Done, thanks!
17
Over 3 Million WordPress Sites Affected by Migration Plugin Vulnerability - SecurityWeek
(www.securityweek.com)
20
Attackers are going after prominent individuals through OAuth phishing, FBI warns - Help Net Security
(www.helpnetsecurity.com)
3
Attackers Exploit Critical Switchvox Flaw to Deploy Reverse Shells Without Credentials
(thehackernews.com)
5
CISA review makes the case for eliminating vulnerability classes - Help Net Security
(www.helpnetsecurity.com)
3
GeoNetwork Fixes Unauthenticated RCE Chain Affecting Government Geoportal Backends
(thehackernews.com)
9
Nearly 40 mil. CJ streaming users' personal info compromised - The Korea Times
(www.koreatimes.co.kr)
16
Malicious Apache Modules Hijack Brazilian Government Site Traffic to Push Betting Pages
(thehackernews.com)
Edited. Thanks!
Sorry. It was not paywalled for me when I first saw. More info from different source: https://feedly.com/cve/CVE-2025-6545
The incident occurred on June 12, 2025, due to a policy change that contained blank fields, causing 503 errors in Google Cloud and Google Workspace APIs. The root cause was:
- A new feature added to Service Control on May 29, 2025, without adequate error handling.
- The policy change with blank fields was globally replicated and caused Service Control binaries to crash.
Thanks! Corrected
The first vulnerability, CVE-2025-5054, affects Ubuntu’s Apport crash reporting system, while the second, CVE-2025-4598, impacts systemd-coredump, the default core dump handler used across Red Hat Enterprise Linux 9 and 10, as well as Fedora distributions.
Leak extortion is the main issue nowadays, not covered by backups, I'm afraid.
view more: next ›
Looks like it: https://haveibeenpwned.com/Breach/Udemy