future_ev_c's profile picture. Building the future of EV charging ⚡🚗

Jesse Taylor

@future_ev_c

Building the future of EV charging ⚡🚗

Jesse Taylor 已转帖

🚨🚨CVE-2025-40778 (CVSS 8.6): BIND 9 Cache Poisoning Vulnerability A flawed BIND 9 resolver caches unrequested DNS records, letting off-path attackers spoof responses and poison the cache. This redirects clients to malicious infrastructure without new lookups. Search by…

zoomeye_team's tweet image. 🚨🚨CVE-2025-40778 (CVSS 8.6): BIND 9 Cache Poisoning Vulnerability
A flawed BIND 9 resolver caches unrequested DNS records, letting off-path attackers spoof responses and poison the cache. This redirects clients to malicious infrastructure without new lookups. 

Search by…

CVE-2025-40778 - Today we go with 1-day #pruva repro for BIND9 High serverity issue. gist.github.com/N3mes1s/f76b4a… A vulnerable BIND 9 resolver (version 9.18.39) accepts and caches resource records that were not requested in the original DNS query. An off-path attacker who can race…

gN3mes1s's tweet image. CVE-2025-40778 - Today we go with 1-day #pruva repro for BIND9 High serverity issue.

gist.github.com/N3mes1s/f76b4a…

A vulnerable BIND 9 resolver (version 9.18.39) accepts and caches resource records that were not requested in the original DNS query. An off-path attacker who can race…
gN3mes1s's tweet image. CVE-2025-40778 - Today we go with 1-day #pruva repro for BIND9 High serverity issue.

gist.github.com/N3mes1s/f76b4a…

A vulnerable BIND 9 resolver (version 9.18.39) accepts and caches resource records that were not requested in the original DNS query. An off-path attacker who can race…


Jesse Taylor 已转帖

🛡️🔗 EDR-Redir: Breaking EDR with BindLink & Cloud Filter and how I detect it for MDE A new technique dubbed EDR-Redir from Zero Salarium shows how attackers can hijack or disable EDRs like Defender, Elastic, and Sophos by abusing Windows 11’s Bind Filter and Cloud Filter…

0x534c's tweet image. 🛡️🔗 EDR-Redir: Breaking EDR with BindLink & Cloud Filter and how I detect it for MDE

A new technique dubbed EDR-Redir from Zero Salarium shows how attackers can hijack or disable EDRs like Defender, Elastic, and Sophos by abusing Windows 11’s Bind Filter and Cloud Filter…

Jesse Taylor 已转帖

CVE-2025-54469 - Enforcer is vulnerable to Command Injection and Buffer overflow #Pruva today reproduced this interesting bug in NeuVector. gist.github.com/N3mes1s/7cc555… Agent pulled neuvector/enforcer:5.4.6, launched it with hijacked CLUSTER_RPC_PORT values, and confirmed…

gN3mes1s's tweet image. CVE-2025-54469 - Enforcer is vulnerable to Command Injection and Buffer overflow

#Pruva today reproduced this interesting bug in NeuVector.  

gist.github.com/N3mes1s/7cc555…

Agent pulled neuvector/enforcer:5.4.6, launched it with hijacked CLUSTER_RPC_PORT values, and confirmed…

🚨🚨CVE-2025-54469 (CVSS: 10): Critical NeuVector RCE Unsanitized CLUSTER_RPC_PORT/CLUSTER_LAN_PORT are passed to popen() at startup, allowing attackers who can modify env vars to inject arbitrary commands. Search by vul.cve Filter👉vul.cve="CVE-2025-54469" ZoomEye…

zoomeye_team's tweet image. 🚨🚨CVE-2025-54469 (CVSS: 10): Critical NeuVector RCE
Unsanitized CLUSTER_RPC_PORT/CLUSTER_LAN_PORT are passed to popen() at startup, allowing attackers who can modify env vars to inject arbitrary commands.

