àž£àž§àž¡àžà¹àž²àž§àžàž²àžà¹àž§àž SecurityOnline
#àž£àž§àž¡àžà¹àž²àž§IT #20251211 #securityonline Makop Ransomware àžàž¥àž±àžàž¡àž²àžàžµàžàžàž£àž±à¹àžàžàž£à¹àžàž¡àžàž¥àž¢àžžàžàžà¹à¹àž«àž¡à¹
àž àž±àž¢àžàžžàžàžàž²àž¡àžàžµà¹à¹àžàž¢àžàžžà¹àžàžàž·à¹àž Makop ransomware à¹àžà¹àžàž±àžàžàž²àž§àžŽàžàžµàžàž²àž£à¹àžàž¡àžàžµà¹àž«à¹àžàž±àžàžà¹àžàžàžàž¶à¹àž à¹àž¡à¹àžàž°àž¢àž±àžà¹àžà¹àžà¹àžàžà¹àž«àž§à¹à¹àžàžŽàž¡àžàž·àžàžàž²àž£à¹àžàž²àž°àžà¹àž²àžàžàžàž£à¹àž RDP àžàžµà¹à¹àž¡à¹à¹àžà¹àžà¹àžàžàžàž±àž à¹àžà¹àžàž£àž±à¹àžàžàžµà¹àžàž§àžà¹àžàž²à¹àžªàž£àžŽàž¡à¹àžàž£àž·à¹àžàžàž¡àž·àžàžàž¢à¹àž²àž GuLoader à¹àžàž·à¹àžàžàž²àž§àžà¹à¹àž«àž¥àžàž¡àž±àž¥à¹àž§àž£à¹à¹àžàžŽà¹àž¡à¹àžàžŽàž¡ à¹àž¥àž°àž¢àž±àžà¹àžà¹à¹àžàžàžàžŽàž BYOVD (Bring Your Own Vulnerable Driver) à¹àžàž·à¹àžàžà¹àž²à¹àžàž£à¹àžàž£àž¡àžà¹àžàžàžàž±àžà¹àž§àž£àž±àžªà¹àžàž£àž°àžàž±àž kernel à¹àžà¹à¹àžàž¢àžàž£àž àžàž²àž£à¹àžàž¡àžàžµàžªà¹àž§àžà¹àž«àžà¹àžàžžà¹àžà¹àžà¹àž²à¹àžàžàžµà¹àžàžàžà¹àžàž£à¹àžàžàžŽàžà¹àžàžµàž¢ à¹àžà¹àžà¹àžàžà¹àžàž«àž¥àž²àž¢àžàž£àž°à¹àžàžšàžàž·à¹àžàžà¹àž§àž¢ àžàžžàžàžªàž³àžàž±àžàžàž·àž à¹àž¡à¹àžàž°à¹àžà¹àžàžàž²àž£à¹àžàž¡àžàžµàžàžµà¹àžàž¹ “àžà¹àž²àž¢” à¹àžà¹àžàž¥àž¥àž±àžàžà¹àžàž¥àž±àžàžªàž£à¹àž²àžàžàž§àž²àž¡à¹àžªàžµàž¢àž«àž²àž¢àž£àžžàžà¹àž£àžàžà¹àžàžàžàžà¹àžàž£àžàžµà¹àž¥àž°à¹àž¥àž¢àžàž²àž£àžàž±àžà¹àžàžà¹àž¥àž°àžàž²àž£àžàž±à¹àžàžà¹àž²àžàž§àž²àž¡àžàž¥àžàžàž àž±àž¢
https://securityonline.info/makop-ransomware-evolves-guloader-and-byovd-edr-killers-used-to-attack-rdp-exposed-networks DeadLock Ransomware à¹àžà¹àžà¹àžàžà¹àž«àž§à¹à¹àžàž£à¹àž§àžàž£à¹ Baidu à¹àžàž²àž°àž£àž°àžàž
àžàž¥àžžà¹àž¡àžàž²àžàžàž²àžàž£à¹àžà¹àžàžàž£à¹àžàžµà¹àž«àž§àž±àžàžàž¥àžàž²àžàžàž²àž£à¹àžàžŽàžà¹àžà¹àžàž¥à¹àžàž¢à¹àž£àžàžàž±àž¡à¹àž§àž£à¹àžàž·à¹àž DeadLock à¹àžàž¢à¹àžà¹à¹àžàžàžàžŽàž BYOVD à¹àžà¹àžàžàž±àž àžàž£àž²àž§àžàžµà¹àžàž§àžà¹àžàž²àžàž²àžšàž±àž¢à¹àžàž£à¹àž§àžàž£à¹àžàž²àž Baidu Antivirus àžàžµà¹àž¡àžµàžà¹àžàžà¹àž«àž§à¹ àžàž³à¹àž«à¹àžªàž²àž¡àž²àž£àžàžªàž±à¹àžàžàž²àžà¹àžàž£àž°àžàž±àž kernel à¹àž¥àž°àžàžŽàžàžàž²àž£àžàž³àžàž²àžàžàžàžà¹àžàž£à¹àžàž£àž¡àžà¹àžàžàžàž±àžà¹àžà¹àžàž±àžàžàžµ àž«àž¥àž±àžàžàž²àžàžàž±à¹àžàž¢àž±àžà¹àžà¹ PowerShell script àžàžŽàžàžàž£àžŽàžàž²àž£àžªàž³àžàž±àž à¹àžà¹àž SQL Server à¹àž¥àž°àž¥àž shadow copies à¹àžàž·à¹àžàžàž±àžà¹àž¡à¹à¹àž«à¹à¹àž«àž¢àž·à¹àžàžàž¹à¹àžàž·àžàžà¹àžàž¡àž¹àž¥à¹àžà¹ àžàž±àž§à¹àž£àžàžàž±àž¡à¹àž§àž£à¹àžàž¹àžà¹àžàžµàž¢àžàžàž¶à¹àžà¹àž«àž¡à¹àžà¹àž§àž¢ C++ à¹àž¥àž°à¹àžà¹àž§àžŽàžàžµà¹àžà¹àž²àž£àž«àž±àžªà¹àžàžàž²àž°àžàžµà¹à¹àž¡à¹à¹àž«àž¡àž·àžàžà¹àžàž£ àžàžµà¹àžà¹àž²àžªàžà¹àžàžàž·àžàžàž§àžà¹àžàž²à¹àž¡à¹à¹àžà¹àž§àžŽàžàžµ “double extortion” à¹àžà¹à¹àž«à¹à¹àž«àž¢àž·à¹àžàžàžŽàžàžà¹àžàžà¹àž²àžà¹àžàž Session à¹àžàž·à¹àžà¹àžàž£àžàž²àžà¹àž²àž¢àžà¹àž²à¹àžà¹à¹àžà¹àž Bitcoin àž«àž£àž·àž Monero
https://securityonline.info/deadlock-ransomware-deploys-byovd-edr-killer-by-exploiting-baidu-driver-for-kernel-level-defense-bypass àžà¹àžàžà¹àž«àž§à¹àž£à¹àž²àž¢à¹àž£àžà¹àž PCIe 6.0 à¹àžªàžµà¹àž¢àžàžà¹àžàž¡àž¹àž¥à¹àžªàžµàž¢àž«àž²àž¢
àž¡àž²àžàž£àžàž²àž PCIe 6.0 àžàžµà¹à¹àžà¹à¹àžàžàž²àž£àžªà¹àžàžà¹àžàž¡àž¹àž¥àžàž§àž²àž¡à¹àž£à¹àž§àžªàž¹àžàžàž¹àžàžàžàž§à¹àž²àž¡àžµàžà¹àžàžà¹àž«àž§à¹à¹àžàžàž¥à¹àž IDE (Integrity and Data Encryption) àžàž¶à¹àžàžàž²àžàžàž³à¹àž«à¹àžàž¹à¹à¹àžàž¡àžàžµàžàžµà¹àž¡àžµàžªàžŽàžàžàžŽà¹à¹àžà¹àž²àžàž¶àžàž®àž²àž£à¹àžà¹àž§àž£à¹àžªàž²àž¡àž²àž£àžàžàžµàžàžà¹àžàž¡àž¹àž¥àžàžµà¹àžàžŽàžàžàž¥àž²àžàž«àž£àž·àžà¹àžà¹àž²à¹àžà¹àž²àž¡àž²à¹àžàž£àž°àžàžà¹àžà¹ àžà¹àžàžà¹àž«àž§à¹àžàžµà¹àžàž¹àžàž£àž°àžàžžà¹àžà¹àž CVE-2025-9612, 9613 à¹àž¥àž° 9614 à¹àž¡à¹àžàž°à¹àž¡à¹àžªàž²àž¡àž²àž£àžà¹àžàž¡àžàžµàžàž²àžàž£àž°àž¢àž°à¹àžàž¥ à¹àžà¹àžà¹à¹àžà¹àžàž àž±àž¢à¹àž«àžà¹àžªàž³àž«àž£àž±àžàžšàž¹àžàž¢à¹àžà¹àžàž¡àž¹àž¥àž«àž£àž·àžàž£àž°àžàžàžàžµà¹àžà¹àžàžàžàž²àž£àžàž§àž²àž¡àžàž¥àžàžàž àž±àž¢àžªàž¹àž àžàžàžàžàžµà¹ PCI-SIG à¹àžà¹àžàžàž Draft Engineering Change Notice à¹àžàž·à¹àžà¹àžà¹à¹àž à¹àž¥àž°à¹àžàž°àžàž³à¹àž«à¹àžàž¹à¹àžàž¥àžŽàžàžàž±àžà¹àžàžà¹àžàžŽàž£à¹àž¡à¹àž§àž£à¹à¹àžàž·à¹àžàžàžŽàžàžà¹àžàžà¹àž«àž§à¹à¹àž«àž¥à¹àž²àžàžµà¹à¹àžàž¢à¹àž£à¹àž§
https://securityonline.info/critical-pcie-6-0-flaws-risk-secure-data-integrity-via-stale-data-injection-in-ide-mechanism EtherRAT Malware à¹àžà¹àžàž¥à¹àžàžà¹àžàž Ethereum àžà¹àžàžàž£à¹àžàžàž£àžàž¢
àž«àž¥àž±àžàžàž²àžà¹àžàžŽàžàžà¹àžàžà¹àž«àž§à¹ React2Shell à¹àžàžµàž¢àžà¹àž¡à¹àžàžµà¹àž§àž±àž àžàž±àžàž§àžŽàžàž±àž¢àžàžàž¡àž±àž¥à¹àž§àž£à¹à¹àž«àž¡à¹àžàž·à¹àž EtherRAT àžàžµà¹à¹àžà¹àžàž¥à¹àžàžà¹àžàž Ethereum à¹àžà¹àžàžà¹àžàžàžàž²àžàžªàž·à¹àžàžªàž²àž£àžàž±àžàžàž¹à¹àžàž§àžàžàžžàž¡ à¹àžàž¢àžàž²àžšàž±àž¢ smart contracts à¹àžàž·à¹àžàž£àž±àžàžàž³àžªàž±à¹àž àžàž³à¹àž«à¹à¹àžàžà¹àž¡à¹àžªàž²àž¡àž²àž£àžàžàžŽàžàžàž±à¹àžà¹àžà¹ à¹àžàž£àž²àž°à¹àžàž£àž·àžàžà¹àž²àž¢ Ethereum à¹àžà¹àžàž£àž°àžàžàžàž£àž°àžàž²àž¢àžšàž¹àžàž¢à¹ àžàžàžàžàž²àžàžàžµà¹ EtherRAT àž¢àž±àžàž¡àžµàžàž§àž²àž¡àžàž¥à¹àž²àž¢àžàž¥àž¶àžàžàž±àžà¹àžàž£àž·à¹àžàžàž¡àž·àžàžàžµà¹à¹àžàž¢à¹àžà¹à¹àžàž¢àžàž¥àžžà¹àž¡ Lazarus àžàžàžà¹àžàž²àž«àž¥àžµà¹àž«àžàž·àž à¹àž¥àž°àžàž¹àžàžàžàžà¹àžàžà¹àž«à¹àžàž±àžàžàž±àž§à¹àžà¹àžàž«àžàž²à¹àžàž£àž°àžàž Linux àžà¹àž§àž¢àž«àž¥àž²àž¢àž§àžŽàžàžµàžàž²àž£ persistence àžàž£à¹àžàž¡àžàž±à¹àžàžàž²àž§àžà¹à¹àž«àž¥àž runtime àžàžàž Node.js à¹àžàžà¹àžàž·à¹àžàžàž¥àž¡àžàž¥àž·àžàžàž±àžàžàž²àž£àžàž³àžàž²àžàžàžàžàžŽ àžàž·àžà¹àžà¹àžàžàž²àž£àž¢àžàž£àž°àžàž±àžàžàž²àž£à¹àžàž¡àžàžµàžàž²àžàžà¹àžàžà¹àž«àž§à¹ React2Shell à¹àžàžªàž¹à¹àž£àž°àžàž±àž APT àžàžµà¹àžàž±àžàžàž£àž²àž¢àž¢àžŽà¹àžàžàž¶à¹àž
https://securityonline.info/etherrat-malware-hijacks-ethereum-blockchain-for-covert-c2-after-react2shell-exploit Slack CEO àž¢à¹àž²àž¢à¹àžàž£à¹àž§àž¡àžàžµàž¡ OpenAI à¹àžà¹àž CRO
