BackBox.org offers a range of Penetration Testing services to simulate an attack on your network or application. If you are interested in our services, please contact us and we will provide you with further information as well as an initial consultation.
CISA Flags Actively Exploited GeoServer XXE Flaw in Updated KEV Catalog
/in General NewsThe U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added a high-severity security flaw impacting OSGeo GeoServer to its Known Exploited Vulnerabilities (KEV) catalog, based on evidence of active exploitation in the wild.
The vulnerability in question is CVE-2025-58360 (CVSS score: 8.2), an unauthenticated XML External Entity (XXE) flaw that affects all versions prior to
The Hacker News – Read More
Trump Signs Executive Order to Block State AI Regulations
/in General NewsMembers of Congress from both parties have pushed for more regulations on AI, saying there is not enough oversight for the powerful technology.
The post Trump Signs Executive Order to Block State AI Regulations appeared first on SecurityWeek.
SecurityWeek – Read More
8 HDMI tricks I use to get the best performance from my TV – and most are free
/in General NewsThink your TV setup is fine? These HDMI tricks can unlock performance and sound you didn’t know you were missing.
Latest news – Read More
This company’s AI success was built on 5 essential steps – see how they work for you
/in General NewsFrom data foundations to storytelling techniques, here’s how to turn your AI projects into valuable production services.
Latest news – Read More
Warnings Mount in Congress Over Expanded US Wiretap Powers
/in General NewsExperts tell US lawmakers that a crucial spy program’s safeguards are failing, allowing intel agencies deeper, unconstrained access to Americans’ data.
Security Latest – Read More
Attackers Exploited Gogs Zero-Day Flaw for Months
/in General NewsWiz disclosed a still-unpatched vulnerability in self-hosted Git service Gogs, which is a bypass for a previous RCE bug disclosed last year.
darkreading – Read More
Coworker or friend? How your chatbot’s role is shaped by device and time
/in General NewsFrom work-related conversations on our desktops by day to personal advice on our phones after hours, AI now integrates ‘into the full texture of human life,’ a Microsoft study finds.
Latest news – Read More
Should you stop logging in through Google and Facebook? Consider these SSO risks vs. benefits
/in General NewsRelying on consumer SSO creates significant challenges, and passkeys may offer a solution.
Latest news – Read More
OpenAI user data was breached, but changing your password won’t help – here’s why
/in General NewsRevealed on Thanksgiving Eve, the incident serves as a reminder that we’re all responsible for exploring additional security options.
Latest news – Read More
Malicious Visual Studio Code Extensions Hide Trojan in Fake PNG Files
/in General NewsVS Code developers beware: ReversingLabs found 19 malicious extensions hiding trojans inside a popular dependency, disguising the final malware payload as a standard PNG image file.
Hackread – Cybersecurity News, Data Breaches, AI, and More – Read More