Aggregator
Quickly made vscode x86-64 assembly syntax highlighting
2 months 4 weeks ago
微信鸿蒙原生版首批测试名额秒空;OpenAI 推出新提示词工具;京东物流预计双十一接入淘宝 | 极客早知道
2 months 4 weeks ago
SpaceX称如果法院暂停星际飞船发射,每天损失高达400万美元;比亚迪副总裁李柯:竞争让中国车企强大,欧洲对手却在逃避;欧盟要求拼多多 Temu 提供有关打击非法产品销售所采取措施的信息
全球主要网络安全指数研究
2 months 4 weeks ago
Мир под прицелом: как частные компании следят за нами и защищают нас
2 months 4 weeks ago
Новая реальность кибершпионажа через обычные устройства.
Week in review: Microsoft fixes two exploited zero-days, SOC teams are losing trust in security tools
2 months 4 weeks ago
Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Microsoft patches two zero-days exploited in the wild (CVE-2024-43573, CVE-2024-43572) For October 2024 Patch Tuesday, Microsoft has released fixes for 117 security vulnerabilities, including two under active exploitation: CVE-2024-43573, a spoofing bug affecting the Windows MSHTML Platform, and CVE-2024-43572, a remote code execution flaw in the Microsoft Management Console (MMC). SOC teams are frustrated with their security tools Security operations … More →
The post Week in review: Microsoft fixes two exploited zero-days, SOC teams are losing trust in security tools appeared first on Help Net Security.
Help Net Security
Исландская лазейка: как либеральные законы о защите данных превратились в инструмент киберпреступников
2 months 4 weeks ago
Как скромное здание в центре Рейкьявика стало средоточием кибер-угроз.
Путешествие во времени: послушайте, как звучала Земля во время катастрофы 41 000 лет назад
2 months 4 weeks ago
как ослабление магнитного поля изменило жизнь на планете.
Вселенная полна сюрпризов: галактика, растущая «изнутри наружу»
2 months 4 weeks ago
Телескоп Джеймса Уэбба продолжает удивлять новыми открытиями.
通过FUZZ的艺术来获取万元赏金
2 months 4 weeks ago
0x01 前言 下午,一个老朋友发来一批资产让我找个有效漏洞,原因是厂商弄活动,提交有效漏洞可获取其奖品,那个奖品对朋友很有吸引力。0x02 漏洞背景 一个后台系统,称其为http
CVE-2024-9380 | Ivanti Cloud Services Appliance up to 5.0.1 command injection
2 months 4 weeks ago
A vulnerability was found in Ivanti Cloud Services Appliance up to 5.0.1. It has been classified as critical. This affects an unknown part. The manipulation leads to command injection.
This vulnerability is uniquely identified as CVE-2024-9380. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
Every bug/quirk of the Windows resource compiler (rc.exe), probably
2 months 4 weeks ago
CVE-2020-2803 | Oracle GraalVM Enterprise Edition 19.3.1/20.0.0 Java Remote Code Execution (Nessus ID 208620)
2 months 4 weeks ago
A vulnerability was found in Oracle GraalVM Enterprise Edition 19.3.1/20.0.0. It has been declared as critical. This vulnerability affects unknown code of the component Java. The manipulation leads to Remote Code Execution.
This vulnerability was named CVE-2020-2803. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2020-2781 | Oracle Java SE 7u251/8u241/11.0.6/14 JSSE denial of service (Nessus ID 208620)
2 months 4 weeks ago
A vulnerability, which was classified as critical, has been found in Oracle Java SE 7u251/8u241/11.0.6/14. This issue affects some unknown processing of the component JSSE. The manipulation leads to denial of service.
The identification of this vulnerability is CVE-2020-2781. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2020-2800 | Oracle Java SE 7u251/8u241/11.0.6/14 Lightweight HTTP Server (Nessus ID 208620)
2 months 4 weeks ago
A vulnerability was found in Oracle Java SE 7u251/8u241/11.0.6/14 and classified as critical. Affected by this issue is some unknown functionality of the component Lightweight HTTP Server. The manipulation leads to an unknown weakness.
This vulnerability is handled as CVE-2020-2800. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2020-2654 | Oracle Java SE 7u241/8u231/11.0.5/13.0.1 Libraries denial of service (Nessus ID 208620)
2 months 4 weeks ago
A vulnerability was found in Oracle Java SE 7u241/8u231/11.0.5/13.0.1 and classified as problematic. Affected by this issue is some unknown functionality of the component Libraries. The manipulation leads to denial of service.
This vulnerability is handled as CVE-2020-2654. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2020-2754 | Oracle Java SE 8u241/11.0.6/14 Scripting denial of service (Nessus ID 208620)
2 months 4 weeks ago
A vulnerability was found in Oracle Java SE 8u241/11.0.6/14. It has been rated as problematic. This issue affects some unknown processing of the component Scripting. The manipulation leads to denial of service.
The identification of this vulnerability is CVE-2020-2754. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2020-2755 | Oracle Java SE 8u241/11.0.6/14 Scripting denial of service (Nessus ID 208620)
2 months 4 weeks ago
A vulnerability classified as problematic has been found in Oracle Java SE 8u241/11.0.6/14. Affected is an unknown function of the component Scripting. The manipulation leads to denial of service.
This vulnerability is traded as CVE-2020-2755. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2020-2756 | Oracle Java SE 7u251/8u241/11.0.6/14 Serialization denial of service (Nessus ID 208620)
2 months 4 weeks ago
A vulnerability, which was classified as problematic, has been found in Oracle Java SE 7u251/8u241/11.0.6/14. Affected by this issue is some unknown functionality of the component Serialization. The manipulation leads to denial of service.
This vulnerability is handled as CVE-2020-2756. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2020-2757 | Oracle Java SE 7u251/8u241/11.0.6/14 Serialization denial of service (Nessus ID 208620)
2 months 4 weeks ago
A vulnerability, which was classified as problematic, was found in Oracle Java SE 7u251/8u241/11.0.6/14. This affects an unknown part of the component Serialization. The manipulation leads to denial of service.
This vulnerability is uniquely identified as CVE-2020-2757. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com