OpenAI àžàž³àž¥àž±àžà¹àž£à¹àžàž«àž²àžàž²àžàžªàž£à¹àž²àžàž£àž²àž¢à¹àžà¹à¹àžàž·à¹àžàž£àžàžàž£àž±àžàžà¹àž²à¹àžà¹àžà¹àž²àž¢àž¡àž«àž²àžšàž²àž¥à¹àžàžàž²àž£àžàž£àž°àž¡àž§àž¥àžàž¥ AI àž¥à¹àž²àžªàžžàžà¹àžà¹àžàž¶àž Denise Dresser àžàžµàžàžµà¹àžàžàžàž Slack à¹àžà¹àž²àž¡àž²àž£àž±àžàžàž³à¹àž«àžà¹àž Chief Revenue Officer (CRO) à¹àžàž·à¹àžàžàž¹à¹àž¥àžàž¥àž¢àžžàžàžà¹àž£àž²àž¢à¹àžà¹à¹àž¥àž°àžàž²àž£àžàž¢àž²àž¢àžàž¥àž²àžàžàžàžà¹àžàž£ àžàž²àž£à¹àžà¹àž²àž¡àž²àžàžàžà¹àžàžàžªàž°àžà¹àžàžà¹àž«à¹à¹àž«à¹àžàž§à¹àž² OpenAI àžàž³àž¥àž±àžà¹àžà¹à¹àžàž§àžàž²àžà¹àžàž Silicon Valley àžàž¢à¹àž²àžà¹àžà¹àž¡àž£àž¹àžà¹àžàž àžàž±à¹àžàžàž²àž£àžàž¢àž²àž¢àžàž²àžàžàž¹à¹à¹àžà¹à¹àž¥àž°àžàž²àž£àž«àž²àžà¹àžàžàžàž²àžàžàž³à¹àžàžŽàž à¹àž¡à¹àž§à¹àž²àžàž°à¹àžà¹àžàžàž²àž£àžàž²àž¢ subscription àž«àž£àž·àžà¹àž¡à¹àžàž£àž°àžàž±à¹àžà¹àžàž©àžàž²à¹àž ChatGPT àžàž¢à¹àž²àžà¹àž£àžà¹àžàž²àž¡ àžàž§àž²àž¡àžà¹àž²àžàž²àž¢à¹àž«àžà¹àžàž·àžàžàž²àž£àžàž³à¹àž«à¹àž£àž²àž¢à¹àžà¹à¹àžàžŽàžà¹àžàžàž±àžàžàž±àžàžà¹àž²à¹àžà¹àžà¹àž²àž¢àžàžµà¹àžªàž¹àžàž¥àžŽà¹àž§àžàž²àžàžàž²àž£àžªàž£à¹àž²àžà¹àž¥àž°àžàž¹à¹àž¥à¹àžàž£àžàžªàž£à¹àž²àžàžàž·à¹àžàžàž²àž AI
https://securityonline.info/slack-ceo-denise-dresser-joins-openai-as-cro-to-solve-the-profitability-puzzle Jenkins à¹àžàžàžà¹àžàžà¹àž«àž§à¹àž£à¹àž²àž¢à¹àž£àž à¹àžªàžµà¹àž¢àžàžàž¹àžà¹àžàž¡àžàžµ DoS à¹àž¥àž° XSS
àžàžµàž¡àžàž±àžàžàž² Jenkins àžàžàžàžàž£àž°àžàž²àžšà¹àžàž·àžàžàžàž£àž±à¹àžà¹àž«àžà¹ àž«àž¥àž±àžàžàžàžà¹àžàžà¹àž«àž§à¹àž«àž¥àž²àž¢àž£àž²àž¢àžàž²àž£àžàžµà¹àžàž²àžàžàž³à¹àž«à¹àž£àž°àžàž CI/CD àžàž¹àžà¹àžàž¡àžàžµàžàžàž«àž¢àžžàžàžàž³àžàž²àž àž«àž£àž·àžà¹àžàžàžàž±àžàžªàžàž£àžŽàžàžà¹àžàž±àžàžàž£àž²àž¢ (XSS) à¹àžàž¢à¹àžàžàž²àž°àžà¹àžàžà¹àž«àž§à¹ CVE-2025-67635 àžàžµà¹à¹àžàžŽàžà¹àžàžàž²àžªà¹àž«à¹à¹àž®àžà¹àžàžàž£à¹àžªà¹àžàžàž³àžªàž±à¹àžàžà¹àž²àž HTTP CLI à¹àžàž¢à¹àž¡à¹àžà¹àžàžàž¥à¹àžàžàžàžŽàž àžàž³à¹àž«à¹à¹àžàžŽàž£à¹àžà¹àž§àžàž£à¹àžàž£àž±àžàž¢àž²àžàž£àžàž¹àžà¹àžà¹àžàžàž¥à¹àž¡ àžàžµàžàžà¹àžàžà¹àž«àž§à¹ CVE-2025-67641 à¹àž Coverage Plugin àžà¹à¹àžàžŽàžàžàž²àžà¹àž«à¹àžàž¹à¹à¹àžàž¡àžàžµàžàž±àžà¹àžà¹àž JavaScript àž¥àžà¹àžàž£àž²àž¢àžàž²àž à¹àž¡àž·à¹àžàžàž¹à¹àžàž¹à¹àž¥à¹àžàžŽàžàžàž¹ àž£àž²àž¢àžàž²àžàžàž±à¹àžàžàž°àž£àž±àžàžªàžàž£àžŽàžàžà¹àžàž±àžàžàžµ à¹àžªàžµà¹àž¢àžàžà¹àžàžàž²àž£àžàž¹àžàžà¹àž¡àž¢ session à¹àž¥àž°àžà¹àžàž¡àž¹àž¥àžªàž³àžàž±àž à¹àž¡à¹àžàž°àž¡àžµàžàž²àž£àžàž±àžà¹àžàžà¹àžà¹à¹àžàž«àž¥àž²àž¢àžàžžàž à¹àžà¹àž àžàž²àž£à¹àžà¹àž²àž£àž«àž±àžª token à¹àž¥àž°àžàž²àž£àžàžŽàžàžà¹àžàžà¹àž«àž§à¹àžàž²àž£à¹àž«à¹àžàž£àž«àž±àžªàžà¹àž²àž à¹àžà¹àž¢àž±àžàž¡àžµàžàž²àžàžàž¥àž±à¹àžàžàžŽàžàžàžµà¹àž¢àž±àžà¹àž¡à¹àž¡àžµà¹àžàžàžà¹àžàžàžàž¡àž² àžàž³à¹àž«à¹àžàž¹à¹àžàž¹à¹àž¥àž£àž°àžàžàžà¹àžàžàž£àžµàžàžàž±àžà¹àžàž Jenkins à¹àž¥àž°àžàž¥àž±à¹àžàžàžŽàžàžàžµà¹à¹àžàžµà¹àž¢àž§àžà¹àžàžà¹àžàž·à¹àžàžà¹àžàžàžàž±àžàžàž§àž²àž¡à¹àžªàžµàž¢àž«àž²àž¢
https://securityonline.info/high-severity-jenkins-flaws-risk-unauthenticated-dos-via-http-cli-and-xss-via-coverage-reports Gogs Zero-Day à¹àžàžà¹àžàž²àž°àžàž§à¹àž² 700 à¹àžàžŽàž£à¹àžà¹àž§àžàž£à¹ àžà¹àž²àž Symlink Path Traversal
àžàž±àžàž§àžŽàžàž±àž¢àžàž²àž Wiz àžàžàžà¹àžàžà¹àž«àž§à¹à¹àž«àž¡à¹à¹àž Gogs (CVE-2025-8110) àžàžµà¹à¹àžàžŽàžàžàž²àžà¹àž«à¹àžàž¹à¹à¹àžàž¡àžàžµàžªàž²àž¡àž²àž£àžà¹àžàžµàž¢àžà¹àžàž¥à¹àžàž±àžàžàž£àž²àž¢àž¥àžà¹àžàž£àž°àžàžà¹àžà¹àžà¹àž²àž¢ ๠àžà¹àž²àžàžàž²àž£à¹àžà¹ symlink à¹àžàž¢àžà¹àžàžà¹àž«àž§à¹àžàžµà¹à¹àžà¹àžàžàž²àž£à¹àž¥àžµà¹àž¢àžà¹àžàžàžà¹à¹àžà¹àž²àžàžµà¹à¹àžàž¢à¹àžà¹à¹àžà¹àžà¹àž¥à¹àž§ àžàž³à¹àž«à¹àžàž§à¹àž² 700 à¹àžàžŽàž£à¹àžà¹àž§àžàž£à¹àžàž²àž 1,400 àžàžµà¹àžàž£àž§àžàžªàžàžàžàž¹àžà¹àžàž²àž°àžªàž³à¹àž£à¹àž àžàž²àž£à¹àžàž¡àžàžµàž¡àžµàž¥àž±àžàž©àžàž°à¹àžà¹àžà¹àžàž¡à¹àžàž “smash-and-grab” àžàž·àžà¹àžà¹àž²àž¡àž²à¹àž£à¹àž§ à¹àžà¹ symlink à¹àžàžµàž¢àžàžàž±àžà¹àžàž¥à¹àžªàž³àžàž±àž à¹àžà¹àž .git/config à¹àž¥à¹àž§àž£àž±àžàžàž³àžªàž±à¹àžàžàž±àžàžàž£àž²àž¢ àžàž²àžàžàž±à¹àžàžàžŽàžàžàž±à¹àž payload àžàžµà¹à¹àžà¹ Supershell à¹àžàž·à¹àžàžàž§àžàžàžžàž¡à¹àžàž£àž·à¹àžàžàžàž²àžàž£àž°àž¢àž°à¹àžàž¥ àžàž±àžàžàžžàžàž±àžàž¢àž±àžà¹àž¡à¹àž¡àžµà¹àžàžàžà¹àžàžàžàž¡àž² àžàž¹à¹àžàž¹à¹àž¥àž£àž°àžàžàžàž¶àžàžàž¹àžà¹àžàž°àžàž³à¹àž«à¹àžàžŽàžàžàž²àž£àžªàž¡àž±àžàž£àžªàž¡àž²àžàžŽàžàžªàž²àžàž²àž£àžàž° à¹àž¥àž°àžàž³àžàž±àžàžàž²àž£à¹àžà¹àž²àžàž¶àžàž£àž°àžàžàžàž±àžàžàžµ
https://securityonline.info/gogs-zero-day-cve-2025-8110-risks-rce-for-700-servers-via-symlink-path-traversal-bypass GitLab àžàžàžà¹àžàžà¹àž«àž§à¹ XSS à¹àžªàžµà¹àž¢àžà¹àžàžàžà¹àž¡àž¢ session àžà¹àž²àž Wiki
GitLab àžàžàžàžàž±àžà¹àžàžàžà¹àž§àžà¹àžàž·à¹àžà¹àžà¹à¹àžàžà¹àžàžà¹àž«àž§à¹ CVE-2025-12716 àžàžµà¹àž¡àžµàžàž§àž²àž¡àž£àžžàžà¹àž£àžàžªàž¹àž (CVSS 8.7) à¹àžàž¢àžà¹àžàžà¹àž«àž§à¹àžàžµà¹à¹àžàžŽàžàžàž¶à¹àžà¹àžàžàžµà¹àžàžàž£à¹ Wiki àžàžµà¹àžàž¹à¹à¹àžà¹àžªàž²àž¡àž²àž£àžàžªàž£à¹àž²àžà¹àžàžà¹àžà¹ àž«àž²àžàž¡àžµàžàž²àž£àžàž±àžà¹àžà¹àžàžàž±àžàžàž£àž²àž¢àž¥àžà¹àž à¹àž¡àž·à¹àžàžàž¹à¹à¹àžà¹àž£àž²àž¢àžàž·à¹àžà¹àžàžŽàžàžàž¹ à¹àžàžàžàž±à¹àžàžàž°àž£àž±àžàžàž³àžªàž±à¹àžà¹àžàžàžàž¹à¹à¹àžà¹à¹àžàž¢àžàž±àžà¹àžàž¡àž±àžàžŽ à¹àžªàžµà¹àž¢àžàžà¹àžàžàž²àž£àžàž¹àžàž¢àž¶àž session à¹àž¥àž°àžªàž±à¹àžàžàž²àžà¹àžàžà¹àžà¹àž²àžàžàžàžàž±àžàžàžµ àžàžàžàžàž²àžàžàžµà¹àž¢àž±àžàž¡àžµàžà¹àžàžà¹àž«àž§à¹àžàž·à¹àž ๠à¹àžà¹àž àžàž²àž£ inject HTML à¹àžàž£àž²àž¢àžàž²àžàžà¹àžàžà¹àž«àž§à¹ à¹àž¥àž°àžàž²àž£à¹àžàžŽàžà¹àžàž¢àžà¹àžàž¡àž¹àž¥à¹àžàž£àžàžàž²àž£àžàžµà¹àžàž§àž£à¹àžà¹àž private àžà¹àž²àž error message à¹àž¥àž° GraphQL query GitLab.com à¹àž¥àž° GitLab Dedicated à¹àžà¹àž£àž±àžàžàž²àž£à¹àžà¹à¹àžà¹àž¥à¹àž§ à¹àžà¹àžàž¹à¹àžàžµà¹à¹àžà¹ self-managed instance àžà¹àžàžàž£àžµàžàžàž±àžà¹àžàžà¹àž§àžàž£à¹àžàž±àž 18.6.2, 18.5.4 àž«àž£àž·àž 18.4.6 à¹àžàž·à¹àžàžàžŽàžàžà¹àžàžà¹àž«àž§à¹à¹àž«àž¥à¹àž²àžàžµà¹
https://securityonline.info/high-severity-gitlab-xss-flaw-cve-2025-12716-risks-session-hijack-via-malicious-wiki-pages Facebook àžàž£àž±àžà¹àžàž¡à¹àž«àž¡à¹ à¹àžà¹ Instagram à¹àžà¹ AI àžàž¶àž SEO
àž¡àžµàž£àž²àž¢àžàž²àžàž§à¹àž² Facebook à¹àžà¹àžàž£àž±àžà¹àžàž¡àž«àžà¹àž²àžàž²à¹àž«àž¡à¹ à¹àžà¹àžªàžŽà¹àžàžàžµà¹àžà¹àž²àžªàžà¹àžàžàž·àž Instagram àžàž¹àžà¹àžàžŽàžà¹àžàžàž§à¹àž²à¹àžà¹ AI à¹àžàž·à¹àžàžªàž£à¹àž²àžàžàžàžà¹àžàžàžà¹àžàžµà¹àžàž¶àž SEO à¹àž«à¹àžàžŽàžàžàž±àžàžàž±àžàžàž²àž£àžà¹àžàž«àž² àžàž¥à¹àž²àž¢àžàž±àžàžàž²àž£àžàž³ content farm à¹àžàž¢à¹àž¡à¹à¹àžà¹àžàžàžàžàž¹à¹à¹àžà¹àžàž£àž ๠à¹àž£àž·à¹àžàžàžàžµà¹àžàž¶àžàžàž¹àžàžàž±à¹àžàžàž³àžàž²àž¡àžàž¶àžàžàž§àž²àž¡à¹àžàž£à¹àžà¹àžªà¹àž¥àž°àžàž£àžŽàž¢àžàž£àž£àž¡àžàžàž Meta àžàžµà¹àžàž²àžà¹àžà¹ AI à¹àžàž·à¹àžàžàž¥àž±àžàžàž±àžàžàž²àž£à¹àžà¹àž²àžàž¶àžà¹àžàž¢à¹àž¡à¹à¹àžàžŽàžà¹àžàž¢àžà¹àžàžªàž²àžàž²àž£àžàž°
