¢àžàžŽàžàžàž²àžàžµàž¥àž° 0.002 àžàžàž¥àž¥àž²àž£à¹ à¹àž¡à¹àžàž¹à¹à¹àžà¹àžàž°àž¥àžàžàžžàžà¹àžàž£àž·à¹àžàžà¹àžàžà¹àž¥à¹àž§àžà¹àžàž²àž¡ àžà¹àž²àž§àžàžµà¹àžàž³à¹àž«à¹àžàžžàž¡àžàžàžàž±àžàžàž±àžàžàž²àž¥àžžàžàž®àž·àžàžàž±àžàžàžµ à¹àžªàžµàž¢àžàž§àžŽàžàž²àž£àžà¹àžàž±àžà¹àžàžàž±à¹àž§àž§à¹àž²à¹àžà¹àžàžàž²àž£àžàž±àžàžªàžŽàžà¹àžàžàžµà¹à¹àž¡à¹àžàž±àžà¹àžªàžµàž¢àžàžàž¹à¹à¹àžà¹ àžªàžžàžàžà¹àž²àž¢ GitHub àžà¹àžàžàžàžàžàž¡àž²àžàž£àž°àžàž²àžšà¹àž¥àž·à¹àžàžàžàž²àž£à¹àžà¹àžàžà¹àž²àžàž£àž£àž¡à¹àžàžµàž¢àž¡àžàžàžà¹àž àžàž£à¹àžàž¡àž¥àžàž£àž²àžàž²àžªàž³àž«àž£àž±àž runner àžàžµà¹ GitHub à¹àž®àžªàžà¹à¹àžàžàž¥àžàžàž¶àž 39% àžàž±à¹àžà¹àžà¹àžà¹àžàžàžµ 2026 à¹àž¥àž°àž¢à¹àž³àž§à¹àž²àžàž°àžàž¥àž±àžà¹àžàžàž±àžà¹àžªàžµàž¢àžàžàž±àžàžàž±àžàžàž²à¹àž«à¹àž¡àž²àžàžàž¶à¹àžàžà¹àžàžàžàž£àž±àžà¹àžàžà¹àž«àž¡à¹ à¹àž£àž·à¹àžàžàžàžµà¹àžªàž°àžà¹àžàžàž§à¹àž²àžàž¥àž±àžàžàžàžàžàžžàž¡àžàžàžªàž²àž¡àž²àž£àžàžàžàžàž±àžà¹àž«à¹à¹àžàž¥àžàžàžàž£à¹àž¡àž¢àž±àžàž©à¹à¹àž«àžà¹àžà¹àžàžàžàžàžàž§àžàžàž²àž£àžàž±àžàžªàžŽàžà¹àžà¹àžà¹
ð https://securityonline.info/the-developer-win-github-postpones-self-hosted-runner-fee-after-massive-community-outcry
â ïž àžà¹àžàžà¹àž«àž§à¹àž£à¹àž²àž¢à¹àž£àž HPE OneView à¹àžàžŽàžàžàž²àžà¹àž«à¹àž¢àž¶àžàžšàž¹àžàž¢à¹àžà¹àžàž¡àž¹àž¥à¹àžà¹àžàž±àžàžàžµ
Hewlett Packard Enterprise (HPE) à¹àžà¹àžà¹àžàž·àžàžàžà¹àžàžà¹àž«àž§à¹ CVE-2025-37164 àžàžµà¹àž¡àžµàžàž°à¹àžàžàžàž§àž²àž¡àž£àžžàžà¹àž£àžàžªàž¹àžàžªàžžàž 10.0 à¹àžàžàžàžàžà¹à¹àž§àž£à¹ OneView àžàž¶à¹àžà¹àžà¹àžàž«àž±àž§à¹àžà¹àžàžàž²àž£àžàž±àžàžàž²àž£à¹àžàžŽàž£à¹àžà¹àž§àžàž£à¹à¹àž¥àž°àž£àž°àžàžà¹àžàž£àž·àžàžà¹àž²àž¢ àžà¹àžàžà¹àž«àž§à¹àžàžµà¹à¹àžàžŽàžà¹àžàžàž²àžªà¹àž«à¹àžàž¹à¹à¹àžàž¡àžàžµàžàžµà¹à¹àž¡à¹àžà¹àžàžàž¥à¹àžàžàžàžŽàžàžªàž²àž¡àž²àž£àžàžªàž±à¹àžàž£àž±àžà¹àžà¹àžàžàž²àžàž£àž°àž¢àž°à¹àžàž¥à¹àžà¹àžàž±àžàžàžµ à¹àžà¹àž²àžàž±àžàž§à¹àž²àžªàž²àž¡àž²àž£àžàž¢àž¶àžàžšàž¹àžàž¢à¹àžà¹àžàž¡àž¹àž¥àžàž±à¹àžàž£àž°àžàžà¹àžà¹à¹àž¥àž¢ HPE àž£àžµàžàžàžàžà¹àžàžàžà¹ v11.00 à¹àž¥àž°à¹àžàž°àžàž³à¹àž«à¹àžàž¹à¹à¹àžà¹àž£àžµàžàžàž±àžà¹àžàžà¹àžàž¢àžà¹àž§àž àžªàž³àž«àž£àž±àžàžàž¹à¹àžàžµà¹àž¢àž±àžà¹àžà¹à¹àž§àžàž£à¹àžàž±àžà¹àžà¹àž² àž¡àžµ hotfix à¹àž«à¹ à¹àžà¹àžà¹àžàžàž£àž°àž§àž±àžàž§à¹àž²àž«àž¥àž±àžàžàž±àžà¹àžàž£àžàžàž²àžà¹àž§àžàž£à¹àžàž±àžàžà¹àžàžàžàžŽàžàžàž±à¹àžàžà¹àž³àžàžµàžàžàž£àž±à¹àž à¹àž¡à¹à¹àžà¹àžàžàž±à¹àžàžàž°àž¢àž±àžà¹àžªàžµà¹àž¢àžàžàž¢àž¹à¹
ð https://securityonline.info/cve-2025-37164-cvss-10-0-unauthenticated-hpe-oneview-rce-grants-total-control-over-data-centers
ðš CISA à¹àžàž·àžàžàžà¹àž§àž à¹àž®à¹àžà¹àžàžàž£à¹àžàžµàžà¹àžà¹àžà¹àžàžà¹àž«àž§à¹ Cisco à¹àž¥àž° SonicWall à¹àžàž¡àžàžµàžàž£àžŽàžà¹àž¥à¹àž§
àž«àžà¹àž§àž¢àžàž²àž CISA àžàžàžàžªàž«àž£àž±àžàž¯ àžàžàžàžàž£àž°àžàž²àžšà¹àžàžŽà¹àž¡àžà¹àžàžà¹àž«àž§à¹àž£à¹àž²àž¢à¹àž£àžà¹àžà¹àž²àž£àž²àž¢àžàž²àž£ KEV àž«àž¥àž±àžàžàžàž§à¹àž²àžàž¥àžžà¹àž¡à¹àž®à¹àžà¹àžàžàž£à¹àžàžµàž UAT-9686 àžàž³àž¥àž±àžà¹àžà¹àžà¹àžàžà¹àž«àž§à¹ Cisco Secure Email Gateway àžàžµà¹àž¡àžµàžàž°à¹àžàž 10 à¹àžà¹àž¡à¹àžàžàž²àž£à¹àžà¹àž²àžàž¶àžàž£àž°àžàžà¹àžàž¢à¹àž¡à¹àžà¹àžàžàž¢àž·àžàž¢àž±àžàžàž±àž§àžàž àžàž£à¹àžàž¡àžàžŽàžàžàž±à¹àžàž¡àž±àž¥à¹àž§àž£à¹ AquaShell à¹àž¥àž° AquaPurge à¹àžàž·à¹àžàžà¹àžàžàž£à¹àžàžàž£àžàž¢ àžàžàžàžàž²àžàžàžµà¹àž¢àž±àžàžàžàžàž²àž£à¹àžàž¡àžàžµ SonicWall SMA1000 