Aggregator
Rails 8: создание веб-приложений быстрее и проще, чем когда-либо
8 months 1 week ago
Kamal 2, Propshaft и прокачанные адаптеры: что еще предлагает новая версия фреймворка?
Updates to the Lego Pi Radio Project
8 months 1 week ago
October 8, 2024Back in 2018 we first posted about JJ's Lego Pi Radio, which was an all-in-one
Cyberattack Group 'Awaken Likho' Targets Russian Government with Advanced Tools
8 months 1 week ago
Russian government agencies and industrial entities are the target of an ongoing activity cluster dubbed Awaken Likho.
"The attackers now prefer using the agent for the legitimate MeshCentral platform instead of the UltraVNC module, which they had previously used to gain remote access to systems," Kaspersky said, detailing a new campaign that began in June 2024 and continued at least until
The Hacker News
Hackers Gained Unauthorized Network Access to Casio Networks
8 months 1 week ago
Casio Computer Co., Ltd. has confirmed that a third party illegally accessed its network on October 5th, leading to significant disruptions in its services. The company disclosed the breach after conducting an internal investigation. The investigation revealed that the unauthorized access resulted in a system failure, affecting the availability of some services. Investigation Underway In […]
The post Hackers Gained Unauthorized Network Access to Casio Networks appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Divya
New Case Study: The Evil Twin Checkout Page
8 months 1 week ago
Is your store at risk? Discover how an innovative web security solution saved one global online retailer and its unsuspecting customers from an “evil twin” disaster. Read the full real-life case study here.
The Invisible Threat in Online Shopping
When is a checkout page, not a checkout page? When it's an “evil twin”! Malicious redirects can send unsuspecting shoppers to these perfect-looking
The Hacker News
GoldenJackal Target Embassies and Air-Gapped Systems Using Malware Toolsets
8 months 1 week ago
A little-known threat actor tracked as GoldenJackal has been linked to a series of cyber attacks targeting embassies and governmental organizations with an aim to infiltrate air-gapped systems using two disparate bespoke toolsets.
Victims included a South Asian embassy in Belarus and a European Union (E.U.) government organization, Slovak cybersecurity company ESET said.
"The ultimate goal of
The Hacker News
WPS Office从路径穿越到远程代码执行漏洞(CVE-2024-7262)分析与复现
8 months 1 week ago
WPS Office程序promecefpluginhost.exe存在不当路径验证问题,允许攻击者在Windows上加载任意Windows库文件。
Foxconn построит в Мексике крупнейший завод по производству суперчипов
8 months 1 week ago
Как сотрудничество с Nvidia повлияет на глобальное развитие искусственного интеллекта?
CVE-2021-31344 | Siemens APOGEE MBC ICMP Echo Packet type confusion (ssa-044112)
8 months 1 week ago
A vulnerability was found in Siemens APOGEE MBC, APOGEE MEC, APOGEE PXC Compact, APOGEE PXC Modular, Capital VSTAR, Nucleus NET, Nucleus ReadyStart, Nucleus Source Code, TALON TC Compact and TALON TC Modular. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the component ICMP Echo Packet Handler. The manipulation leads to type confusion.
This vulnerability is known as CVE-2021-31344. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2021-31345 | Siemens APOGEE MBC UDP Protocol buffer overflow (ssa-044112)
8 months 1 week ago
A vulnerability was found in Siemens APOGEE MBC, APOGEE MEC, APOGEE PXC Compact, APOGEE PXC Modular, Capital VSTAR, Nucleus NET, Nucleus ReadyStart, Nucleus Source Code, TALON TC Compact and TALON TC Modular. It has been rated as critical. Affected by this issue is some unknown functionality of the component UDP Protocol Handler. The manipulation leads to buffer overflow.
This vulnerability is handled as CVE-2021-31345. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2021-31346 | Siemens APOGEE MBC ICMP Packet buffer overflow (ssa-044112)
8 months 1 week ago
A vulnerability classified as critical has been found in Siemens APOGEE MBC, APOGEE MEC, APOGEE PXC Compact, APOGEE PXC Modular, Capital VSTAR, Nucleus NET, Nucleus ReadyStart, Nucleus Source Code, TALON TC Compact and TALON TC Modular. This affects an unknown part of the component ICMP Packet Handler. The manipulation leads to buffer overflow.