https://securityonline.info/facebook-gets-new-look-but-instagram-secretly-uses-ai-for-seo-bait SpaceX à¹àžàž£àžµàž¢àž¡ IPO àž¡àž¹àž¥àžà¹àž²à¹àžà¹àž²àž«àž¡àž²àž¢àžàž°àž¥àžž 1.5 àž¥à¹àž²àžàž¥à¹àž²àžàžàžàž¥àž¥àž²àž£à¹
SpaceX àžàž³àž¥àž±àžà¹àžàžŽàžàž«àžà¹àž²à¹àžàž IPO àžàž£àž±à¹àžà¹àž«àžà¹àžàžµà¹àžªàžžàžà¹àžàžàž£àž°àž§àž±àžàžŽàžšàž²àžªàžàž£à¹ à¹àžàž¢àžàž±à¹àžà¹àžà¹àž²àž£àž°àžàž¡àžàžžàžàžàž§à¹àž² 30 àžàž±àžàž¥à¹àž²àžàžàžàž¥àž¥àž²àž£à¹ àžàž¶à¹àžàžàž°àžàž³àž¥àž²àž¢àžªàžàžŽàžàžŽàžàžàž Saudi Aramco àžàžµà¹à¹àžàž¢àžàž³à¹àž§à¹à¹àžàžàžµ 2019 àžàžµà¹ 29 àžàž±àžàž¥à¹àž²àžàžàžàž¥àž¥àž²àž£à¹ àžªàžŽà¹àžàžàžµà¹àžàž³à¹àž«à¹àžàž¥àž²àžàžàž°àž¥àž¶àžàžàž·àžàžàž²àž£àžàž±à¹àžà¹àžà¹àž²àž¡àž¹àž¥àžà¹àž²àžàž£àžŽàž©àž±àžà¹àž§à¹àžªàž¹àžàžàž¶àž 1.5 àž¥à¹àž²àžàž¥à¹àž²àžàžàžàž¥àž¥àž²àž£à¹ à¹àž¡à¹àž£àž²àž¢à¹àžà¹àžàžàž SpaceX à¹àžàžàžµ 2025 àžàž°àžàž¢àž¹à¹àžàžµà¹àžàž£àž°àž¡àž²àž 15.5 àžàž±àžàž¥à¹àž²àžàžàžàž¥àž¥àž²àž£à¹ àžàž¶à¹àžàžà¹àžàž¢àžàž§à¹àž² Tesla àžàž¶àž 6 à¹àžà¹àž² à¹àžà¹àžàž§àž²àž¡àžàž²àžàž«àž§àž±àžàžàž¢àž¹à¹àžàžµà¹àžàžàž²àžàžàžàžàž Starlink à¹àž¥àž° Starship àž£àž§àž¡àžàž¶àžà¹àžàžàžªàž£à¹àž²àžàžšàž¹àžàž¢à¹àžà¹àžàž¡àž¹àž¥à¹àžàžàž§àžàž²àžšà¹àžàž·à¹àžàž£àžàžàž£àž±àž AI à¹àž¥àž°àžàž²àž£àžªàž·à¹àžàžªàž²àž£àžà¹àž²àžàžàž²àž§à¹àžàžµàž¢àž¡ Musk à¹àžàž·à¹àžàž§à¹àž²àžàž²àž£àž£àž§àž¡àžàž¥àž±àžàžàžàž Starlink à¹àž¥àž° Starship àžàž°àžàž¢àž²àž¢àžàž¥àž²àžà¹àžà¹àž¡àž«àž²àžšàž²àž¥ à¹àž¥àž°àžàžµà¹àžàž²àžà¹àžà¹àžàžà¹àž²àž§àžªàž³àžàž±àžàžàžµà¹àžªàžžàžàžàžàž SpaceX
https://securityonline.info/spacex-ipo-targeting-a-1-5-trillion-valuation-to-fund-space-data-centers àžàžµàžà¹àžàžŽàžàžàžàžŽàžàž±àžàžŽàžàž²àž£à¹àžà¹àžàžàž£à¹ WARP PANDA à¹àžà¹ BRICKSTORM à¹àžàž²àž° VMware à¹àž¥àž° Azure
àž¡àžµàžàž²àž£à¹àžàžŽàžà¹àžàžà¹àžàž¡à¹àžàžàžàž²àž£àžàž£àž£àž¡à¹àžà¹àžàžàž£à¹àžàž£àž±à¹àžà¹àž«àžà¹àžàžµà¹àžàž³à¹àžàžŽàžàžàž²àž£à¹àžàž¢àžàž¥àžžà¹àž¡à¹àž®àžà¹àžàžàž£à¹àžàž²àžàžàžµàžàžàž·à¹àž WARP PANDA àžàž§àžà¹àžàž²à¹àž¡à¹à¹àžà¹à¹àžàž¡àžàžµà¹àžàžàžàž£àž£àž¡àžàž² à¹àžà¹à¹àž¥àž·àžàžà¹àžàž²àž°à¹àžà¹àž²à¹àžà¹àžà¹àžàž£àžàžªàž£à¹àž²àžàžàž·à¹àžàžàž²àž IT àžàžµà¹àžªàž³àžàž±àžàžàž¢à¹àž²àž VMware vCenter à¹àž¥àž° ESXi àž£àž§àž¡àžàž¶àžàž£àž°àžàžàžàž¥àž²àž§àžà¹ Microsoft Azure àžàžžàžà¹àžà¹àžàžàž·àžàžàž²àž£à¹àžà¹à¹àžàž£àž·à¹àžàžàž¡àž·àžàžàžµà¹àžªàž£à¹àž²àžàžàž¶à¹àžà¹àžàžàžàž·à¹àž BRICKSTORM àžàž¶à¹àžà¹àžà¹àž backdoor àžàžµà¹à¹àžàžàžàž±àž§à¹àž«àž¡àž·àžàžà¹àžàž£à¹àžàžªàžàžàžàž£àž°àžàž àžàž³à¹àž«à¹àž¢àž²àžàžà¹àžàžàž²àž£àžàž£àž§àžàžàž±àž àžàžàžàžàž²àžàžàžµà¹àž¢àž±àžàž¡àžµà¹àžàž£àž·à¹àžàžàž¡àž·àžà¹àžªàž£àžŽàž¡àžàž¢à¹àž²àž Junction à¹àž¥àž° GuestConduit àžàžµà¹àžà¹àž§àž¢àžàž§àžàžàžžàž¡àžàž²àž£àžªàž·à¹àžàžªàž²àž£à¹àžàž£àž°àžàžà¹àžªàž¡àž·àžàžàžàž£àžŽàžà¹àžà¹àžàž¢à¹àž²àžà¹àžàžà¹àžàžµàž¢àž àžªàžŽà¹àžàžàžµà¹àžà¹àž²àžàž±àžàž§àž¥àžàž·àžàžàž§àžà¹àžàž²àžªàž²àž¡àž²àž£àžàžàž¢àž¹à¹à¹àžàž£àž°àžàžà¹àžà¹àžàž²àžà¹àžà¹àžàžàžµà¹àžàž¢à¹àž¡à¹àžàž¹àžàžàž à¹àž¥àž°àž¢àž±àžàžàž¢àž²àž¢àžàž²àž£à¹àžàž¡àžàžµà¹àžàžªàž¹à¹àžàž£àžŽàžàž²àž£ Microsoft 365 à¹àžàž·à¹àžàžà¹àž¡àž¢àžà¹àžàž¡àž¹àž¥àžªàž³àžàž±àž àžàž²àž£àžàž£àž°àžàž³à¹àž«àž¥à¹àž²àžàžµà¹àžªàž°àžà¹àžàžà¹àž«à¹à¹àž«à¹àžàžàž¶àžà¹àž£àžàžàž¹àžà¹àžà¹àžàžŽàžàž£àž±àžàž¡àž²àžàžàž§à¹àž²àžàž²àž£à¹àžàžŽàž à¹àžàž£àž²àž°à¹àžà¹àž²àž«àž¡àž²àž¢àžàž·àžàžà¹àžàž¡àž¹àž¥àžàžµà¹à¹àžàžµà¹àž¢àž§àžà¹àžàžàžàž±àžàžàž¥àžàž£àž°à¹àž¢àžàžà¹àžàžàžàž£àž±àžàžàž²àž¥àžàžµàž
https://securityonline.info/chinas-warp-panda-apt-deploys-brickstorm-backdoor-to-hijack-vmware-vcenter-esxi-and-azure-cloud àžà¹àžàžà¹àž«àž§à¹àž£à¹àž²àž¢à¹àž£àž TOTOLINK AX1800 à¹àžàžŽàžàžàž²àžà¹àž«à¹à¹àž®àžà¹àžàžàž£à¹à¹àžà¹àž²àžàž¶àž root à¹àžàž¢à¹àž¡à¹àžà¹àžàžàž¥à¹àžàžàžàžŽàž
àž¡àžµàžàž²àž£àžà¹àžàžàžàžà¹àžàžà¹àž«àž§à¹à¹àžà¹àž£àž²à¹àžàžàž£à¹ TOTOLINK AX1800 àžàžµà¹à¹àžà¹àžàž±àžà¹àžàž£à¹àž«àž¥àž²àž¢à¹àžàžà¹àž²àžà¹àž¥àž°àžàžžàž£àžàžŽàžàžàžàž²àžà¹àž¥à¹àž àžà¹àžàžà¹àž«àž§à¹àžàžµà¹àžàž³à¹àž«à¹àžàž¹à¹à¹àžàž¡àžàžµàžªàž²àž¡àž²àž£àžàžªà¹àžàžàž³àžªàž±à¹àž HTTP à¹àžàžµàž¢àžàžàž£àž±à¹àžà¹àžàžµàž¢àž§à¹àžàž·à¹àžà¹àžàžŽàžàžàž£àžŽàžàž²àž£ Telnet à¹àžàž¢à¹àž¡à¹àžà¹àžàžàžà¹àž²àžàžàž²àž£àž¢àž·àžàž¢àž±àžàžàž±àž§àžàž à¹àž¡àž·à¹àž Telnet àžàž¹àžà¹àžàžŽàžà¹àž¥à¹àž§ à¹àž®àžà¹àžàžàž£à¹àžªàž²àž¡àž²àž£àžà¹àžà¹àž²àžàž¶àžàžªàžŽàžàžàžŽà¹àž£àž°àžàž±àž root à¹àž¥àž°àžàž§àžàžàžžàž¡àžàžžàžàžàž£àžà¹à¹àžà¹à¹àžà¹àž¡àž£àž¹àžà¹àžàž àžàž¥àžàž£àž°àžàžàžàž·àžàžªàž²àž¡àž²àž£àžàžàž±àžàžàž±àžàžà¹àžàž¡àž¹àž¥ à¹àžàž¥àžµà¹àž¢àžà¹àžªà¹àžàžàž²àž DNS àž«àž£àž·àžà¹àžà¹à¹àžà¹àžàžàž²àžà¹àžàž¡àžàžµàžàžžàžàžàž£àžà¹àžàž·à¹àžà¹àžà¹àžàž£àž·àžàžà¹àž²àž¢à¹àžà¹ àžàžµà¹àžà¹àž²àžàž±àžàž§àž¥àžàž·àžàž¢àž±àžà¹àž¡à¹àž¡àžµà¹àžàžàžà¹à¹àžà¹à¹àžàžàž²àžàžàž¹à¹àžàž¥àžŽàž àžàž³à¹àž«à¹àžàž¹à¹à¹àžà¹àžà¹àžàžàžà¹àžàžàžàž±àžàžàž±àž§à¹àžàžàžà¹àž§àž¢àžàž²àž£àžàžŽàžàžàž²àž£à¹àžà¹àž²àžàž¶àžàžàž²àž WAN à¹àž¥àž°àžàž£àž§àžàžªàžàžàžàž²àž£à¹àžàžŽàžà¹àžà¹àžàž²àž Telnet àžàž¢à¹àž²àžà¹àžà¹àž¡àžàž§àž
https://securityonline.info/unpatched-totolink-ax1800-router-flaw-allows-unauthenticated-telnet-root-rce FBI à¹àž¥àž° CISA à¹àžàž·àžàžàžàž¥àžžà¹àž¡à¹àž®àžà¹àžàžàž£à¹àžªàž²àž¢à¹àžàž£àž£àž±àžªà¹àžàžµàž¢à¹àžàž¡àžàžµà¹àžàž£àžàžªàž£à¹àž²àžàžàž·à¹àžàžàž²àžàžà¹àž²àž VNC àžàžµà¹à¹àž¡à¹àžàž¥àžàžàž àž±àž¢
àž«àžà¹àž§àž¢àžàž²àžàžà¹àž²àžàžàž§àž²àž¡àž¡àž±à¹àžàžàžà¹àžà¹àžàžàž£à¹àžàžàžàžªàž«àž£àž±àžàž¯ àž£àž§àž¡àžàž¶àž FBI à¹àž¥àž° CISA àžàžàžàžàž³à¹àžàž·àžàžàž§à¹àž²àžàž¥àžžà¹àž¡à¹àž®àžà¹àžàžàž£à¹àžàžµà¹àžªàžàž±àžàžªàžàžžàžàž£àž±àžªà¹àžàžµàž¢àžàž³àž¥àž±àžà¹àžàž¡àžàžµà¹àžàž£àžàžªàž£à¹àž²àžàžàž·à¹àžàžàž²àžàžªàž³àžàž±àž à¹àžà¹àž àž£àž°àžàžàžà¹àž³ àžàž¥àž±àžàžàž²àž à¹àž¥àž°àžàž²àž«àž²àž£ à¹àžàž¢à¹àžà¹àž§àžŽàžàžµàžà¹àž²àž¢ ๠àžàž·àžàžà¹àžàž«àž² Human-Machine Interfaces (HMI) àžàžµà¹à¹àžàž·à¹àžàž¡àžà¹àžàžà¹àž²àž VNC à¹àžà¹à¹àž¡à¹à¹àžà¹àžàž±à¹àžàž£àž«àž±àžªàžà¹àž²àžàžàžµà¹à¹àžà¹àžà¹àž£àž à¹àž¡àž·à¹àžà¹àžà¹àž²àžàž¶àžà¹àžà¹ àžàž§àžà¹àžàž²àžàž°àžàž£àž±àžà¹àžàž¥àžµà¹àž¢àžàžà¹àž²àžàž²àž£àžàž³àžàž²àž à¹àžà¹àž àžàž§àž²àž¡à¹àž£à¹àž§àžàž±à¹àž¡ àž«àž£àž·àžàžàžŽàžàž£àž°àžàžà¹àžà¹àžà¹àžàž·àžàž àžàž³à¹àž«à¹àžàž¹à¹àžàž§àžàžàžžàž¡à¹àž¡à¹à¹àž«à¹àžàž àž²àžàžàž£àžŽàžàžàžàžà¹àž£àžàžàž²àž àžàž¥àžžà¹àž¡àžàžµà¹àžàž¹àžàž£àž°àžàžžàž¡àžµàžàž±à¹àž Cyber Army of Russia Reborn, NoName057(16), Z-Pentest à¹àž¥àž° Sector16 àžàž¶à¹àžàž¡àžµàžàž§àž²àž¡à¹àžàž·à¹àžàž¡à¹àž¢àžàžàž±àžàž£àž±àžàž£àž±àžªà¹àžàžµàž¢ à¹àž¡à¹àžàž°à¹àž¡à¹àžàž±àžàžà¹àžàž à¹àžà¹àžàž²àž£à¹àžàž¡àžàžµà¹àžàžàžàžµà¹àžªàž£à¹àž²àžàžàž§àž²àž¡à¹àžªàžµàž¢àž«àž²àž¢à¹àžà¹àžàž£àžŽàžà¹àž¥àž°àž¢àž²àžàžà¹àžàžàž²àž£àžàž²àžà¹àžàž²
