Aggregator
CISA 将 Apache OFBiz 严重漏洞添加至已知已利用漏洞目录
2 months 2 weeks ago
安全客
AitM 网络钓鱼工具包如何绕过多重安全防线及应对策略
2 months 2 weeks ago
安全客
SANS Institute 发布 2024 年关键基础设施战略指南
2 months 2 weeks ago
安全客
巴西广告欺诈网络“Camu”每日竞价请求数超过20亿次
2 months 2 weeks ago
安全客
Researcher sued for sharing data stolen by ransomware with media
2 months 2 weeks ago
The City of Columbus, Ohio, has filed a lawsuit against security researcher David Leroy Ross, aka Connor Goodwolf, accusing him of illegally downloading and disseminating data stolen from the City's IT network and leaked by the Rhysida ransomware gang. [...]
Bill Toulas
午夜暴雪通过被入侵的政府网站发送 iOS 和 Chrome 浏览器漏洞
2 months 2 weeks ago
安全客
Volt Typhoon 黑客利用 MSP、ISP 使用的 Versa Director 服务器中的零日漏洞
2 months 2 weeks ago
安全客
Emulating the Extortionist Mallox Ransomware
2 months 2 weeks ago
AttackIQ has released a new attack graph that emulates the behaviors exhibited by Mallox ransomware since the beginning of its activities in June 2021. Mallox primarily gains access to victim networks through dictionary brute-force attacks against unsecured MS-SQL servers.
The post Emulating the Extortionist Mallox Ransomware appeared first on AttackIQ.
The post Emulating the Extortionist Mallox Ransomware appeared first on Security Boulevard.
Francis Guibernau
记一次AccessKey值泄露的挖掘和分析
2 months 2 weeks ago
掌控安全学院
Maia 100: первый кастомный ИИ-ускоритель Microsoft, который перевернёт облачные вычисления
2 months 2 weeks ago
Архитектура нового чипа удивит даже самых опытных специалистов.
Digital twins: secure design and development
2 months 2 weeks ago
How existing NCSC guidance can assist those looking to develop and deploy ‘digital twins’.
CVE-2024-8348 | SourceCodester Computer Laboratory Management System 1.0 Master.php delete_category id sql injection
2 months 2 weeks ago
A vulnerability, which was classified as critical, has been found in SourceCodester Computer Laboratory Management System 1.0. Affected by this issue is the function delete_category of the file /classes/Master.php?f=delete_category. The manipulation of the argument id leads to sql injection.
This vulnerability is handled as CVE-2024-8348. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2024-8347 | SourceCodester Computer Laboratory Management System 1.0 Master.php delete_record id sql injection
2 months 2 weeks ago
A vulnerability classified as critical was found in SourceCodester Computer Laboratory Management System 1.0. Affected by this vulnerability is the function delete_record of the file /classes/Master.php?f=delete_record. The manipulation of the argument id leads to sql injection.
This vulnerability is known as CVE-2024-8347. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2024-8346 | SourceCodester Computer Laboratory Management System 1.0 SystemSettings.php update_settings_info name sql injection
2 months 2 weeks ago
A vulnerability classified as critical has been found in SourceCodester Computer Laboratory Management System 1.0. Affected is the function update_settings_info of the file /classes/SystemSettings.php?f=update_settings. The manipulation of the argument name leads to sql injection.
This vulnerability is traded as CVE-2024-8346. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
Заложники онлайн-обмана: кто на самом деле пишет вам в дейтинг-приложениях
2 months 2 weeks ago
Раскрываем шокирующую реальность трудовых лагерей.
Submit #400378: sourcecodester Computer Laboratory Management System 1.0 SQL Injection [Accepted]
2 months 2 weeks ago
Submit #400378 / VDB-276230
nn0nkey
Submit #400373: SourceCodester Computer Laboratory Management System 1.0 SQL Injection [Accepted]
2 months 2 weeks ago
Submit #400373 / VDB-276229
gaorenyusi
Submit #400343: SourceCodester Computer Laboratory Management System 1.0 SQL Injection [Accepted]
2 months 2 weeks ago
Submit #400343 / VDB-276228
gaorenyusi
AnandTech 宣布停止更新
2 months 2 weeks ago
知名科技新闻网站 AnandTech 宣布于 2024 年 8 月 30 日停止更新,现有网站内容可以继续正常访问,论坛也将正常运行。AnandTech 由时年 14 岁的 Anand Lal Shimpi 创办于 1997 年,他担任 CEO 兼主编一直到 2014 年 8 月 30 日,之后资深编辑 Ryan Smith 接替他担任主编。AnandTech 于 2014 年 12 月 17 日被 Purch 收购,Purch 于 2018 年被 Future 收购。过去 27 年,AnandTech 以深入的硬件评论和技术分析著称,主编以科技新闻市场已经改变作为停止更新的主要理由。他说,对高质量且深入的新闻的需求仍然存在,但社交媒体的崛起让哗众取宠的新闻报道变得更有利可图。