Aggregator
Huge Leak of Customer Data Includes Military Personnel Info
EnamelPins, which manufactures and sells medals, pins, and other emblematic accessories, for months left open an Elasticsearch instance that exposed 300,000 customer emails, including 2,500 from military and government personnel. The company, based in California, also has links to China, Cybernews researchers wrote.
The post Huge Leak of Customer Data Includes Military Personnel Info appeared first on Security Boulevard.
ESET 研究人员公布了 Gelsemium 高级持续性威胁(APT)组织的 Linux 对应程序 WolfsBane
CVE-2022-24716 | Icinga Web up to 2.9.5 Configuration File path traversal (GHSA-5p3f-rh28-8frw / EDB-51329)
Closing the Cybersecurity Career Diversity Gap
Threat Actors Exploit Google Docs And Weebly Services For Malware Attacks
Phishing attackers used Google Docs to deliver malicious links, bypassing security measures and redirecting victims to fake login pages hosted on Weebly, targeting telecommunications and financial sectors in late October 2024. Financially motivated threat actors exploit Weebly’s ease of use and reputation to host phishing pages, bypassing security measures and leveraging the platform’s legitimacy to […]
The post Threat Actors Exploit Google Docs And Weebly Services For Malware Attacks appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
CVE-2024-11678 | CodeAstro Hospital Management System 1.0 his_doc_register_patient.php cross site scripting
CVE-2024-11677 | CodeAstro Hospital Management System 1.0 Add Vendor Details Page his_admin_add_vendor.php v_name/v_adr/v_number/v_email/v_phone/v_desc cross site scripting
CVE-2024-11676 | CodeAstro Hospital Management System 1.0 Add Laboratory Equipment Page his_admin_add_lab_equipment.php cross site scripting
CVE-2024-11675 | CodeAstro Hospital Management System 1.0 Add Patient Details Page his_admin_register_patient.php cross site scripting
云存储桶的一种高危挖法
Python NodeStealer: Targeting Facebook Business Accounts to Harvest Login Credentials
The Python-based NodeStealer, a sophisticated info-stealer, has evolved to target new information and employ advanced techniques, whereas recent variants focus on stealing Facebook Ads Manager budget details, potentially enabling malicious ad campaigns. Now they pilfer credit card information alongside browser credentials, and to bypass security measures, the malware utilizes Windows Restart Manager to unlock browser […]
The post Python NodeStealer: Targeting Facebook Business Accounts to Harvest Login Credentials appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.