https://securityonline.info/fbi-cisa-warn-pro-russia-hacktivists-target-critical-infrastructure-via-unsecured-vnc-hmis àžà¹àžàžà¹àž«àž§à¹àž£à¹àž²àž¢à¹àž£àžà¹àž CCTV (CVE-2025-13607) à¹àžªàžµà¹àž¢àžàžàž¹àžà¹àž®àžàžàž¹àž àž²àžàžªàžà¹àž¥àž°àžà¹àž¡àž¢àž£àž«àž±àžªàžà¹àž²àž
CISA àžàžàžàžàž£àž°àžàž²àžšà¹àžàž·àžàžà¹àžàžµà¹àž¢àž§àžàž±àžàžà¹àžàžà¹àž«àž§à¹à¹àžàžàž¥à¹àžàžàž§àžàžàž£àžàžŽàžàžàžµà¹à¹àžàž·à¹àžàž¡àžà¹àžà¹àžàž£àž·àžàžà¹àž²àž¢ à¹àžàž¢à¹àžàžàž²àž°àž£àžžà¹àž D-Link DCS-F5614-L1 àžàžµà¹à¹àžàžŽàžàžà¹àžàžà¹àž«à¹àžàž¹à¹à¹àžàž¡àžàžµà¹àžà¹àž²àžàž¶àžàžàž²àž£àžàž±à¹àžàžà¹àž²à¹àž¥àž°àžà¹àžàž¡àž¹àž¥àžàž±àžàžàžµà¹àžà¹à¹àžàž¢à¹àž¡à¹àžà¹àžàžàž¢àž·àžàž¢àž±àžàžàž±àž§àžàž àžàž¥àžàž·àžàžªàž²àž¡àž²àž£àžàžàž¹àž àž²àžàžªàžàžàž²àžàžàž¥à¹àžàžà¹àž¥àž°àžà¹àž¡àž¢àž£àž«àž±àžªàžà¹àž²àžàžàž¹à¹àžàž¹à¹àž¥à¹àžàž·à¹àžà¹àžàž²àž°àž¥àž¶àžà¹àžà¹àž²à¹àžà¹àžàž£àž°àžàžàžà¹àžà¹àžà¹àžà¹ àžà¹àžàžà¹àž«àž§à¹àžàžµà¹àž¡àžµàžàž°à¹àžàžàžàž§àž²àž¡àž£àžžàžà¹àž£àžàžªàž¹àžàžàž¶àž 9.4 à¹àž¥àž°à¹àž¡à¹ D-Link àžàž°àžàžàžà¹àžàžŽàž£à¹àž¡à¹àž§àž£à¹à¹àžà¹à¹àžà¹àž¥à¹àž§ à¹àžà¹àžàž¹à¹à¹àžà¹à¹àžàž£àžàžà¹àžàž·à¹àžàžàž¢à¹àž²àž Securus à¹àž¥àž° Sparsh àž¢àž±àžà¹àž¡à¹à¹àžà¹àž£àž±àžàžàž²àž£àžàžàžàžªàžàžàž àžàž³à¹àž«à¹àžàž¹à¹à¹àžà¹àžà¹àžàžàž£àžµàžàžàž£àž§àžàžªàžàžà¹àž¥àž°àžàžŽàžàžà¹àžàžàž¹à¹àžàž¥àžŽàžà¹àžàžà¹àžàž·à¹àžàžàž§àž²àž¡àžàž¥àžàžàž àž±àž¢
https://securityonline.info/critical-cctv-flaw-cve-2025-13607-risks-video-feed-hijack-credential-theft-via-missing-authentication àžà¹àž²àž§àžà¹àž§àž: Google àžàžàžà¹àžàžàžà¹àžàžžàžà¹àžàžŽàžà¹àžà¹àžà¹àžàžà¹àž«àž§à¹ Zero-Day àžàž Chrome
à¹àž£àž·à¹àžàžàžàžµà¹à¹àžà¹àžàžàž²àž£àžàž±àžà¹àžàžàžàžµà¹àžªàž³àžàž±àžàž¡àž²àžàžàžàž Google Chrome à¹àžàž£àž²àž°àž¡àžµàžàž²àž£àžà¹àžàžàžàžà¹àžàžà¹àž«àž§à¹àž£à¹àž²àž¢à¹àž£àžàžàžµà¹àžàž¹àžà¹àžàž¡àžàžµàžàž£àžŽàžà¹àž¥à¹àž§à¹àžà¹àž¥àžàžàžàžà¹àž¥àžà¹ Google àžàž¶àžàž£àžµàžàžàž¥à¹àžàž¢à¹àž§àžàž£à¹àžàž±àžà¹àž«àž¡à¹ 143.0.7499.109/.110 à¹àžàž·à¹àžàžàžžàžàžà¹àžàžà¹àž«àž§à¹ à¹àžàž¢àžà¹àžàžà¹àž«àž§à¹àžàžµà¹àžàž¹àžàž£àž°àžàžžàž§à¹àž²à¹àžà¹àž “Under coordination” àžàž¶à¹àžàž«àž¡àž²àž¢àžàž¶àžàž¢àž±àžàžàž¢àž¹à¹àž£àž°àž«àž§à¹àž²àžàžàž²àž£àžàž³àžàž²àžàž£à¹àž§àž¡àžàž±àžàžàž¹à¹àžàž±àžàžàž²àžàžàžàžà¹à¹àž§àž£à¹àžàž·à¹àž ๠àžàž³à¹àž«à¹àž£àž²àž¢àž¥àž°à¹àžàžµàž¢àžà¹àžàžŽàžà¹àžàžàžàžŽàžàž¢àž±àžà¹àž¡à¹àžàž¹àžà¹àžàžŽàžà¹àžàž¢ à¹àžà¹àžàžµà¹à¹àžà¹ ๠àžàž·àžàž¡àžµàžàž¹à¹à¹àž¡à¹àž«àž§àž±àžàžàžµàžàž³à¹àžà¹àžà¹à¹àžàž¡àžàžµà¹àž¥à¹àž§ àžàžàžàžàž²àžàžàžµà¹àž¢àž±àžàž¡àžµàžàž²àž£à¹àžà¹à¹àžàžà¹àžàžà¹àž«àž§à¹àž£àž°àžàž±àžàžàž¥àž²àžàžàžµàžàžªàžàžàž£àž²àž¢àžàž²àž£ à¹àžà¹à¹àžà¹àžàž±àžàž«àž²à¹àž Password Manager à¹àž¥àž° Toolbar àžàžµà¹àžàž±àžàž§àžŽàžàž±àž¢àž àž²àž¢àžàžàžàž£àž²àž¢àžàž²àžà¹àžà¹àž²àž¡àž² àžàž£à¹àžàž¡à¹àžà¹àž£àž±àžàž£àž²àžàž§àž±àž¥àžàž±à¹àžàžàž²àž§àžà¹àžàžµà¹àž£àž§àž¡ 4,000 àžàžàž¥àž¥àž²àž£à¹ à¹àž£àž·à¹àžàžàžàžµà¹àžàž¶àžà¹àžà¹àžàžàž²àž£à¹àžàž·àžàžàžàž¹à¹à¹àžà¹àžàžžàžàžàžà¹àž«à¹àž£àžµàžàžàž£àž§àžàžªàžàžà¹àž¥àž°àžàž±àžà¹àžàž Chrome àžà¹àž§àž¢àžàžà¹àžàžàžàž±àžàžàžµ à¹àž¡à¹àžàž§àž£àž£àžàžàž²àž£àžàž±àžà¹àžàžàžàž±àžà¹àžàž¡àž±àžàžŽ à¹àžàž£àž²àž°àžàž§àž²àž¡à¹àžªàžµà¹àž¢àžàžàž³àž¥àž±àžà¹àžàžŽàžàžàž¶à¹àžàžàž£àžŽàžà¹àž¥à¹àž§
https://securityonline.info/emergency-chrome-update-google-patches-new-zero-day-under-active-attack àžàž§àž±àžàžàž£àž£àž¡à¹àž«àž¡à¹: àžªàžàž²àžàž±àžàž¢àžàž£àž£àž¡ AI àžàžàž Google à¹àž£àžàžàž§à¹àž² GPT-4 à¹àžàžà¹àž²àžàžàž§àž²àž¡àžàž³
Google à¹àžàžŽàžàžàž±àž§àžªàžàž²àžàž±àžàž¢àžàž£àž£àž¡à¹àž«àž¡à¹àžàž·à¹àž Titans à¹àž¥àž°àžàž£àžàžà¹àžàž§àžàžŽàž MIRAS àžàžµà¹àžàžàžà¹àžàžàž¡àž²à¹àžàž·à¹àžà¹àžà¹àžàž±àžàž«àž²àžàž²àž£àžàž³àžà¹àžàž¡àž¹àž¥àž£àž°àž¢àž°àž¢àž²àž§àžàžàžà¹àž¡à¹àžàž¥ AI à¹àžàžà¹àžàžŽàž¡ ๠àžàžžàžà¹àžà¹àžàžàž·àžàžªàž²àž¡àž²àž£àž “àžà¹àž²àžà¹àž àžàž³à¹àž” à¹àžà¹à¹àž«àž¡àž·àžàžàžªàž¡àžàžàž¡àžàžžàž©àž¢à¹ à¹àžàž¢à¹àžà¹à¹àž¡àžàž¹àž¥àžàž§àž²àž¡àžàž³àž£àž°àž¢àž°àž¢àž²àž§àžàžµà¹àžàž³àžàž²àžàžàž¥à¹àž²àž¢àžàž²àž£à¹àž¢àžàžàž§àž²àž¡àžàž³àžªàž±à¹àžà¹àž¥àž°àž¢àž²àž§à¹àžàžªàž¡àžàžàžàž£àžŽàž à¹ àžªàžŽà¹àžàžàžµà¹àžà¹àž²àžªàžà¹àžàžàžµà¹àžªàžžàžàžàž·àž “surprise metric” àžàž¥à¹àžàžàžµà¹à¹àž¥àž·àžàžàžàž³à¹àžàžàž²àž°àžà¹àžàž¡àž¹àž¥àžàžµà¹à¹àžàž¥àžà¹àž«àž¡à¹àž«àž£àž·àžà¹àž¡à¹àžàž²àžàžàžŽàž à¹àžà¹àžà¹àžàžµàž¢àž§àžàž±àžàžàžµà¹àž¡àžàžžàž©àž¢à¹àž¡àž±àžàžàž³à¹àž«àžàžžàžàž²àž£àžà¹àžàžµà¹à¹àž¡à¹àžàž£àž£àž¡àžàž²à¹àžà¹àžàž±àžà¹àžàž àžàž¥àž¥àž±àžàžà¹àžàž·àžà¹àž¡à¹àžàž¥àžàžµà¹àžªàž²àž¡àž²àž£àžàžàž±àžàžàž²àž£àžà¹àžàž¡àž¹àž¥àž¢àž²àž§àž¡àž«àž²àžšàž²àž¥à¹àžà¹àžàž¶àžàžªàžàžàž¥à¹àž²àžà¹àžà¹àžàž à¹àž¥àž°àž¢àž±àžàžàž³àžàž²àžà¹àžà¹àžàžµàžàž§à¹àž² GPT-4 à¹àž¡à¹àžàž°àž¡àžµàžàž²àž£àž²àž¡àžŽà¹àžàžàž£à¹àžà¹àžàž¢àžàž§à¹àž² àžàžàžàžàž²àžàžàžµà¹ MIRAS àž¢àž±àžà¹àžàžŽàžàžàž²àžà¹àž«à¹àžªàž£à¹àž²àžà¹àž¡à¹àžàž¥à¹àž«àž¡à¹ ๠àžàžµà¹àž¡àžµàžàž§àž²àž¡àžªàž²àž¡àž²àž£àžà¹àžàžàž²àž°àžà¹àž²àž à¹àžà¹àžàžàž²àž£àžàžàžà¹àžàžªàž±àžàžàž²àžàž£àžàžàž§àžàž«àž£àž·àžàžàž²àž£àž£àž±àžàž©àž²àžàž§àž²àž¡àžàž³àž£àž°àž¢àž°àž¢àž²àž§àžàž¢à¹àž²àžàž¡àž±à¹àžàžàž àžàž²àž£àžàžàžªàžàžàžàž±àžàžàžžàžàžà¹àžàž¡àž¹àž¥ BABILong à¹àžªàžàžà¹àž«à¹à¹àž«à¹àžàž§à¹àž² Titans àž¡àžµàžšàž±àžàž¢àž àž²àžà¹àž«àžàž·àžàžàž§à¹àž²à¹àž¡à¹àžàž¥àžàž±à¹àžàžàž³àžàž·à¹àž ๠à¹àžàžàž²àž£àžàž¶àžàžà¹àžàž¡àž¹àž¥àžàžµà¹àžàž£àž°àžàž²àž¢àžàž¢àž¹à¹à¹àžà¹àžàžàžªàž²àž£àžàžàž²àžà¹àž«àžà¹ àžàž³à¹àž«à¹àžàžàž²àžàžàžàžàž AI à¹àžàžàž²àž£àžàž³àžàž§àž²àž¡à¹àžà¹àž²à¹àžàžàž±à¹àžà¹àžàžàžªàž²àž£àž«àž£àž·àžà¹àž¡à¹à¹àžà¹àžà¹àžàž¡àž¹àž¥àžàž²àžàžàž±àžàžàžžàžàž£àž£àž¡àžàž¹àžªàžà¹àžªà¹àž¥àž°àžàž£àžàžàž¥àž±àžàž¡àž²àžàžàž¶à¹àž
https://securityonline.info/the-surprise-metric-googles-new-ai-architecture-outperforms-gpt-4-in-memory ððð àž£àž§àž¡àžà¹àž²àž§àžàž²àžà¹àž§àž SecurityOnline ð ðð