Search by vul.cve Filter👉vul.cve="CVE-2025-54469"
ZoomEye…


Jesse Taylor 已转帖

Now @OpenAI Slipped Shopping Into 800 Million #ChatGPT Users’ Chats—Here’s Why That Matters singularityhub.com/2025/10/24/ope…

ahier's tweet image. Now @OpenAI Slipped Shopping Into 800 Million #ChatGPT Users’ Chats—Here’s Why That Matters 

singularityhub.com/2025/10/24/ope…

Jesse Taylor 已转帖

⚠️⚠️ CVE-2025-54236: Critical 9.1/10 Flaw in Magento / Adobe Commerce Enables Unauthenticated File-Upload & Account Takeover 🔥Deep Dive: slcyber.io/assetnote-secu… 🎯131k+ Results are found on the en.fofa.info nearly year. 🔗FOFA Link: en.fofa.info/result?qbase64… FOFA Query:…

fofabot's tweet image. ⚠️⚠️ CVE-2025-54236: Critical 9.1/10 Flaw in Magento / Adobe Commerce Enables Unauthenticated File-Upload & Account Takeover
🔥Deep Dive: slcyber.io/assetnote-secu…
🎯131k+ Results are found on the en.fofa.info nearly year.
🔗FOFA Link: en.fofa.info/result?qbase64…
FOFA Query:…

Jesse Taylor 已转帖

Last week at #GITEX2025, we signed agreements with e& to modernize its core network infrastructure and OSS/BSS to state-of-art cloud-native solutions in the UAE: m.eric.sn/fSkr50XgOQT #NoNonsenseOSSBSS

ericsson's tweet image. Last week at #GITEX2025, we signed agreements with e& to modernize its core network infrastructure and OSS/BSS to state-of-art cloud-native solutions in the UAE: m.eric.sn/fSkr50XgOQT

#NoNonsenseOSSBSS

Jesse Taylor 已转帖

🚨 Hackers Abuse ASP.NET Machine Keys to Compromise IIS Servers Read more: cybersecuritynews.com/hackers-abuse-… A sneaky hacking campaign where attackers used publicly available machine keys to break into Windows IIS web servers. These keys, meant…

The_Cyber_News's tweet image. 🚨 Hackers Abuse ASP.NET Machine Keys to Compromise IIS Servers 

Read more: cybersecuritynews.com/hackers-abuse-…

A sneaky hacking campaign where attackers used publicly available  machine keys to break into Windows IIS web servers.

These keys, meant…

Jesse Taylor 已转帖

🚨🚨CVE-2025-22167 (CVSS 8.7): Jira Path Traversal flaw allows arbitrary file writes to any JVM-writable path. Possible RCE when chained with other exploits. Search by vul.cve Filter👉vul.cve="CVE-2025-22167" ZoomEye Dork👉app="Atlassian JIRA" Over 107k vulnerable instances.…

zoomeye_team's tweet image. 🚨🚨CVE-2025-22167 (CVSS 8.7): Jira Path Traversal flaw allows arbitrary file writes to any JVM-writable path. Possible RCE when chained with other exploits.

Search by vul.cve Filter👉vul.cve="CVE-2025-22167"
ZoomEye Dork👉app="Atlassian JIRA"
Over 107k vulnerable instances.…

Jesse Taylor 已转帖

‼️The plot thickens: Collins Aerospace was targeted by two ransomware gangs simultaneously, unaware of each other. After Everest exfiltrated data from an FTP server, another ransomware operator targeted the MUSE system and deployed ransomware. NCSC-UK stated, “We know the…

‼️ When Collins Aerospace shut down its Multi-User System Environment (MUSE), it informed the press and filed with the SEC, claiming a ransomware attack. This caused major European airports to halt passenger processing, stranding thousands and delaying numerous flights. Turns…

IntCyberDigest's tweet image. ‼️ When Collins Aerospace shut down its Multi-User System Environment (MUSE), it informed the press and filed with the SEC, claiming a ransomware attack.

