Skip to content

  • Home
  • Tools
    • IOC Defang/Refang Tool
    • Universal Encoder Decoder
    • File Hash Calculator
    • Password Crack Time Simulator
    • Multi-URL IOC Checker
  • CyberSecurity News
  • Latest Cyber Attack
  • Vulnerabilities
  • Threat Advisories
  • MITRE ATT&CK
    • Collection
    • Command and Control
    • Credential Access
    • Defense Evasion
    • Discovery
    • Execution
    • Exfiltration
    • Impact
    • Initial Access
    • Lateral Movement
    • Persistence
    • Privilege Escalation
    • Reconnaissance
    • Resource Development
  • Ransomware
  • Malware
  • Cyber Kill Chain

  • Home
  • Tools
    • IOC Defang/Refang Tool
    • Universal Encoder Decoder
    • File Hash Calculator
    • Password Crack Time Simulator
    • Multi-URL IOC Checker
  • CyberSecurity News
  • Latest Cyber Attack
  • Vulnerabilities
  • Threat Advisories
  • MITRE ATT&CK
    • Collection
    • Command and Control
    • Credential Access
    • Defense Evasion
    • Discovery
    • Execution
    • Exfiltration
    • Impact
    • Initial Access
    • Lateral Movement
    • Persistence
    • Privilege Escalation
    • Reconnaissance
    • Resource Development
  • Ransomware
  • Malware
  • Cyber Kill Chain

December 2025

CVE-2025-15212 — SQL injection in code-projects Refugee Food Management System 1.0

  • Threat Advisories
CyberDefenderDecember 30, 2025December 30, 202510 mins0
CVE-2025-15212 is a SQL injection vulnerability affecting Refugee Food Management System (version 1.0) distributed on code-projects. The…
continue reading..

CVE-2025-15284: When a Safety Limit Isn’t a Safety Limit — Breaking qs Array Parsing

  • Threat Advisories
AegironDecember 30, 2025December 30, 20258 mins0
CVE ID: CVE-2025-15284Severity: HIGHCVSS Score: 7.5Impact: Availability (Denial of Service) Exploitability Summary This vulnerability allows attackers to…
continue reading..

CVE-2025-23458 – Reflected Cross-Site Scripting (XSS) in Rakessh Ads24 Lite plugin for WordPress

  • Threat Advisories
CyberDefenderDecember 30, 2025December 30, 20253 mins0
CVE-2025-23458 is a high-severity vulnerability involving Improper Neutralization of Input During Web Page Generation, commonly known as…
continue reading..

CVE-2025-23469 – Reflected Cross-Site Scripting (XSS) in Sleekplan WordPress plugin

  • Threat Advisories
CyberDefenderDecember 30, 2025December 30, 20253 mins0
CVE-2025-23469 is a Reflected Cross-Site Scripting (XSS) security issue found in versions up to and including 0.2.0…
continue reading..

CVE-2025-23550 — Reflected Cross-Site Scripting (XSS) in WordPress “Product Puller” plugin

  • Threat Advisories
CyberDefenderDecember 30, 2025December 30, 20252 mins0
CVE-2025-23550 is a Reflected Cross-Site Scripting (XSS) vulnerability affecting the WordPress “Product Puller” plugin (developed by Kemal…
continue reading..

CVE-2025-23554 vulnerability in Jakub Glos Off Page SEO allows Reflected XSS

  • Threat Advisories
CyberDefenderDecember 30, 2025December 30, 20252 mins0
CVE-2025-23554 is a high-severity security vulnerability classified as Improper Neutralization of Input During Web Page Generation —…
continue reading..

ColdFusion Servers Under Fire: Millions of Live Attacks Are Happening Right Now

  • Cyber Threat Intelligence
AegironDecember 30, 2025December 30, 20259 mins0
Security Alert Issued: December 29, 2024Attack Type: Mass exploitation campaign / webshell deploymentPrimary Target: Adobe ColdFusion application…
continue reading..