#àž£àž§àž¡àžà¹àž²àž§IT #20251211 #securityonline
ð¡ïž Makop Ransomware àžàž¥àž±àžàž¡àž²àžàžµàžàžàž£àž±à¹àžàžàž£à¹àžàž¡àžàž¥àž¢àžžàžàžà¹à¹àž«àž¡à¹
àž àž±àž¢àžàžžàžàžàž²àž¡àžàžµà¹à¹àžàž¢àžàžžà¹àžàžàž·à¹àž Makop ransomware à¹àžà¹àžàž±àžàžàž²àž§àžŽàžàžµàžàž²àž£à¹àžàž¡àžàžµà¹àž«à¹àžàž±àžàžà¹àžàžàžàž¶à¹àž à¹àž¡à¹àžàž°àž¢àž±àžà¹àžà¹àžà¹àžàžà¹àž«àž§à¹à¹àžàžŽàž¡àžàž·àžàžàž²àž£à¹àžàž²àž°àžà¹àž²àžàžàžàž£à¹àž RDP àžàžµà¹à¹àž¡à¹à¹àžà¹àžà¹àžàžàžàž±àž à¹àžà¹àžàž£àž±à¹àžàžàžµà¹àžàž§àžà¹àžàž²à¹àžªàž£àžŽàž¡à¹àžàž£àž·à¹àžàžàž¡àž·àžàžàž¢à¹àž²àž GuLoader à¹àžàž·à¹àžàžàž²àž§àžà¹à¹àž«àž¥àžàž¡àž±àž¥à¹àž§àž£à¹à¹àžàžŽà¹àž¡à¹àžàžŽàž¡ à¹àž¥àž°àž¢àž±àžà¹àžà¹à¹àžàžàžàžŽàž BYOVD (Bring Your Own Vulnerable Driver) à¹àžàž·à¹àžàžà¹àž²à¹àžàž£à¹àžàž£àž¡àžà¹àžàžàžàž±àžà¹àž§àž£àž±àžªà¹àžàž£àž°àžàž±àž kernel à¹àžà¹à¹àžàž¢àžàž£àž àžàž²àž£à¹àžàž¡àžàžµàžªà¹àž§àžà¹àž«àžà¹àžàžžà¹àžà¹àžà¹àž²à¹àžàžàžµà¹àžàžàžà¹àžàž£à¹àžàžàžŽàžà¹àžàžµàž¢ à¹àžà¹àžà¹àžàžà¹àžàž«àž¥àž²àž¢àžàž£àž°à¹àžàžšàžàž·à¹àžàžà¹àž§àž¢ àžàžžàžàžªàž³àžàž±àžàžàž·àž à¹àž¡à¹àžàž°à¹àžà¹àžàžàž²àž£à¹àžàž¡àžàžµàžàžµà¹àžàž¹ “àžà¹àž²àž¢” à¹àžà¹àžàž¥àž¥àž±àžàžà¹àžàž¥àž±àžàžªàž£à¹àž²àžàžàž§àž²àž¡à¹àžªàžµàž¢àž«àž²àž¢àž£àžžàžà¹àž£àžàžà¹àžàžàžàžà¹àžàž£àžàžµà¹àž¥àž°à¹àž¥àž¢àžàž²àž£àžàž±àžà¹àžàžà¹àž¥àž°àžàž²àž£àžàž±à¹àžàžà¹àž²àžàž§àž²àž¡àžàž¥àžàžàž àž±àž¢
ð https://securityonline.info/makop-ransomware-evolves-guloader-and-byovd-edr-killers-used-to-attack-rdp-exposed-networks
ð» DeadLock Ransomware à¹àžà¹àžà¹àžàžà¹àž«àž§à¹à¹àžàž£à¹àž§àžàž£à¹ Baidu à¹àžàž²àž°àž£àž°àžàž
àžàž¥àžžà¹àž¡àžàž²àžàžàž²àžàž£à¹àžà¹àžàžàž£à¹àžàžµà¹àž«àž§àž±àžàžàž¥àžàž²àžàžàž²àž£à¹àžàžŽàžà¹àžà¹àžàž¥à¹àžàž¢à¹àž£àžàžàž±àž¡à¹àž§àž£à¹àžàž·à¹àž DeadLock à¹àžàž¢à¹àžà¹à¹àžàžàžàžŽàž BYOVD à¹àžà¹àžàžàž±àž àžàž£àž²àž§àžàžµà¹àžàž§àžà¹àžàž²àžàž²àžšàž±àž¢à¹àžàž£à¹àž§àžàž£à¹àžàž²àž Baidu Antivirus àžàžµà¹àž¡àžµàžà¹àžàžà¹àž«àž§à¹ àžàž³à¹àž«à¹àžªàž²àž¡àž²àž£àžàžªàž±à¹àžàžàž²àžà¹àžàž£àž°àžàž±àž kernel à¹àž¥àž°àžàžŽàžàžàž²àž£àžàž³àžàž²àžàžàžàžà¹àžàž£à¹àžàž£àž¡àžà¹àžàžàžàž±àžà¹àžà¹àžàž±àžàžàžµ àž«àž¥àž±àžàžàž²àžàžàž±à¹àžàž¢àž±àžà¹àžà¹ PowerShell script àžàžŽàžàžàž£àžŽàžàž²àž£àžªàž³àžàž±àž à¹àžà¹àž SQL Server à¹àž¥àž°àž¥àž shadow copies à¹àžàž·à¹àžàžàž±àžà¹àž¡à¹à¹àž«à¹à¹àž«àž¢àž·à¹àžàžàž¹à¹àžàž·àžàžà¹àžàž¡àž¹àž¥à¹àžà¹ àžàž±àž§à¹àž£àžàžàž±àž¡à¹àž§àž£à¹àžàž¹àžà¹àžàžµàž¢àžàžàž¶à¹àžà¹àž«àž¡à¹àžà¹àž§àž¢ C++ à¹àž¥àž°à¹àžà¹àž§àžŽàžàžµà¹àžà¹àž²àž£àž«àž±àžªà¹àžàžàž²àž°àžàžµà¹à¹àž¡à¹à¹àž«àž¡àž·àžàžà¹àžàž£ àžàžµà¹àžà¹àž²àžªàžà¹àžàžàž·àžàžàž§àžà¹àžàž²à¹àž¡à¹à¹àžà¹àž§àžŽàžàžµ “double extortion” à¹àžà¹à¹àž«à¹à¹àž«àž¢àž·à¹àžàžàžŽàžàžà¹àžàžà¹àž²àžà¹àžàž Session à¹àžàž·à¹àžà¹àžàž£àžàž²àžà¹àž²àž¢àžà¹àž²à¹àžà¹à¹àžà¹àž Bitcoin àž«àž£àž·àž Monero
ð https://securityonline.info/deadlock-ransomware-deploys-byovd-edr-killer-by-exploiting-baidu-driver-for-kernel-level-defense-bypass
âïž àžà¹àžàžà¹àž«àž§à¹àž£à¹àž²àž¢à¹àž£àžà¹àž PCIe 6.0 à¹àžªàžµà¹àž¢àžàžà¹àžàž¡àž¹àž¥à¹àžªàžµàž¢àž«àž²àž¢
àž¡àž²àžàž£àžàž²àž PCIe 6.0 àžàžµà¹à¹àžà¹à¹àžàžàž²àž£àžªà¹àžàžà¹àžàž¡àž¹àž¥àžàž§àž²àž¡à¹àž£à¹àž§àžªàž¹àžàžàž¹àžàžàžàž§à¹àž²àž¡àžµàžà¹àžàžà¹àž«àž§à¹à¹àžàžàž¥à¹àž IDE (Integrity and Data Encryption) àžàž¶à¹àžàžàž²àžàžàž³à¹àž«à¹àžàž¹à¹à¹àžàž¡àžàžµàžàžµà¹àž¡àžµàžªàžŽàžàžàžŽà¹à¹àžà¹àž²àžàž¶àžàž®àž²àž£à¹àžà¹àž§àž£à¹àžªàž²àž¡àž²àž£àžàžàžµàžàžà¹àžàž¡àž¹àž¥àžàžµà¹àžàžŽàžàžàž¥àž²àžàž«àž£àž·àžà¹àžà¹àž²à¹àžà¹àž²àž¡àž²à¹àžàž£àž°àžàžà¹àžà¹ àžà¹àžàžà¹àž«àž§à¹àžàžµà¹àžàž¹àžàž£àž°àžàžžà¹àžà¹àž CVE-2025-9612, 9613 à¹àž¥àž° 9614 à¹àž¡à¹àžàž°à¹àž¡à¹àžªàž²àž¡àž²àž£àžà¹àžàž¡àžàžµàžàž²àžàž£àž°àž¢àž°à¹àžàž¥ à¹àžà¹àžà¹à¹àžà¹àžàž àž±àž¢à¹àž«àžà¹àžªàž³àž«àž£àž±àžàžšàž¹àžàž¢à¹àžà¹àžàž¡àž¹àž¥àž«àž£àž·àžàž£àž°àžàžàžàžµà¹àžà¹àžàžàžàž²àž£àžàž§àž²àž¡àžàž¥àžàžàž àž±àž¢àžªàž¹àž àžàžàžàžàžµà¹ PCI-SIG à¹àžà¹àžàžàž Draft Engineering Change Notice à¹àžàž·à¹àžà¹àžà¹à¹àž à¹àž¥àž°à¹àžàž°àžàž³à¹àž«à¹àžàž¹à¹àžàž¥àžŽàžàžàž±àžà¹àžàžà¹àžàžŽàž£à¹àž¡à¹àž§àž£à¹à¹àžàž·à¹àžàžàžŽàžàžà¹àžàžà¹àž«àž§à¹à¹àž«àž¥à¹àž²àžàžµà¹à¹àžàž¢à¹àž£à¹àž§
ð https://securityonline.info/critical-pcie-6-0-flaws-risk-secure-data-integrity-via-stale-data-injection-in-ide-mechanism
ðª EtherRAT Malware à¹àžà¹àžàž¥à¹àžàžà¹àžàž Ethereum àžà¹àžàžàž£à¹àžàžàž£àžàž¢
àž«àž¥àž±àžàžàž²àžà¹àžàžŽàžàžà¹àžàžà¹àž«àž§à¹ React2Shell à¹àžàžµàž¢àžà¹àž¡à¹àžàžµà¹àž§àž±àž àžàž±àžàž§àžŽàžàž±àž¢àžàžàž¡àž±àž¥à¹àž§àž£à¹à¹àž«àž¡à¹àžàž·à¹àž EtherRAT àžàžµà¹à¹àžà¹àžàž¥à¹àžàžà¹àžàž Ethereum à¹àžà¹àžàžà¹àžàžàžàž²àžàžªàž·à¹àžàžªàž²àž£àžàž±àžàžàž¹à¹àžàž§àžàžàžžàž¡ à¹àžàž¢àžàž²àžšàž±àž¢ smart contracts à¹àžàž·à¹àžàž£àž±àžàžàž³àžªàž±à¹àž àžàž³à¹àž«à¹à¹àžàžà¹àž¡à¹àžªàž²àž¡àž²àž£àžàžàžŽàžàžàž±à¹àžà¹àžà¹ à¹àžàž£àž²àž°à¹àžàž£àž·àžàžà¹àž²àž¢ Ethereum à¹àžà¹àžàž£àž°àžàžàžàž£àž°àžàž²àž¢àžšàž¹àžàž¢à¹ àžàžàžàžàž²àžàžàžµà¹ EtherRAT àž¢àž±àžàž¡àžµàžàž§àž²àž¡àžàž¥à¹àž²àž¢àžàž¥àž¶àžàžàž±àžà¹àžàž£àž·à¹àžàžàž¡àž·àžàžàžµà¹à¹àžàž¢à¹àžà¹à¹àžàž¢àžàž¥àžžà¹àž¡ Lazarus àžàžàžà¹àžàž²àž«àž¥àžµà¹àž«àžàž·àž à¹àž¥àž°àžàž¹àžàžàžàžà¹àžàžà¹àž«à¹àžàž±àžàžàž±àž§à¹àžà¹àžàž«àžàž²à¹àžàž£àž°àžàž Linux àžà¹àž§àž¢àž«àž¥àž²àž¢àž§àžŽàžàžµàžàž²àž£ persistence àžàž£à¹àžàž¡àžàž±à¹àžàžàž²àž§àžà¹à¹àž«àž¥àž runtime àžàžàž Node.js à¹àžàžà¹àžàž·à¹àžàžàž¥àž¡àžàž¥àž·àžàžàž±àžàžàž²àž£àžàž³àžàž²àžàžàžàžàžŽ àžàž·àžà¹àžà¹àžàžàž²àž£àž¢àžàž£àž°àžàž±àžàžàž²àž£à¹àžàž¡àžàžµàžàž²àžàžà¹àžàžà¹àž«àž§à¹ React2Shell à¹àžàžªàž¹à¹àž£àž°àžàž±àž APT àžàžµà¹àžàž±àžàžàž£àž²àž¢àž¢àžŽà¹àžàžàž¶à¹àž
ð https://securityonline.info/etherrat-malware-hijacks-ethereum-blockchain-for-covert-c2-after-react2shell-exploit
ð€ Slack CEO àž¢à¹àž²àž¢à¹àžàž£à¹àž§àž¡àžàžµàž¡ OpenAI à¹àžà¹àž CRO