This caused major European airports to halt passenger processing, stranding thousands and delaying numerous flights.

Turns…
IntCyberDigest's tweet image. ‼️ When Collins Aerospace shut down its Multi-User System Environment (MUSE), it informed the press and filed with the SEC, claiming a ransomware attack.

This caused major European airports to halt passenger processing, stranding thousands and delaying numerous flights.

Turns…
IntCyberDigest's tweet image. ‼️ When Collins Aerospace shut down its Multi-User System Environment (MUSE), it informed the press and filed with the SEC, claiming a ransomware attack.

This caused major European airports to halt passenger processing, stranding thousands and delaying numerous flights.

Turns…
IntCyberDigest's tweet image. ‼️ When Collins Aerospace shut down its Multi-User System Environment (MUSE), it informed the press and filed with the SEC, claiming a ransomware attack.

This caused major European airports to halt passenger processing, stranding thousands and delaying numerous flights.

Turns…


Jesse Taylor 已转帖

🚨 Developers, check your NuGet packages. A fake NuGet package “Netherеum.All” — spelled with a Cyrillic ‘e’ — was stealing wallet keys from Ethereum .NET projects. It even faked 11.7M downloads to look real. Full story ↓ thehackernews.com/2025/10/fake-n…


Jesse Taylor 已转帖

Reports indicate that the F5 BIG-IP source code leak is linked to state-sponsored campaigns utilizing the BRICKSTORM backdoor, highlighting ongoing cybersecurity threats. #Cybersecurity #F5BIGIP #BRICKSTORM resecurity.com/blog/article/f…


Jesse Taylor 已转帖

AI-generated code is now the cause of one-in-five breaches – but developers and security leaders alike are convinced the technology will come good eventually | IT Pro itpro.com/software/devel…


Jesse Taylor 已转帖

Report Shows Ransomware Hitting Manufacturing the Hardest | Manufacturing Business Technology mbtmag.com/cybersecurity/…


Jesse Taylor 已转帖

Proofpoint has identified a new sophisticated #cybercriminal. Dubbed #TA585, it manages its entire #cyberattack chain, including infrastructure, delivery, and malware installation. Read about its activity, capabilities, and technical details. @techday_ca brnw.ch/21wWPST


Jesse Taylor 已转帖

"It is now clear that near-term EV adoption will be slower than planned .... It's clear that ICE volumes will remain higher for longer....strong sustained demand" GM CEO Barra just out Q3 letter.. Note GM taking Q3 charge on EVs "and we expect future charges." #oott

Energy_Tidbits's tweet image. "It is now clear that near-term EV adoption will be slower than planned .... It's clear that ICE volumes will remain higher for longer....strong sustained demand"  GM CEO Barra just out Q3 letter..

Note GM taking Q3 charge on EVs  "and we expect future charges." 

#oott

Jesse Taylor 已转帖

$NVDA LOWER EARTH ORBIT AI FACTORIES? NVIDIA just posted a video of a 5GW datacenter in space. Meanwhile, $AMZN founder Jeff Bezos is talking about compute bases on the moon. $TSLA CEO targeting for Mars next?

来自 NVIDIA

Jesse Taylor 已转帖

Singapore’s Shanmugam warns weaponised technology fuelling ‘cyber arms race’ | South China Morning Post scmp.com/week-asia/poli…


Jesse Taylor 已转帖

Looking back, this was probably the most important slide from Analyst Day. For years CRQCs were a 2030 problem. Academic talk more than operational risk. Now the Department of War is saying encryption could be toast in just three years. That shifts it from lab demo to war budget…

DesFrontierTech's tweet image. Looking back, this was probably the most important slide from Analyst Day. For years CRQCs were a 2030 problem. Academic talk more than operational risk. Now the Department of War is saying encryption could be toast in just three years. That shifts it from lab demo to war budget…

United States 趋势

Loading...

Something went wrong.


Something went wrong.