à¹àžàž¢à¹àžà¹àžà¹àžàžà¹àž«àž§à¹à¹àžàžŽàž¡àž£à¹àž§àž¡àžàž±àžàžà¹àžàžà¹àž«àž§à¹à¹àž«àž¡à¹à¹àžàž·à¹àžàž¢àž¶àžàž£àž°àžàžà¹àžà¹àžàž±à¹àžàž«àž¡àž à¹àž¥àž°àž¢àž±àžàž¡àžµàžàž²àž£àžàž³àžà¹àžàžà¹àž«àž§à¹à¹àžà¹àž²à¹àž ASUS Live Update àžàžµà¹àž«àž¡àžàžàž²àž£àžªàžàž±àžàžªàžàžžàžà¹àž¥à¹àž§àžàž¥àž±àžàž¡àž²à¹àžà¹à¹àžàž¡àžàžµà¹àžàž¥àž±àžàž©àžàž° supply chain àžàžµàžàžà¹àž§àž¢ àžàž³à¹àž«à¹àž«àžà¹àž§àž¢àžàž²àžàž£àž±àžàžà¹àžàžà¹àž£à¹àžà¹àžàžàžà¹àžà¹àžàžà¹àžªà¹àžàžàž²àž¢ 24 àžàž±àžàž§àž²àžàž¡ 2025 ð https://securityonline.info/cisa-alert-chinese-hackers-weaponize-cvss-10-cisco-zero-day-sonicwall-exploit-chains
ð à¹àž®à¹àžà¹àžàžàž£à¹àžàžµàž UAT-9686 à¹àžà¹àž¡àž±àž¥à¹àž§àž£à¹ Aqua à¹àžàž²àž° Cisco Secure Email
Cisco Talos à¹àžàžŽàžà¹àžàž¢àž§à¹àž²àžàž¥àžžà¹àž¡ UAT-9686 àžàž³àž¥àž±àžà¹àžà¹àžà¹àžàžà¹àž«àž§à¹ CVE-2025-20393 à¹àž Cisco Secure Email Gateway à¹àž¥àž° Web Manager à¹àžàž·à¹àžà¹àžà¹àž²àžàž¶àžàž£àž°àžàžà¹àžàž£àž°àžàž±àž root à¹àžàž¢àžàž²àžšàž±àž¢àžàž²àž£à¹àžàžŽàžà¹àžà¹àžàž²àžàžàžµà¹àžàžàž£à¹ Spam Quarantine àžàžµà¹à¹àžàž·à¹àžàž¡àžà¹àžàžàžŽàžà¹àžàžàž£à¹à¹àžà¹àž àžàž¶à¹àžàž«àž²àžà¹àžàžŽàžà¹àž§à¹àžàž°àžàž¥àž²àž¢à¹àžà¹àžàžà¹àžàžàžàž²àžà¹àž«à¹à¹àžàž¡àžàžµà¹àžà¹àžàž±àžàžàžµ à¹àž¡àž·à¹àžà¹àžà¹àž²àž¡àž²à¹àž¥à¹àž§àžàž§àžà¹àžàž²àžàžŽàžàžàž±à¹àžàž¡àž±àž¥à¹àž§àž£à¹àžàžžàž “Aqua” à¹àžà¹à¹àžà¹ AquaShell àžàžµà¹àžàž±àžàžàž±àž§à¹àžà¹àžàž¥à¹à¹àžàžŽàž£à¹àžà¹àž§àžàž£à¹, AquaPurge àžàžµà¹àž¥àžàž«àž¥àž±àžàžàž²àžà¹àž log à¹àž¥àž° AquaTunnel àžàžµà¹àžªàž£à¹àž²àžàžàž²àž£à¹àžàž·à¹àžàž¡àžà¹àžàž¢à¹àžàžàžàž¥àž±àžà¹àžàž·à¹àžàž£àž±àžàž©àž²àžàž²àž£à¹àžà¹àž²àžàž¶àž à¹àž¡à¹à¹àžà¹àžà¹àžàžà¹àž«àž§à¹à¹àž¥à¹àž§àžà¹àž¢àž±àžà¹àž¡à¹àžà¹àžàž àž±àž¢ à¹àžàž£àž²àž°àž¡àž±àž¥à¹àž§àž£à¹àžàž±àžàž¥àž¶àžàžàž Cisco à¹àžàž°àžàž³àž§à¹àž²àž«àž²àžàžàž¹àžà¹àžàž²àž°à¹àž¥à¹àž§àžà¹àžàž rebuild à¹àžàž£àž·à¹àžàžà¹àž«àž¡à¹à¹àžà¹àž²àžàž±à¹àž