OpenAI àžàž³àž¥àž±àžà¹àž£à¹àžàž«àž²àžàž²àžàžªàž£à¹àž²àžàž£àž²àž¢à¹àžà¹à¹àžàž·à¹àžàž£àžàžàž£àž±àžàžà¹àž²à¹àžà¹àžà¹àž²àž¢àž¡àž«àž²àžšàž²àž¥à¹àžàžàž²àž£àžàž£àž°àž¡àž§àž¥àžàž¥ AI àž¥à¹àž²àžªàžžàžà¹àžà¹àžàž¶àž Denise Dresser àžàžµàžàžµà¹àžàžàžàž Slack à¹àžà¹àž²àž¡àž²àž£àž±àžàžàž³à¹àž«àžà¹àž Chief Revenue Officer (CRO) à¹àžàž·à¹àžàžàž¹à¹àž¥àžàž¥àž¢àžžàžàžà¹àž£àž²àž¢à¹àžà¹à¹àž¥àž°àžàž²àž£àžàž¢àž²àž¢àžàž¥àž²àžàžàžàžà¹àžàž£ àžàž²àž£à¹àžà¹àž²àž¡àž²àžàžàžà¹àžàžàžªàž°àžà¹àžàžà¹àž«à¹à¹àž«à¹àžàž§à¹àž² OpenAI àžàž³àž¥àž±àžà¹àžà¹à¹àžàž§àžàž²àžà¹àžàž Silicon Valley àžàž¢à¹àž²àžà¹àžà¹àž¡àž£àž¹àžà¹àžàž àžàž±à¹àžàžàž²àž£àžàž¢àž²àž¢àžàž²àžàžàž¹à¹à¹àžà¹à¹àž¥àž°àžàž²àž£àž«àž²àžà¹àžàžàžàž²àžàžàž³à¹àžàžŽàž à¹àž¡à¹àž§à¹àž²àžàž°à¹àžà¹àžàžàž²àž£àžàž²àž¢ subscription àž«àž£àž·àžà¹àž¡à¹àžàž£àž°àžàž±à¹àžà¹àžàž©àžàž²à¹àž ChatGPT àžàž¢à¹àž²àžà¹àž£àžà¹àžàž²àž¡ àžàž§àž²àž¡àžà¹àž²àžàž²àž¢à¹àž«àžà¹àžàž·àžàžàž²àž£àžàž³à¹àž«à¹àž£àž²àž¢à¹àžà¹à¹àžàžŽàžà¹àžàžàž±àžàžàž±àžàžà¹àž²à¹àžà¹àžà¹àž²àž¢àžàžµà¹àžªàž¹àžàž¥àžŽà¹àž§àžàž²àžàžàž²àž£àžªàž£à¹àž²àžà¹àž¥àž°àžàž¹à¹àž¥à¹àžàž£àžàžªàž£à¹àž²àžàžàž·à¹àžàžàž²àž AI
ð https://securityonline.info/slack-ceo-denise-dresser-joins-openai-as-cro-to-solve-the-profitability-puzzle
ð ïž Jenkins à¹àžàžàžà¹àžàžà¹àž«àž§à¹àž£à¹àž²àž¢à¹àž£àž à¹àžªàžµà¹àž¢àžàžàž¹àžà¹àžàž¡àžàžµ DoS à¹àž¥àž° XSS
àžàžµàž¡àžàž±àžàžàž² Jenkins àžàžàžàžàž£àž°àžàž²àžšà¹àžàž·àžàžàžàž£àž±à¹àžà¹àž«àžà¹ àž«àž¥àž±àžàžàžàžà¹àžàžà¹àž«àž§à¹àž«àž¥àž²àž¢àž£àž²àž¢àžàž²àž£àžàžµà¹àžàž²àžàžàž³à¹àž«à¹àž£àž°àžàž CI/CD àžàž¹àžà¹àžàž¡àžàžµàžàžàž«àž¢àžžàžàžàž³àžàž²àž àž«àž£àž·àžà¹àžàžàžàž±àžàžªàžàž£àžŽàžàžà¹àžàž±àžàžàž£àž²àž¢ (XSS) à¹àžàž¢à¹àžàžàž²àž°àžà¹àžàžà¹àž«àž§à¹ CVE-2025-67635 àžàžµà¹à¹àžàžŽàžà¹àžàžàž²àžªà¹àž«à¹à¹àž®àžà¹àžàžàž£à¹àžªà¹àžàžàž³àžªàž±à¹àžàžà¹àž²àž HTTP CLI à¹àžàž¢à¹àž¡à¹àžà¹àžàžàž¥à¹àžàžàžàžŽàž àžàž³à¹àž«à¹à¹àžàžŽàž£à¹àžà¹àž§àžàž£à¹àžàž£àž±àžàž¢àž²àžàž£àžàž¹àžà¹àžà¹àžàžàž¥à¹àž¡ àžàžµàžàžà¹àžàžà¹àž«àž§à¹ CVE-2025-67641 à¹àž Coverage Plugin àžà¹à¹àžàžŽàžàžàž²àžà¹àž«à¹àžàž¹à¹à¹àžàž¡àžàžµàžàž±àžà¹àžà¹àž JavaScript àž¥àžà¹àžàž£àž²àž¢àžàž²àž à¹àž¡àž·à¹àžàžàž¹à¹àžàž¹à¹àž¥à¹àžàžŽàžàžàž¹ àž£àž²àž¢àžàž²àžàžàž±à¹àžàžàž°àž£àž±àžàžªàžàž£àžŽàžàžà¹àžàž±àžàžàžµ à¹àžªàžµà¹àž¢àžàžà¹àžàžàž²àž£àžàž¹àžàžà¹àž¡àž¢ session à¹àž¥àž°àžà¹àžàž¡àž¹àž¥àžªàž³àžàž±àž à¹àž¡à¹àžàž°àž¡àžµàžàž²àž£àžàž±àžà¹àžàžà¹àžà¹à¹àžàž«àž¥àž²àž¢àžàžžàž à¹àžà¹àž àžàž²àž£à¹àžà¹àž²àž£àž«àž±àžª token à¹àž¥àž°àžàž²àž£àžàžŽàžàžà¹àžàžà¹àž«àž§à¹àžàž²àž£à¹àž«à¹àžàž£àž«àž±àžªàžà¹àž²àž à¹àžà¹àž¢àž±àžàž¡àžµàžàž²àžàžàž¥àž±à¹àžàžàžŽàžàžàžµà¹àž¢àž±àžà¹àž¡à¹àž¡àžµà¹àžàžàžà¹àžàžàžàž¡àž² àžàž³à¹àž«à¹àžàž¹à¹àžàž¹à¹àž¥àž£àž°àžàžàžà¹àžàžàž£àžµàžàžàž±àžà¹àžàž Jenkins à¹àž¥àž°àžàž¥àž±à¹àžàžàžŽàžàžàžµà¹à¹àžàžµà¹àž¢àž§àžà¹àžàžà¹àžàž·à¹àžàžà¹àžàžàžàž±àžàžàž§àž²àž¡à¹àžªàžµàž¢àž«àž²àž¢
ð https://securityonline.info/high-severity-jenkins-flaws-risk-unauthenticated-dos-via-http-cli-and-xss-via-coverage-reports
ð Gogs Zero-Day à¹àžàžà¹àžàž²àž°àžàž§à¹àž² 700 à¹àžàžŽàž£à¹àžà¹àž§àžàž£à¹ àžà¹àž²àž Symlink Path Traversal
àžàž±àžàž§àžŽàžàž±àž¢àžàž²àž Wiz àžàžàžà¹àžàžà¹àž«àž§à¹à¹àž«àž¡à¹à¹àž Gogs (CVE-2025-8110) àžàžµà¹à¹àžàžŽàžàžàž²àžà¹àž«à¹àžàž¹à¹à¹àžàž¡àžàžµàžªàž²àž¡àž²àž£àžà¹àžàžµàž¢àžà¹àžàž¥à¹àžàž±àžàžàž£àž²àž¢àž¥àžà¹àžàž£àž°àžàžà¹àžà¹àžà¹àž²àž¢ ๠àžà¹àž²àžàžàž²àž£à¹àžà¹ symlink à¹àžàž¢àžà¹àžàžà¹àž«àž§à¹àžàžµà¹à¹àžà¹àžàžàž²àž£à¹àž¥àžµà¹àž¢àžà¹àžàžàžà¹à¹àžà¹àž²àžàžµà¹à¹àžàž¢à¹àžà¹à¹àžà¹àžà¹àž¥à¹àž§ àžàž³à¹àž«à¹àžàž§à¹àž² 700 à¹àžàžŽàž£à¹àžà¹àž§àžàž£à¹àžàž²àž 1,400 àžàžµà¹àžàž£àž§àžàžªàžàžàžàž¹àžà¹àžàž²àž°àžªàž³à¹àž£à¹àž àžàž²àž£à¹àžàž¡àžàžµàž¡àžµàž¥àž±àžàž©àžàž°à¹àžà¹àžà¹àžàž¡à¹àžàž “smash-and-grab” àžàž·àžà¹àžà¹àž²àž¡àž²à¹àž£à¹àž§ à¹àžà¹ symlink à¹àžàžµàž¢àžàžàž±àžà¹àžàž¥à¹àžªàž³àžàž±àž à¹àžà¹àž .git/config à¹àž¥à¹àž§àž£àž±àžàžàž³àžªàž±à¹àžàžàž±àžàžàž£àž²àž¢ àžàž²àžàžàž±à¹àžàžàžŽàžàžàž±à¹àž payload àžàžµà¹à¹àžà¹ Supershell à¹àžàž·à¹àžàžàž§àžàžàžžàž¡à¹àžàž£àž·à¹àžàžàžàž²àžàž£àž°àž¢àž°à¹àžàž¥ àžàž±àžàžàžžàžàž±àžàž¢àž±àžà¹àž¡à¹àž¡àžµà¹àžàžàžà¹àžàžàžàž¡àž² àžàž¹à¹àžàž¹à¹àž¥àž£àž°àžàžàžàž¶àžàžàž¹àžà¹àžàž°àžàž³à¹àž«à¹àžàžŽàžàžàž²àž£àžªàž¡àž±àžàž£àžªàž¡àž²àžàžŽàžàžªàž²àžàž²àž£àžàž° à¹àž¥àž°àžàž³àžàž±àžàžàž²àž£à¹àžà¹àž²àžàž¶àžàž£àž°àžàžàžàž±àžàžàžµ
ð https://securityonline.info/gogs-zero-day-cve-2025-8110-risks-rce-for-700-servers-via-symlink-path-traversal-bypass
ð§© GitLab àžàžàžà¹àžàžà¹àž«àž§à¹ XSS à¹àžªàžµà¹àž¢àžà¹àžàžàžà¹àž¡àž¢ session àžà¹àž²àž Wiki
GitLab àžàžàžàžàž±àžà¹àžàžàžà¹àž§àžà¹àžàž·à¹àžà¹àžà¹à¹àžàžà¹àžàžà¹àž«àž§à¹ CVE-2025-12716 àžàžµà¹àž¡àžµàžàž§àž²àž¡àž£àžžàžà¹àž£àžàžªàž¹àž (CVSS 8.7) à¹àžàž¢àžà¹àžàžà¹àž«àž§à¹àžàžµà¹à¹àžàžŽàžàžàž¶à¹àžà¹àžàžàžµà¹àžàžàž£à¹ Wiki àžàžµà¹àžàž¹à¹à¹àžà¹àžªàž²àž¡àž²àž£àžàžªàž£à¹àž²àžà¹àžàžà¹àžà¹ àž«àž²àžàž¡àžµàžàž²àž£àžàž±àžà¹àžà¹àžàžàž±àžàžàž£àž²àž¢àž¥àžà¹àž à¹àž¡àž·à¹àžàžàž¹à¹à¹àžà¹àž£àž²àž¢àžàž·à¹àžà¹àžàžŽàžàžàž¹ à¹àžàžàžàž±à¹àžàžàž°àž£àž±àžàžàž³àžªàž±à¹àžà¹àžàžàžàž¹à¹à¹àžà¹à¹àžàž¢àžàž±àžà¹àžàž¡àž±àžàžŽ à¹àžªàžµà¹àž¢àžàžà¹àžàžàž²àž£àžàž¹àžàž¢àž¶àž session à¹àž¥àž°àžªàž±à¹àžàžàž²àžà¹àžàžà¹àžà¹àž²àžàžàžàžàž±àžàžàžµ àžàžàžàžàž²àžàžàžµà¹àž¢àž±àžàž¡àžµàžà¹àžàžà¹àž«àž§à¹àžàž·à¹àž ๠à¹àžà¹àž àžàž²àž£ inject HTML à¹àžàž£àž²àž¢àžàž²àžàžà¹àžàžà¹àž«àž§à¹ à¹àž¥àž°àžàž²àž£à¹àžàžŽàžà¹àžàž¢àžà¹àžàž¡àž¹àž¥à¹àžàž£àžàžàž²àž£àžàžµà¹àžàž§àž£à¹àžà¹àž private àžà¹àž²àž error message à¹àž¥àž° GraphQL query GitLab.com à¹àž¥àž° GitLab Dedicated à¹àžà¹àž£àž±àžàžàž²àž£à¹àžà¹à¹àžà¹àž¥à¹àž§ à¹àžà¹àžàž¹à¹àžàžµà¹à¹àžà¹ self-managed instance àžà¹àžàžàž£àžµàžàžàž±àžà¹àžàžà¹àž§àžàž£à¹àžàž±àž 18.6.2, 18.5.4 àž«àž£àž·àž 18.4.6 à¹àžàž·à¹àžàžàžŽàžàžà¹àžàžà¹àž«àž§à¹à¹àž«àž¥à¹àž²àžàžµà¹
ð https://securityonline.info/high-severity-gitlab-xss-flaw-cve-2025-12716-risks-session-hijack-via-malicious-wiki-pages
ð± Facebook àžàž£àž±àžà¹àžàž¡à¹àž«àž¡à¹ à¹àžà¹ Instagram à¹àžà¹ AI àžàž¶àž SEO
àž¡àžµàž£àž²àž¢àžàž²àžàž§à¹àž² Facebook à¹àžà¹àžàž£àž±àžà¹àžàž¡àž«àžà¹àž²àžàž²à¹àž«àž¡à¹ à¹àžà¹àžªàžŽà¹àžàžàžµà¹àžà¹àž²àžªàžà¹àžàžàž·àž Instagram àžàž¹àžà¹àžàžŽàžà¹àžàžàž§à¹àž²à¹àžà¹ AI à¹àžàž·à¹àžàžªàž£à¹àž²àžàžàžàžà¹àžàžàžà¹àžàžµà¹àžàž¶àž SEO à¹àž«à¹àžàžŽàžàžàž±àžàžàž±àžàžàž²àž£àžà¹àžàž«àž² àžàž¥à¹àž²àž¢àžàž±àžàžàž²àž£àžàž³ content farm à¹àžàž¢à¹àž¡à¹à¹àžà¹àžàžàžàžàž¹à¹à¹àžà¹àžàž£àž ๠à¹àž£àž·à¹àžàžàžàžµà¹àžàž¶àžàžàž¹àžàžàž±à¹àžàžàž³àžàž²àž¡àžàž¶àžàžàž§àž²àž¡à¹àžàž£à¹àžà¹àžªà¹àž¥àž°àžàž£àžŽàž¢àžàž£àž£àž¡àžàžàž Meta àžàžµà¹àžàž²àžà¹àžà¹ AI à¹àžàž·à¹àžàžàž¥àž±àžàžàž±àžàžàž²àž£à¹àžà¹àž²àžàž¶àžà¹àžàž¢à¹àž¡à¹à¹àžàžŽàžà¹àžàž¢àžà¹àžàžªàž²àžàž²àž£àžàž°
