Aggregator
2.64亿美元!Meta因数据泄露遭重罚
Fuzzing原理探究:boofuzz背后的生成算法
【开课啦】数字取证训练营:打造数据安全领域核心竞争力
德克萨斯理工大学数据泄露事件影响 140 万人
加拿大蒙特利尔康考迪亚大学 | MEGR-APT: 基于攻击表示学习的内存高效APT狩猎系统
加拿大蒙特利尔康考迪亚大学 | MEGR-APT: 基于攻击表示学习的内存高效APT狩猎系统
Финишная прямая: как любовь к пробежкам довела хакера до тюремной шконки
CVE-2022-2840 | Zephyr Project Manager up to 3.2.4 on Wordpress /wp-admin/admin-ajax.php project_id/task_id sql injection (ID 168652 / EDB-51024)
Careto – A legendary Threat Group Targets Windows By Deploy Microphone Recorder And Steal Files
Recent research has linked a series of cyberattacks to The Mask group, as one notable attack targeted a Latin American organization in 2022, where attackers compromised the organization’s MDaemon email server and exploited the WorldClient webmail component to maintain persistent access. While the initial compromise vector remains unknown, the successful exploitation of the MDaemon server […]
The post Careto – A legendary Threat Group Targets Windows By Deploy Microphone Recorder And Steal Files appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
RiseLoader Attack Windows By Employed A VMProtect To Drop Multiple Malware Families
RiseLoader, a new malware family discovered in October 2024, leverages a custom TCP-based binary protocol similar to RisePro for downloading and executing second-stage payloads. Despite RisePro’s development discontinuation in June 2024, RiseLoader’s emergence suggests a potential connection to the threat group behind RisePro and PrivateLoader. The malware often employs VMProtect for code obfuscation and has […]
The post RiseLoader Attack Windows By Employed A VMProtect To Drop Multiple Malware Families appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
1-Click RCE Attack In Kerio Control UTM Allow Attackers Gain Firewall Root Access Remotely
GFI Software’s Kerio Control, a popular UTM solution, was found to be vulnerable to multiple HTTP Response Splitting vulnerabilities, which affecting versions 9.2.5 through 9.4.5, could potentially allow attackers to inject malicious code into web pages, leading to cross-site scripting (XSS) attacks and other security compromises. The vulnerabilities, tracked as CVE-2024-52875 and KIS-2024-07, highlight the […]
The post 1-Click RCE Attack In Kerio Control UTM Allow Attackers Gain Firewall Root Access Remotely appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
BeyondTrust fixes critical vulnerability in remote access, support solutions (CVE-2024-12356)
BeyondTrust has fixed an unauthenticated command injection vulnerability (CVE-2024-12356) in its Privileged Remote Access (PRA) and Remote Support (RS) products that may allow remote code execution, and is urging organizations with on-premise installations to test the patch and implement it quickly. About CVE-2024-12356 BeyondTrust Privileged Remote Access is an enterprise solution that mediates secure remote access to enterprise environments for employees and trusted vendors. BeyondTrust Remote Support allows organizations’ IT helpdesk personnel to securely connect … More →
The post BeyondTrust fixes critical vulnerability in remote access, support solutions (CVE-2024-12356) appeared first on Help Net Security.