Aggregator
US and Israel Warn of Iranian Threat Actor’s New Tradecraft
2 weeks 3 days ago
US and Israeli government agencies have warned that the Iranian state-sponsored threat actor Cotton Sandstorm is deploying new tradecraft to expand its operations
二维码在教育领域发挥着重要作用,提高了教育质量
2 weeks 3 days ago
安全客
Космос на жестком диске: JAXA создаёт цифрового близнеца МКС
2 weeks 3 days ago
Space Digital Twin открывает новые вехи в исследовании космоса, не посещая космос.
Lazarus Group 通过虚假 NFT 游戏利用 Chrome 0 Day 获取加密货币
2 weeks 3 days ago
安全客
CVE-2008-6923 | Com Content 1.0.0 on Joomla index.php Itemid sql injection (EDB-6025 / XFDB-52455)
2 weeks 3 days ago
A vulnerability classified as critical has been found in Com Content 1.0.0 on Joomla. Affected is an unknown function of the file index.php. The manipulation of the argument Itemid leads to sql injection.
This vulnerability is traded as CVE-2008-6923. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-6911 | BrewBlogger 2.1.0.1 authentication.inc.php authenticateUser loginUsername sql injection (EDB-6023 / XFDB-43649)
2 weeks 3 days ago
A vulnerability was found in BrewBlogger 2.1.0.1. It has been classified as critical. This affects the function authenticateUser of the file includes/authentication.inc.php. The manipulation of the argument loginUsername leads to sql injection.
This vulnerability is uniquely identified as CVE-2008-6911. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-3123 | Mole Group Real Estate Script up to 1.1 index.php listing_id sql injection (EDB-6022 / XFDB-43639)
2 weeks 3 days ago
A vulnerability was found in Mole Group Real Estate Script up to 1.1. It has been classified as critical. Affected is an unknown function of the file index.php. The manipulation of the argument listing_id leads to sql injection.
This vulnerability is traded as CVE-2008-3123. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-3124 | Mole Group Hotel Script 1.0 index.php file sql injection (EDB-6021 / XFDB-43640)
2 weeks 3 days ago
A vulnerability was found in Mole Group Hotel Script 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file index.php. The manipulation of the argument file leads to sql injection.
This vulnerability is known as CVE-2008-3124. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-3167 | BoonEx Dolphin 6.1.2 htmlsax3.php sIncPath code injection (EDB-6024 / Nessus ID 33446)
2 weeks 3 days ago
A vulnerability was found in BoonEx Dolphin 6.1.2. It has been rated as critical. This issue affects some unknown processing of the file htmlsax3.php. The manipulation of the argument sIncPath leads to code injection.
The identification of this vulnerability is CVE-2008-3167. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-3125 | Mole Group Lastminute Script 4.0 index.php cid sql injection (EDB-6020 / XFDB-43641)
2 weeks 3 days ago
A vulnerability was found in Mole Group Lastminute Script 4.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file index.php. The manipulation of the argument cid leads to sql injection.
This vulnerability is handled as CVE-2008-3125. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-3150 | Neutrino-cms Atomic Edition 0.8.4 Access Restriction index.php path traversal (EDB-6018 / XFDB-43616)
2 weeks 3 days ago
A vulnerability classified as critical was found in Neutrino-cms Atomic Edition 0.8.4. This vulnerability affects unknown code of the file index.php of the component Access Restriction. The manipulation leads to path traversal.
This vulnerability was named CVE-2008-3150. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
区块链安全吗?是的,原因如下
2 weeks 3 days ago
安全客
CVE-2024-10232 | AtomChat Plugin up to 1.1.5 on WordPress Shortcode cross site scripting
2 weeks 3 days ago
A vulnerability was found in AtomChat Plugin up to 1.1.5 on WordPress. It has been rated as problematic. Affected by this issue is some unknown functionality of the component Shortcode Handler. The manipulation leads to cross site scripting.
This vulnerability is handled as CVE-2024-10232. The attack may be launched remotely. There is no exploit available.
vuldb.com
随着减肥药的流行减肥手术减少了四分之一
2 weeks 3 days ago
发表在 JAMA Network Open 期刊上的一项研究发现,从 2022 年到 2023 年美国 Ozempic 和 Wegovy 之类减肥药的使用人数增加了愈一倍以上,同一时期接受代谢减肥手术的患者人数减少了 25.6%。GLP-1 RA(glucagon-like peptide-1 receptor agonists)作为新型减肥药正日益流行,研究人员发现 2022 年下半年到 2023 年下半年,GLP-1 RA 的使用率增加了 132.6%,从每千名患者 1.89 人增加到 4.41 人。与此同时减肥代谢手术的使用率下降了 25.6%,从每千名患者 0.22 人减少到 0.16 人。
Ватикан – центр шпионажа: раскрыта крупнейшая хакерская сеть Европы
2 weeks 3 days ago
Частная компания из Милана взломала тайны четырех государств.
Midnight Blizzard 升级了对 100 多个组织的鱼叉式网络钓鱼攻击
2 weeks 3 days ago
安全客
Massive Git Config Breach Exposes 15,000 Credentials; 10,000 Private Repos Cloned
2 weeks 3 days ago
Cybersecurity researchers have flagged a "massive" campaign that targets exposed Git configurations to siphon credentials, clone private repositories, and even extract cloud credentials from the source code.
The activity, codenamed EMERALDWHALE, is estimated to have collected over 10,000 private repositories and stored in an Amazon S3 storage bucket belonging to a prior victim. The bucket,
The Hacker News
热门摄像头曝零日漏洞,黑客借此入侵政府部门
2 weeks 3 days ago
主站 分类 漏洞 工具 极客
5 SaaS Misconfigurations Leading to Major Fu*%@ Ups
2 weeks 3 days ago
With so many SaaS applications, a range of configuration options, API capabilities, endless integrations, and app-to-app connections, the SaaS risk possibilities are endless. Critical organizational assets and data are at risk from malicious actors, data breaches, and insider threats, which pose many challenges for security teams.
Misconfigurations are silent killers, leading to major
The Hacker News