Aggregator
CVE-2019-17022 | Mozilla Firefox/Firefox ESR Rich Text Editor cross site scripting (MFSA 2020-01 / Nessus ID 291751)
CVE-2025-14533 | Advanced Custom Fields: Extended Plugin up to 0.9.2.1 on WordPress insert_user privileges management
CVE-2025-41084 | Sesame SVG Image Upload /api/v3/companies//logo cross site scripting
Sophos expands security stack to govern apps, data, and AI in hybrid work
Sophos has announced Sophos Workspace Protection, expanding its portfolio to help organizations secure hybrid work and govern the use of emerging technologies, including AI. Built around the Sophos Protected Browser, powered by Island, the solution enables organizations to protect applications, data, users, and guests wherever work takes place, while providing a unified approach to securing the modern workspace. Rethinking security for hybrid work Traditional approaches to securing hybrid work, including deploying multiple cloud-delivered SASE and … More →
The post Sophos expands security stack to govern apps, data, and AI in hybrid work appeared first on Help Net Security.
Cloudflare Fixes ACME Validation Bug Allowing WAF Bypass to Origin Servers
CVE-2019-17017 | Mozilla Firefox/Firefox ESR type confusion (MFSA 2020-01 / Nessus ID 291751)
CVE-2019-17024 | Mozilla Firefox/Firefox ESR buffer overflow (MFSA 2020-01 / Nessus ID 291751)
CVE-2019-17016 | Mozilla Firefox/Firefox ESR Clipboard cross site scripting (MFSA 2020-01 / Nessus ID 291751)
CVE-2021-28153 | GNOME GLib up to 2.66.7 g_file_replace symlink (Nessus ID 291754)
CVE-2021-3800 | glib up to 2.63.5 pkexec information disclosure (DLA 3110-1 / Nessus ID 291754)
Шутки кончились, впереди — Луна: ракета-мем SLS заняла старт, чтобы спасти будущее миссии Artemis
【安全圈】密码管理器 Keepass 不兼容 1 月 Win11 更新,导致自动填充失效
【安全圈】Linux 用户注意:Snap Store 爆发新型攻击,过期域名成黑客后门
【安全圈】网络工程师李某以技术手段窃取赌博网站184万余名中国公民个人信息,警方已扣押其180余个比特币
Predator bots are exploiting APIs at scale. Here’s how defenders must respond.
The rise of malicious bots is changing how the internet operates, underscoring the need for stronger safeguards that keep humans firmly in control. Bots now account for more than half of global web traffic, and a new class of “predator bots” has emerged, unleashing self-learning programs that adapt in real time, mimic human behavior, and […]
The post Predator bots are exploiting APIs at scale. Here’s how defenders must respond. appeared first on CyberScoop.