January 2026 Countdown: Sweden’s NIS2 Cybersecurity Act

  • CyberSecurity News
CyberDefenderDecember 30, 2025December 30, 20256 mins0
The Cybersecurity Act (Swedish: Cybersäkerhetslagen) is Sweden’s national law transposing the EU’s NIS2 Directive into domestic legislation.…
continue reading..

Codefinger: The Ransomware That Doesn’t Infect Your Servers — It Erases Your Cloud

  • Cyber Threat Intelligence
AegironDecember 30, 2025December 30, 202511 mins0
Threat Advisory Date: December 30, 2024Threat Name: Codefinger RansomwareTarget Platform: Amazon Web Services (AWS) S3Classification: Cloud-Native Ransomware…
continue reading..

When Updates Turn Malicious: EmEditor Supply Chain Breach Exposes Developers to Credential Theft

  • Cyber Threat Intelligence
AegironDecember 30, 2025December 30, 202511 mins0
Incident Report Date: December 30, 2024Attack Classification: Supply Chain Compromise / Software Distribution Channel AttackSeverity: CRITICALThreat Actor:…
continue reading..
  • 1
  • …
  • 3
  • 4
  • 5
  • 6
  • 7
  • …
  • 41

Recent Posts

  • Lazarus Group Weaponizes npm Registry in Sophisticated ‘Brandjacking’ …
    Jun 5, 2026
  • CRITICAL WINDOWS ZERO-DAY EXPLOITED IN THE WILD AFTER ROGUE RESEARCHER…
    Jun 5, 2026
  • Inside the Shadow Networks: How Modern Piracy Syndicates Hijack Live S…
    Jun 5, 2026
  • ‘Operation TaxShadow’ Evades Enterprise Defenses With Highly Sophistic…
    Jun 5, 2026
  • Cyber Fraud Ring Weaponizes Cloned Developer Tools in Sophisticated Cl…
    Jun 4, 2026
  • Massive npm Supply Chain Attack Hits Red Hat Packages, Steals Cloud an…
    Jun 4, 2026
  • NEW ‘C0XMO’ BOTNET VARIANT WEAPONIZES PYTHON FOR SWIFT CROSS-PLATFORM …
    Jun 4, 2026
  • Sophisticated Cybercrime Cluster TA4922 Expands Western Assault Using …
    Jun 4, 2026
  • Cybercriminals weaponize native AppleScript execution to bypass macOS …
    Jun 3, 2026
  • Fraudulent Copyright Removal Notices Threaten Chrome Extension Develop…
    Jun 3, 2026

Popular Posts

  • Global Investigation Reveals New “TIP” Phishing Model Bypassing MFA, E…
    May 8, 2026
  • Google Play Scam Exposed: Fake “Call History” Apps Hit 7.3 Million Dow…
    May 8, 2026
  • VoidStealer Breaks Chrome Security Barrier, Exposes Millions of Browse…
    May 8, 2026
  • Microsoft Semantic Kernel Flaws Turn AI Prompt Injection Into Full Rem…
    May 8, 2026
  • Ransomware 2026: Cybercriminals Deploy Post-Quantum Encryption, EDR Ki…
    May 14, 2026
  • IPL 2026 Cyber Scam Explosion: Fake Ticket Networks and Malware Stream…
    May 13, 2026
  • Cyberespionage Campaign Exposed: Russian-Language Lures Deploy Fileles…
    May 8, 2026
  • Cyber Alert: AMOS Infostealer Dominates macOS Threats by Using Decepti…
    May 15, 2026
  • Massive npm Supply Chain Attack Uses Tor-Powered Malware to Hijack Dev…
    May 15, 2026
  • BELARUSIAN ‘FROSTYNEIGHBOR’ APT LAUNCHES HIGHLY EVOLVED CY…
    May 15, 2026

Find Me On

© 2026 CyberP1. All Rights Reserved.
  • Contact
  • Privacy Policy
  • Terms of Service