ð https://securityonline.info/facebook-gets-new-look-but-instagram-secretly-uses-ai-for-seo-bait
ð SpaceX à¹àžàž£àžµàž¢àž¡ IPO àž¡àž¹àž¥àžà¹àž²à¹àžà¹àž²àž«àž¡àž²àž¢àžàž°àž¥àžž 1.5 àž¥à¹àž²àžàž¥à¹àž²àžàžàžàž¥àž¥àž²àž£à¹
SpaceX àžàž³àž¥àž±àžà¹àžàžŽàžàž«àžà¹àž²à¹àžàž IPO àžàž£àž±à¹àžà¹àž«àžà¹àžàžµà¹àžªàžžàžà¹àžàžàž£àž°àž§àž±àžàžŽàžšàž²àžªàžàž£à¹ à¹àžàž¢àžàž±à¹àžà¹àžà¹àž²àž£àž°àžàž¡àžàžžàžàžàž§à¹àž² 30 àžàž±àžàž¥à¹àž²àžàžàžàž¥àž¥àž²àž£à¹ àžàž¶à¹àžàžàž°àžàž³àž¥àž²àž¢àžªàžàžŽàžàžŽàžàžàž Saudi Aramco àžàžµà¹à¹àžàž¢àžàž³à¹àž§à¹à¹àžàžàžµ 2019 àžàžµà¹ 29 àžàž±àžàž¥à¹àž²àžàžàžàž¥àž¥àž²àž£à¹ àžªàžŽà¹àžàžàžµà¹àžàž³à¹àž«à¹àžàž¥àž²àžàžàž°àž¥àž¶àžàžàž·àžàžàž²àž£àžàž±à¹àžà¹àžà¹àž²àž¡àž¹àž¥àžà¹àž²àžàž£àžŽàž©àž±àžà¹àž§à¹àžªàž¹àžàžàž¶àž 1.5 àž¥à¹àž²àžàž¥à¹àž²àžàžàžàž¥àž¥àž²àž£à¹ à¹àž¡à¹àž£àž²àž¢à¹àžà¹àžàžàž SpaceX à¹àžàžàžµ 2025 àžàž°àžàž¢àž¹à¹àžàžµà¹àžàž£àž°àž¡àž²àž 15.5 àžàž±àžàž¥à¹àž²àžàžàžàž¥àž¥àž²àž£à¹ àžàž¶à¹àžàžà¹àžàž¢àžàž§à¹àž² Tesla àžàž¶àž 6 à¹àžà¹àž² à¹àžà¹àžàž§àž²àž¡àžàž²àžàž«àž§àž±àžàžàž¢àž¹à¹àžàžµà¹àžàžàž²àžàžàžàžàž Starlink à¹àž¥àž° Starship àž£àž§àž¡àžàž¶àžà¹àžàžàžªàž£à¹àž²àžàžšàž¹àžàž¢à¹àžà¹àžàž¡àž¹àž¥à¹àžàžàž§àžàž²àžšà¹àžàž·à¹àžàž£àžàžàž£àž±àž AI à¹àž¥àž°àžàž²àž£àžªàž·à¹àžàžªàž²àž£àžà¹àž²àžàžàž²àž§à¹àžàžµàž¢àž¡ Musk à¹àžàž·à¹àžàž§à¹àž²àžàž²àž£àž£àž§àž¡àžàž¥àž±àžàžàžàž Starlink à¹àž¥àž° Starship àžàž°àžàž¢àž²àž¢àžàž¥àž²àžà¹àžà¹àž¡àž«àž²àžšàž²àž¥ à¹àž¥àž°àžàžµà¹àžàž²àžà¹àžà¹àžàžà¹àž²àž§àžªàž³àžàž±àžàžàžµà¹àžªàžžàžàžàžàž SpaceX
ð https://securityonline.info/spacex-ipo-targeting-a-1-5-trillion-valuation-to-fund-space-data-centers
ðŒ àžàžµàžà¹àžàžŽàžàžàžàžŽàžàž±àžàžŽàžàž²àž£à¹àžà¹àžàžàž£à¹ WARP PANDA à¹àžà¹ BRICKSTORM à¹àžàž²àž° VMware à¹àž¥àž° Azure
àž¡àžµàžàž²àž£à¹àžàžŽàžà¹àžàžà¹àžàž¡à¹àžàžàžàž²àž£àžàž£àž£àž¡à¹àžà¹àžàžàž£à¹àžàž£àž±à¹àžà¹àž«àžà¹àžàžµà¹àžàž³à¹àžàžŽàžàžàž²àž£à¹àžàž¢àžàž¥àžžà¹àž¡à¹àž®àžà¹àžàžàž£à¹àžàž²àžàžàžµàžàžàž·à¹àž WARP PANDA àžàž§àžà¹àžàž²à¹àž¡à¹à¹àžà¹à¹àžàž¡àžàžµà¹àžàžàžàž£àž£àž¡àžàž² à¹àžà¹à¹àž¥àž·àžàžà¹àžàž²àž°à¹àžà¹àž²à¹àžà¹àžà¹àžàž£àžàžªàž£à¹àž²àžàžàž·à¹àžàžàž²àž IT àžàžµà¹àžªàž³àžàž±àžàžàž¢à¹àž²àž VMware vCenter à¹àž¥àž° ESXi àž£àž§àž¡àžàž¶àžàž£àž°àžàžàžàž¥àž²àž§àžà¹ Microsoft Azure àžàžžàžà¹àžà¹àžàžàž·àžàžàž²àž£à¹àžà¹à¹àžàž£àž·à¹àžàžàž¡àž·àžàžàžµà¹àžªàž£à¹àž²àžàžàž¶à¹àžà¹àžàžàžàž·à¹àž BRICKSTORM àžàž¶à¹àžà¹àžà¹àž backdoor àžàžµà¹à¹àžàžàžàž±àž§à¹àž«àž¡àž·àžàžà¹àžàž£à¹àžàžªàžàžàžàž£àž°àžàž àžàž³à¹àž«à¹àž¢àž²àžàžà¹àžàžàž²àž£àžàž£àž§àžàžàž±àž àžàžàžàžàž²àžàžàžµà¹àž¢àž±àžàž¡àžµà¹àžàž£àž·à¹àžàžàž¡àž·àžà¹àžªàž£àžŽàž¡àžàž¢à¹àž²àž Junction à¹àž¥àž° GuestConduit àžàžµà¹àžà¹àž§àž¢àžàž§àžàžàžžàž¡àžàž²àž£àžªàž·à¹àžàžªàž²àž£à¹àžàž£àž°àžàžà¹àžªàž¡àž·àžàžàžàž£àžŽàžà¹àžà¹àžàž¢à¹àž²àžà¹àžàžà¹àžàžµàž¢àž àžªàžŽà¹àžàžàžµà¹àžà¹àž²àžàž±àžàž§àž¥àžàž·àžàžàž§àžà¹àžàž²àžªàž²àž¡àž²àž£àžàžàž¢àž¹à¹à¹àžàž£àž°àžàžà¹àžà¹àžàž²àžà¹àžà¹àžàžàžµà¹àžàž¢à¹àž¡à¹àžàž¹àžàžàž à¹àž¥àž°àž¢àž±àžàžàž¢àž²àž¢àžàž²àž£à¹àžàž¡àžàžµà¹àžàžªàž¹à¹àžàž£àžŽàžàž²àž£ Microsoft 365 à¹àžàž·à¹àžàžà¹àž¡àž¢àžà¹àžàž¡àž¹àž¥àžªàž³àžàž±àž àžàž²àž£àžàž£àž°àžàž³à¹àž«àž¥à¹àž²àžàžµà¹àžªàž°àžà¹àžàžà¹àž«à¹à¹àž«à¹àžàžàž¶àžà¹àž£àžàžàž¹àžà¹àžà¹àžàžŽàžàž£àž±àžàž¡àž²àžàžàž§à¹àž²àžàž²àž£à¹àžàžŽàž à¹àžàž£àž²àž°à¹àžà¹àž²àž«àž¡àž²àž¢àžàž·àžàžà¹àžàž¡àž¹àž¥àžàžµà¹à¹àžàžµà¹àž¢àž§àžà¹àžàžàžàž±àžàžàž¥àžàž£àž°à¹àž¢àžàžà¹àžàžàžàž£àž±àžàžàž²àž¥àžàžµàž
ð https://securityonline.info/chinas-warp-panda-apt-deploys-brickstorm-backdoor-to-hijack-vmware-vcenter-esxi-and-azure-cloud
ð¡ àžà¹àžàžà¹àž«àž§à¹àž£à¹àž²àž¢à¹àž£àž TOTOLINK AX1800 à¹àžàžŽàžàžàž²àžà¹àž«à¹à¹àž®àžà¹àžàžàž£à¹à¹àžà¹àž²àžàž¶àž root à¹àžàž¢à¹àž¡à¹àžà¹àžàžàž¥à¹àžàžàžàžŽàž
àž¡àžµàžàž²àž£àžà¹àžàžàžàžà¹àžàžà¹àž«àž§à¹à¹àžà¹àž£àž²à¹àžàžàž£à¹ TOTOLINK AX1800 àžàžµà¹à¹àžà¹àžàž±àžà¹àžàž£à¹àž«àž¥àž²àž¢à¹àžàžà¹àž²àžà¹àž¥àž°àžàžžàž£àžàžŽàžàžàžàž²àžà¹àž¥à¹àž àžà¹àžàžà¹àž«àž§à¹àžàžµà¹àžàž³à¹àž«à¹àžàž¹à¹à¹àžàž¡àžàžµàžªàž²àž¡àž²àž£àžàžªà¹àžàžàž³àžªàž±à¹àž HTTP à¹àžàžµàž¢àžàžàž£àž±à¹àžà¹àžàžµàž¢àž§à¹àžàž·à¹àžà¹àžàžŽàžàžàž£àžŽàžàž²àž£ Telnet à¹àžàž¢à¹àž¡à¹àžà¹àžàžàžà¹àž²àžàžàž²àž£àž¢àž·àžàž¢àž±àžàžàž±àž§àžàž à¹àž¡àž·à¹àž Telnet àžàž¹àžà¹àžàžŽàžà¹àž¥à¹àž§ à¹àž®àžà¹àžàžàž£à¹àžªàž²àž¡àž²àž£àžà¹àžà¹àž²àžàž¶àžàžªàžŽàžàžàžŽà¹àž£àž°àžàž±àž root à¹àž¥àž°àžàž§àžàžàžžàž¡àžàžžàžàžàž£àžà¹à¹àžà¹à¹àžà¹àž¡àž£àž¹àžà¹àžàž àžàž¥àžàž£àž°àžàžàžàž·àžàžªàž²àž¡àž²àž£àžàžàž±àžàžàž±àžàžà¹àžàž¡àž¹àž¥ à¹àžàž¥àžµà¹àž¢àžà¹àžªà¹àžàžàž²àž DNS àž«àž£àž·àžà¹àžà¹à¹àžà¹àžàžàž²àžà¹àžàž¡àžàžµàžàžžàžàžàž£àžà¹àžàž·à¹àžà¹àžà¹àžàž£àž·àžàžà¹àž²àž¢à¹àžà¹ àžàžµà¹àžà¹àž²àžàž±àžàž§àž¥àžàž·àžàž¢àž±àžà¹àž¡à¹àž¡àžµà¹àžàžàžà¹à¹àžà¹à¹àžàžàž²àžàžàž¹à¹àžàž¥àžŽàž àžàž³à¹àž«à¹àžàž¹à¹à¹àžà¹àžà¹àžàžàžà¹àžàžàžàž±àžàžàž±àž§à¹àžàžàžà¹àž§àž¢àžàž²àž£àžàžŽàžàžàž²àž£à¹àžà¹àž²àžàž¶àžàžàž²àž WAN à¹àž¥àž°àžàž£àž§àžàžªàžàžàžàž²àž£à¹àžàžŽàžà¹àžà¹àžàž²àž Telnet àžàž¢à¹àž²àžà¹àžà¹àž¡àžàž§àž
ð https://securityonline.info/unpatched-totolink-ax1800-router-flaw-allows-unauthenticated-telnet-root-rce
â ïž FBI à¹àž¥àž° CISA à¹àžàž·àžàžàžàž¥àžžà¹àž¡à¹àž®àžà¹àžàžàž£à¹àžªàž²àž¢à¹àžàž£àž£àž±àžªà¹àžàžµàž¢à¹àžàž¡àžàžµà¹àžàž£àžàžªàž£à¹àž²àžàžàž·à¹àžàžàž²àžàžà¹àž²àž VNC àžàžµà¹à¹àž¡à¹àžàž¥àžàžàž àž±àž¢
àž«àžà¹àž§àž¢àžàž²àžàžà¹àž²àžàžàž§àž²àž¡àž¡àž±à¹àžàžàžà¹àžà¹àžàžàž£à¹àžàžàžàžªàž«àž£àž±àžàž¯ àž£àž§àž¡àžàž¶àž FBI à¹àž¥àž° CISA àžàžàžàžàž³à¹àžàž·àžàžàž§à¹àž²àžàž¥àžžà¹àž¡à¹àž®àžà¹àžàžàž£à¹àžàžµà¹àžªàžàž±àžàžªàžàžžàžàž£àž±àžªà¹àžàžµàž¢àžàž³àž¥àž±àžà¹àžàž¡àžàžµà¹àžàž£àžàžªàž£à¹àž²àžàžàž·à¹àžàžàž²àžàžªàž³àžàž±àž à¹àžà¹àž àž£àž°àžàžàžà¹àž³ àžàž¥àž±àžàžàž²àž à¹àž¥àž°àžàž²àž«àž²àž£ à¹àžàž¢à¹àžà¹àž§àžŽàžàžµàžà¹àž²àž¢ ๠àžàž·àžàžà¹àžàž«àž² Human-Machine Interfaces (HMI) àžàžµà¹à¹àžàž·à¹àžàž¡àžà¹àžàžà¹àž²àž VNC à¹àžà¹à¹àž¡à¹à¹àžà¹àžàž±à¹àžàž£àž«àž±àžªàžà¹àž²àžàžàžµà¹à¹àžà¹àžà¹àž£àž à¹àž¡àž·à¹àžà¹àžà¹àž²àžàž¶àžà¹àžà¹ àžàž§àžà¹àžàž²àžàž°àžàž£àž±àžà¹àžàž¥àžµà¹àž¢àžàžà¹àž²àžàž²àž£àžàž³àžàž²àž à¹àžà¹àž àžàž§àž²àž¡à¹àž£à¹àž§àžàž±à¹àž¡ àž«àž£àž·àžàžàžŽàžàž£àž°àžàžà¹àžà¹àžà¹àžàž·àžàž àžàž³à¹àž«à¹àžàž¹à¹àžàž§àžàžàžžàž¡à¹àž¡à¹à¹àž«à¹àžàž àž²àžàžàž£àžŽàžàžàžàžà¹àž£àžàžàž²àž àžàž¥àžžà¹àž¡àžàžµà¹àžàž¹àžàž£àž°àžàžžàž¡àžµàžàž±à¹àž Cyber Army of Russia Reborn, NoName057(16), Z-Pentest à¹àž¥àž° Sector16 àžàž¶à¹àžàž¡àžµàžàž§àž²àž¡à¹àžàž·à¹àžàž¡à¹àž¢àžàžàž±àžàž£àž±àžàž£àž±àžªà¹àžàžµàž¢ à¹àž¡à¹àžàž°à¹àž¡à¹àžàž±àžàžà¹àžàž à¹àžà¹àžàž²àž£à¹àžàž¡àžàžµà¹àžàžàžàžµà¹àžªàž£à¹àž²àžàžàž§àž²àž¡à¹àžªàžµàž¢àž«àž²àž¢à¹àžà¹àžàž£àžŽàžà¹àž¥àž°àž¢àž²àžàžà¹àžàžàž²àž£àžàž²àžà¹àžàž²