This vulnerability is uniquely identified as CVE-2021-31346. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2021-31881 | Siemens APOGEE MBC DHCP OFFER Message out-of-bounds (ssa-044112)
8 months 1 week ago
A vulnerability classified as problematic was found in Siemens APOGEE MBC, APOGEE MEC, APOGEE PXC Compact, APOGEE PXC Modular, Capital VSTAR, Nucleus NET, Nucleus ReadyStart, Nucleus Source Code, TALON TC Compact and TALON TC Modular. This vulnerability affects unknown code of the component DHCP OFFER Message Handler. The manipulation leads to out-of-bounds read.
This vulnerability was named CVE-2021-31881. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2021-31882 | Siemens APOGEE MBC DHCP ACK Packet memory corruption (ssa-044112)
8 months 1 week ago
A vulnerability, which was classified as critical, has been found in Siemens APOGEE MBC, APOGEE MEC, APOGEE PXC Compact, APOGEE PXC Modular, Capital VSTAR, Nucleus NET, Nucleus ReadyStart, Nucleus Source Code, TALON TC Compact and TALON TC Modular. This issue affects some unknown processing of the component DHCP ACK Packet Handler. The manipulation leads to memory corruption.
The identification of this vulnerability is CVE-2021-31882. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2021-31883 | Siemens APOGEE MBC DHCP ACK Message memory corruption (ssa-044112)
8 months 1 week ago
A vulnerability, which was classified as critical, was found in Siemens APOGEE MBC, APOGEE MEC, APOGEE PXC Compact, APOGEE PXC Modular, Capital VSTAR, Nucleus NET, Nucleus ReadyStart, Nucleus Source Code, TALON TC Compact and TALON TC Modular. Affected is an unknown function of the component DHCP ACK Message Handler. The manipulation leads to memory corruption.
This vulnerability is traded as CVE-2021-31883. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2021-31889 | Siemens APOGEE MBC TCP SACK Packet integer underflow (ssa-044112)
8 months 1 week ago
A vulnerability was found in Siemens APOGEE MBC, APOGEE MEC, APOGEE PXC Compact, APOGEE PXC Modular, Capital VSTAR, Nucleus NET, Nucleus ReadyStart, Nucleus Source Code, TALON TC Compact and TALON TC Modular. It has been classified as critical. This affects an unknown part of the component TCP SACK Packet Handler. The manipulation leads to integer underflow.
This vulnerability is uniquely identified as CVE-2021-31889. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2021-31890 | Siemens APOGEE MBC TCP buffer overflow (ssa-044112)
8 months 1 week ago
A vulnerability was found in Siemens APOGEE MBC, APOGEE MEC, APOGEE PXC Compact, APOGEE PXC Modular, Capital VSTAR, Nucleus NET, Nucleus ReadyStart, Nucleus Source Code, TALON TC Compact and TALON TC Modular. It has been declared as critical. This vulnerability affects unknown code of the component TCP Handler. The manipulation leads to buffer overflow.
This vulnerability was named CVE-2021-31890. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-24309 | Siemens Mendix prior 7.23.29/8.18.16 XPath access control (ssa-148641)
8 months 1 week ago
A vulnerability, which was classified as problematic, has been found in Siemens Mendix. Affected by this issue is some unknown functionality of the component XPath Handler. The manipulation leads to improper access controls.
This vulnerability is handled as CVE-2022-24309. The attack needs to be approached within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2023-26317 | Xiaomi Router External Interface command injection
8 months 1 week ago
A vulnerability classified as critical was found in Xiaomi Router. Affected by this vulnerability is an unknown functionality of the component External Interface. The manipulation leads to command injection.
This vulnerability is known as CVE-2023-26317. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2023-26319 | Xiaomi Router command injection
8 months 1 week ago
A vulnerability, which was classified as critical, was found in Xiaomi Router. This affects an unknown part. The manipulation leads to command injection.
This vulnerability is uniquely identified as CVE-2023-26319. The attack needs to be approached locally. There is no exploit available.
vuldb.com