Aggregator
安全通告 - 涉及华为某打印机产品的对输入的错误解析类漏洞
1 year 6 months ago
安全通告 - 涉及华为HiLink AI Life产品的身份认证绕过漏洞
1 year 6 months ago
安全通告 - 涉及华为某打印机产品的系统命令注入漏洞
1 year 6 months ago
ATT&CK v13 Enters the Room
1 year 6 months ago
Amy L. Robertson
Critical Flaw in Sophos Web Appliance
1 year 6 months ago
Summary
Sophos has released an update to mitigate three vulnerabilities in the Sophos Web Appliance (SWA). The most important of these three flaws is rated as critical and if exploited could lead to the execution of arbitrary code.
Threat Type
Vulnerability
Overview
**Update 04/25/2023**
According to multiple sources, now that the patch for this vulnerability has been reverse engineered, functional Proof of Concept (POC) exploit code has been released. The POC code is available now to the public on Github
Our Journey with FlexBase Emissions
1 year 6 months ago
Katie Robinson
Akamai Prolexic Now Comes With a Network Cloud Firewall
1 year 6 months ago
Sven Dummer
监管政策一图概览:“深度伪造”技术的样态、场景和风险
1 year 6 months ago
深度伪造技术在近几年迅速兴起,这种技术可以利用人工智能和大数据生成虚假图片、视频、文本等,其逼真程度往往让人难辨真伪,给政治安全、经济安全、社会安全、国民安全等国家安全领域带来了诸多风险。
New Vulnerability: PaperCut MF/NG
1 year 6 months ago
On Friday, April 21, 2023, CISA added CVE-2023-27350 (a critical unauthenticated remote code execution vulnerability) impacting PaperCut MF and PaperCut NG to the Known Exploited Vulnerabilities (KEV) list. PaperCut MF and PaperCut NG are both enterprise printer management software.
Active Exploitation Attempts (CVE-2023-1389) Against TP-Link Archer Gigabit Internet Routers
1 year 6 months ago
GreyNoise, in conjunction with TrinityCyber, has observed active exploitation attempts using weaknesses found in CVE-2023-1389 against TP-Link Archer gigabit routers. This post provides information about a new GreyNoise tag for this activity as well as details on the exploit attempt and how organizations can keep themselves safe from harm.
密码保护:OSDA-LAB-Challenge10 笔记
1 year 6 months ago
无法提供摘要。这是一篇受保护的文章。
glzjin
修改itunes备份苹果手机默认路径
1 year 6 months ago
最近手机空间越来越小,备份以后删除一些不必要的文件就显得很重要了。 但是默认情况下itunes备份ios数据是 […]
梧桐雨
Akamai Brand Protector Solves the Growing Problem of Impersonation Attacks
1 year 6 months ago
Danielle Walter
同程黑盒漏洞扫描系统 - 飞刃(nextscan)正式发布
1 year 6 months ago
Change in ENV Crawler Tags as Bots Continue to Target Environment Files
1 year 6 months ago
GreyNoise is changing how we classify environment file crawlers from unknown intent to malicious intent. This change will result in the reclassification of over 11,000 IPs as malicious. Users who use GreyNoise’s malicious tag to block IPs based on malicious intent will see an increase in blocked IPs.
密码保护:OSDA-LAB-Challenge9 笔记
1 year 6 months ago
无法提供摘要。这是一篇受保护的文章。
glzjin
CTF | 2022 西湖论剑·中国杭州网络安全技能大赛 WriteUp
1 year 6 months ago
农历兔年到来的第一场CTF比赛,和校队的小师傅佛系看了看题目,学习学习练练手写写writeup记录下好了。
MiaoTony
Weblogic T3 (IIOP)协议漏洞分析(三)
1 year 6 months ago
内网渗透之横向移动基础总结(一)
1 year 6 months ago
这篇文章介绍内网渗透种的横向移动。
uf9n1x