ð https://securityonline.info/fbi-cisa-warn-pro-russia-hacktivists-target-critical-infrastructure-via-unsecured-vnc-hmis
ð¥ àžà¹àžàžà¹àž«àž§à¹àž£à¹àž²àž¢à¹àž£àžà¹àž CCTV (CVE-2025-13607) à¹àžªàžµà¹àž¢àžàžàž¹àžà¹àž®àžàžàž¹àž àž²àžàžªàžà¹àž¥àž°àžà¹àž¡àž¢àž£àž«àž±àžªàžà¹àž²àž
CISA àžàžàžàžàž£àž°àžàž²àžšà¹àžàž·àžàžà¹àžàžµà¹àž¢àž§àžàž±àžàžà¹àžàžà¹àž«àž§à¹à¹àžàžàž¥à¹àžàžàž§àžàžàž£àžàžŽàžàžàžµà¹à¹àžàž·à¹àžàž¡àžà¹àžà¹àžàž£àž·àžàžà¹àž²àž¢ à¹àžàž¢à¹àžàžàž²àž°àž£àžžà¹àž D-Link DCS-F5614-L1 àžàžµà¹à¹àžàžŽàžàžà¹àžàžà¹àž«à¹àžàž¹à¹à¹àžàž¡àžàžµà¹àžà¹àž²àžàž¶àžàžàž²àž£àžàž±à¹àžàžà¹àž²à¹àž¥àž°àžà¹àžàž¡àž¹àž¥àžàž±àžàžàžµà¹àžà¹à¹àžàž¢à¹àž¡à¹àžà¹àžàžàž¢àž·àžàž¢àž±àžàžàž±àž§àžàž àžàž¥àžàž·àžàžªàž²àž¡àž²àž£àžàžàž¹àž àž²àžàžªàžàžàž²àžàžàž¥à¹àžàžà¹àž¥àž°àžà¹àž¡àž¢àž£àž«àž±àžªàžà¹àž²àžàžàž¹à¹àžàž¹à¹àž¥à¹àžàž·à¹àžà¹àžàž²àž°àž¥àž¶àžà¹àžà¹àž²à¹àžà¹àžàž£àž°àžàžàžà¹àžà¹àžà¹àžà¹ àžà¹àžàžà¹àž«àž§à¹àžàžµà¹àž¡àžµàžàž°à¹àžàžàžàž§àž²àž¡àž£àžžàžà¹àž£àžàžªàž¹àžàžàž¶àž 9.4 à¹àž¥àž°à¹àž¡à¹ D-Link àžàž°àžàžàžà¹àžàžŽàž£à¹àž¡à¹àž§àž£à¹à¹àžà¹à¹àžà¹àž¥à¹àž§ à¹àžà¹àžàž¹à¹à¹àžà¹à¹àžàž£àžàžà¹àžàž·à¹àžàžàž¢à¹àž²àž Securus à¹àž¥àž° Sparsh àž¢àž±àžà¹àž¡à¹à¹àžà¹àž£àž±àžàžàž²àž£àžàžàžàžªàžàžàž àžàž³à¹àž«à¹àžàž¹à¹à¹àžà¹àžà¹àžàžàž£àžµàžàžàž£àž§àžàžªàžàžà¹àž¥àž°àžàžŽàžàžà¹àžàžàž¹à¹àžàž¥àžŽàžà¹àžàžà¹àžàž·à¹àžàžàž§àž²àž¡àžàž¥àžàžàž àž±àž¢
ð https://securityonline.info/critical-cctv-flaw-cve-2025-13607-risks-video-feed-hijack-credential-theft-via-missing-authentication
ð¡ïž àžà¹àž²àž§àžà¹àž§àž: Google àžàžàžà¹àžàžàžà¹àžàžžàžà¹àžàžŽàžà¹àžà¹àžà¹àžàžà¹àž«àž§à¹ Zero-Day àžàž Chrome
à¹àž£àž·à¹àžàžàžàžµà¹à¹àžà¹àžàžàž²àž£àžàž±àžà¹àžàžàžàžµà¹àžªàž³àžàž±àžàž¡àž²àžàžàžàž Google Chrome à¹àžàž£àž²àž°àž¡àžµàžàž²àž£àžà¹àžàžàžàžà¹àžàžà¹àž«àž§à¹àž£à¹àž²àž¢à¹àž£àžàžàžµà¹àžàž¹àžà¹àžàž¡àžàžµàžàž£àžŽàžà¹àž¥à¹àž§à¹àžà¹àž¥àžàžàžàžà¹àž¥àžà¹ Google àžàž¶àžàž£àžµàžàžàž¥à¹àžàž¢à¹àž§àžàž£à¹àžàž±àžà¹àž«àž¡à¹ 143.0.7499.109/.110 à¹àžàž·à¹àžàžàžžàžàžà¹àžàžà¹àž«àž§à¹ à¹àžàž¢àžà¹àžàžà¹àž«àž§à¹àžàžµà¹àžàž¹àžàž£àž°àžàžžàž§à¹àž²à¹àžà¹àž “Under coordination” àžàž¶à¹àžàž«àž¡àž²àž¢àžàž¶àžàž¢àž±àžàžàž¢àž¹à¹àž£àž°àž«àž§à¹àž²àžàžàž²àž£àžàž³àžàž²àžàž£à¹àž§àž¡àžàž±àžàžàž¹à¹àžàž±àžàžàž²àžàžàžàžà¹à¹àž§àž£à¹àžàž·à¹àž ๠àžàž³à¹àž«à¹àž£àž²àž¢àž¥àž°à¹àžàžµàž¢àžà¹àžàžŽàžà¹àžàžàžàžŽàžàž¢àž±àžà¹àž¡à¹àžàž¹àžà¹àžàžŽàžà¹àžàž¢ à¹àžà¹àžàžµà¹à¹àžà¹ ๠àžàž·àžàž¡àžµàžàž¹à¹à¹àž¡à¹àž«àž§àž±àžàžàžµàžàž³à¹àžà¹àžà¹à¹àžàž¡àžàžµà¹àž¥à¹àž§ àžàžàžàžàž²àžàžàžµà¹àž¢àž±àžàž¡àžµàžàž²àž£à¹àžà¹à¹àžàžà¹àžàžà¹àž«àž§à¹àž£àž°àžàž±àžàžàž¥àž²àžàžàžµàžàžªàžàžàž£àž²àž¢àžàž²àž£ à¹àžà¹à¹àžà¹àžàž±àžàž«àž²à¹àž Password Manager à¹àž¥àž° Toolbar àžàžµà¹àžàž±àžàž§àžŽàžàž±àž¢àž àž²àž¢àžàžàžàž£àž²àž¢àžàž²àžà¹àžà¹àž²àž¡àž² àžàž£à¹àžàž¡à¹àžà¹àž£àž±àžàž£àž²àžàž§àž±àž¥àžàž±à¹àžàžàž²àž§àžà¹àžàžµà¹àž£àž§àž¡ 4,000 àžàžàž¥àž¥àž²àž£à¹ à¹àž£àž·à¹àžàžàžàžµà¹àžàž¶àžà¹àžà¹àžàžàž²àž£à¹àžàž·àžàžàžàž¹à¹à¹àžà¹àžàžžàžàžàžà¹àž«à¹àž£àžµàžàžàž£àž§àžàžªàžàžà¹àž¥àž°àžàž±àžà¹àžàž Chrome àžà¹àž§àž¢àžàžà¹àžàžàžàž±àžàžàžµ à¹àž¡à¹àžàž§àž£àž£àžàžàž²àž£àžàž±àžà¹àžàžàžàž±àžà¹àžàž¡àž±àžàžŽ à¹àžàž£àž²àž°àžàž§àž²àž¡à¹àžªàžµà¹àž¢àžàžàž³àž¥àž±àžà¹àžàžŽàžàžàž¶à¹àžàžàž£àžŽàžà¹àž¥à¹àž§
ð https://securityonline.info/emergency-chrome-update-google-patches-new-zero-day-under-active-attack
ð€ àžàž§àž±àžàžàž£àž£àž¡à¹àž«àž¡à¹: àžªàžàž²àžàž±àžàž¢àžàž£àž£àž¡ AI àžàžàž Google à¹àž£àžàžàž§à¹àž² GPT-4 à¹àžàžà¹àž²àžàžàž§àž²àž¡àžàž³
Google à¹àžàžŽàžàžàž±àž§àžªàžàž²àžàž±àžàž¢àžàž£àž£àž¡à¹àž«àž¡à¹àžàž·à¹àž Titans à¹àž¥àž°àžàž£àžàžà¹àžàž§àžàžŽàž MIRAS àžàžµà¹àžàžàžà¹àžàžàž¡àž²à¹àžàž·à¹àžà¹àžà¹àžàž±àžàž«àž²àžàž²àž£àžàž³àžà¹àžàž¡àž¹àž¥àž£àž°àž¢àž°àž¢àž²àž§àžàžàžà¹àž¡à¹àžàž¥ AI à¹àžàžà¹àžàžŽàž¡ ๠àžàžžàžà¹àžà¹àžàžàž·àžàžªàž²àž¡àž²àž£àž “àžà¹àž²àžà¹àž àžàž³à¹àž” à¹àžà¹à¹àž«àž¡àž·àžàžàžªàž¡àžàžàž¡àžàžžàž©àž¢à¹ à¹àžàž¢à¹àžà¹à¹àž¡àžàž¹àž¥àžàž§àž²àž¡àžàž³àž£àž°àž¢àž°àž¢àž²àž§àžàžµà¹àžàž³àžàž²àžàžàž¥à¹àž²àž¢àžàž²àž£à¹àž¢àžàžàž§àž²àž¡àžàž³àžªàž±à¹àžà¹àž¥àž°àž¢àž²àž§à¹àžàžªàž¡àžàžàžàž£àžŽàž à¹ àžªàžŽà¹àžàžàžµà¹àžà¹àž²àžªàžà¹àžàžàžµà¹àžªàžžàžàžàž·àž “surprise metric” àžàž¥à¹àžàžàžµà¹à¹àž¥àž·àžàžàžàž³à¹àžàžàž²àž°àžà¹àžàž¡àž¹àž¥àžàžµà¹à¹àžàž¥àžà¹àž«àž¡à¹àž«àž£àž·àžà¹àž¡à¹àžàž²àžàžàžŽàž à¹àžà¹àžà¹àžàžµàž¢àž§àžàž±àžàžàžµà¹àž¡àžàžžàž©àž¢à¹àž¡àž±àžàžàž³à¹àž«àžàžžàžàž²àž£àžà¹àžàžµà¹à¹àž¡à¹àžàž£àž£àž¡àžàž²à¹àžà¹àžàž±àžà¹àžàž àžàž¥àž¥àž±àžàžà¹àžàž·àžà¹àž¡à¹àžàž¥àžàžµà¹àžªàž²àž¡àž²àž£àžàžàž±àžàžàž²àž£àžà¹àžàž¡àž¹àž¥àž¢àž²àž§àž¡àž«àž²àžšàž²àž¥à¹àžà¹àžàž¶àžàžªàžàžàž¥à¹àž²àžà¹àžà¹àžàž à¹àž¥àž°àž¢àž±àžàžàž³àžàž²àžà¹àžà¹àžàžµàžàž§à¹àž² GPT-4 à¹àž¡à¹àžàž°àž¡àžµàžàž²àž£àž²àž¡àžŽà¹àžàžàž£à¹àžà¹àžàž¢àžàž§à¹àž² àžàžàžàžàž²àžàžàžµà¹ MIRAS àž¢àž±àžà¹àžàžŽàžàžàž²àžà¹àž«à¹àžªàž£à¹àž²àžà¹àž¡à¹àžàž¥à¹àž«àž¡à¹ ๠àžàžµà¹àž¡àžµàžàž§àž²àž¡àžªàž²àž¡àž²àž£àžà¹àžàžàž²àž°àžà¹àž²àž à¹àžà¹àžàžàž²àž£àžàžàžà¹àžàžªàž±àžàžàž²àžàž£àžàžàž§àžàž«àž£àž·àžàžàž²àž£àž£àž±àžàž©àž²àžàž§àž²àž¡àžàž³àž£àž°àž¢àž°àž¢àž²àž§àžàž¢à¹àž²àžàž¡àž±à¹àžàžàž àžàž²àž£àžàžàžªàžàžàžàž±àžàžàžžàžàžà¹àžàž¡àž¹àž¥ BABILong à¹àžªàžàžà¹àž«à¹à¹àž«à¹àžàž§à¹àž² Titans àž¡àžµàžšàž±àžàž¢àž àž²àžà¹àž«àžàž·àžàžàž§à¹àž²à¹àž¡à¹àžàž¥àžàž±à¹àžàžàž³àžàž·à¹àž ๠à¹àžàžàž²àž£àžàž¶àžàžà¹àžàž¡àž¹àž¥àžàžµà¹àžàž£àž°àžàž²àž¢àžàž¢àž¹à¹à¹àžà¹àžàžàžªàž²àž£àžàžàž²àžà¹àž«àžà¹ àžàž³à¹àž«à¹àžàžàž²àžàžàžàžàž AI à¹àžàžàž²àž£àžàž³àžàž§àž²àž¡à¹àžà¹àž²à¹àžàžàž±à¹àžà¹àžàžàžªàž²àž£àž«àž£àž·àžà¹àž¡à¹à¹àžà¹àžà¹àžàž¡àž¹àž¥àžàž²àžàžàž±àžàžàžžàžàž£àž£àž¡àžàž¹àžªàžà¹àžªà¹àž¥àž°àžàž£àžàžàž¥àž±àžàž¡àž²àžàžàž¶à¹àž
ð https://securityonline.info/the-surprise-metric-googles-new-ai-architecture-outperforms-gpt-4-in-memory