Aggregator
BSidesLV24 – GroundFloor – Detection Engineering Demystified: Building Custom Detections For GitHub Enterprise
Author/Presenter: David French
Our sincere appreciation to BSidesLV, and the Presenters/Authors for publishing their erudite Security BSidesLV24 content. Originating from the conference’s events located at the Tuscany Suites & Casino; and via the organizations YouTube channel.
The post BSidesLV24 – GroundFloor – Detection Engineering Demystified: Building Custom Detections For GitHub Enterprise appeared first on Security Boulevard.
Scripting Outside the Box: API Client Security Risks (1/2)
Discover hidden risks in API testing tools like Postman and Insomnia. We dive into scripting vulnerabilities and explore JavaScript sandbox security pitfalls.
The post Scripting Outside the Box: API Client Security Risks (1/2) appeared first on Security Boulevard.
Malicious PyPI Package Posing as Solana Tool Stole Source Code in 761 Downloads
Microsoft will update Office apps on Windows 10 until 2028
State and local election officials plead with Congress for election security funding
150 active and retired officials from across the country asked Senate and House appropriations leaders to set aside $400 million for the next fiscal year.
The post State and local election officials plead with Congress for election security funding appeared first on CyberScoop.
CVE-2024-9341 | Red Hat Enterprise Linux/OpenShift Container Platform FIPS Mode link following (EUVD-2024-3079 / Nessus ID 208418)
CVE-2025-4648 | Centreon Web up to 22.10.28/23.04.26/23.10.21/24.04.10/24.10.4 cross site scripting (EUVD-2025-14378)
CVE-2025-4647 | Centreon Web up to 22.10.28/23.04.26/23.10.21/24.04.10/24.10.4 cross site scripting (EUVD-2025-14379)
CVE-2025-35471 | conda-forge miniforge/openssl-feedstock openssl.cnf OPENSSLDIR uncontrolled search path (ID 201 / EUVD-2025-14377)
CVE-2025-4646 | Centreon Web up to 24.04.9/24.10.3 API Token Creation Form Module privileges management (EUVD-2025-14376)
Apple Device Users Can File Claims in $95 Million Siri Spying Settlement
Apple earlier this year agreed to a $95 settlement to end a lawsuit filed in 2021 that claimed the company's AI-powered assistant Siri recorded users' conversations even when it wasn't prompted to do so. Now anyone who feels their privacy was violated by Siri have until July 2 to file a claim for a piece of the settlement.
The post Apple Device Users Can File Claims in $95 Million Siri Spying Settlement appeared first on Security Boulevard.