ð https://securityonline.info/cisco-zero-day-siege-chinese-group-uat-9686-deploys-aqua-malware-via-cvss-10-root-exploit
ð SonicWall à¹àžàž·àžàžàžà¹àžàžà¹àž«àž§à¹à¹àž«àž¡à¹àžàž¹àžà¹àžà¹àž£à¹àž§àž¡àžàž±àžàžà¹àžàžà¹àž«àž§à¹à¹àžàžŽàž¡ àž¢àž¶àžàž£àž°àžàžà¹àžà¹à¹àžàž root
SonicWall àžàžàžàžàž£àž°àžàž²àžšàžà¹àž§àžà¹àžàžµà¹àž¢àž§àžàž±àžàžà¹àžàžà¹àž«àž§à¹ CVE-2025-40602 à¹àžàžàžžàžàžàž£àžà¹ SMA1000 à¹àž¡à¹àžàž°à¹àžàž CVSS à¹àžàžµàž¢àž 6.6 à¹àžà¹à¹àž¡àž·à¹àžàžàž¹àžà¹àžà¹àž£à¹àž§àž¡àžàž±àžàžà¹àžàžà¹àž«àž§à¹ CVE-2025-23006 àžàžµà¹àž£à¹àž²àž¢à¹àž£àžàžàž§à¹àž² àžàž°àžàž¥àž²àž¢à¹àžà¹àžàžàž²àž£à¹àžàž¡àžàžµà¹àžàž chain àžàžµà¹àžàž³à¹àž«à¹àžàž¹à¹à¹àžàž¡àžàžµàžªàž²àž¡àž²àž£àžà¹àžà¹àž²àžàž¶àžàž£àž°àžàžà¹àžàž¢à¹àž¡à¹àžà¹àžàžàž¥à¹àžàžàžàžŽàž à¹àž¥àž°àž¢àžàž£àž°àžàž±àžàžªàžŽàžàžàžŽà¹à¹àžà¹àž root à¹àžà¹àžàž±àžàžàžµ à¹àžà¹àž²àžàž±àžàž¢àž¶àžàž£àž°àžàžàžàž±à¹àžàžàžàžà¹àžàž£à¹àžà¹à¹àžàž¢à¹àž¡à¹àžà¹àžàžàž¡àžµàž£àž«àž±àžªàžà¹àž²àž SonicWall à¹àžà¹àžàžàžà¹àžàžàžà¹à¹àž«àž¡à¹à¹àž¥àž°à¹àžàž°àžàž³à¹àž«à¹àžàž¹à¹à¹àžà¹àž£àžµàžàžàž±àžà¹àžàžàžàž±àžàžàžµ àž«àž²àžà¹àž¡à¹àžªàž²àž¡àž²àž£àžàžàž³à¹àžà¹àžàž§àž£àžàžŽàžàžàž²àž£à¹àžà¹àž²àžàž¶àž AMC à¹àž¥àž° SSH àžàž²àžàžàžŽàžà¹àžàžàž£à¹à¹àžà¹àžà¹àžàž·à¹àžàžà¹àžàžàžàž±àžàžàž²àž£à¹àžàž¡àžàžµ
âââââââð https://securityonline.info/zero-day-warning-hackers-chain-sonicwall-sma1000-flaws-for-unauthenticated-root-rce
0 Comments
0 Shares
49 Views
0 Reviews