Aggregator
CVE-2024-27235 | Google Android plugin_extern_func information disclosure
CVE-2024-3250 | Canonical Pebble up to 1.10.1 Read-File API permission (GHSA-4685-2x5r-65pj)
Security Culture: The Best Tool Money Can’t Buy
Building positive relationships, sharing knowledge effectively, and making security "cool" are some of the most worthwhile security pursuits.
The post Security Culture: The Best Tool Money Can’t Buy appeared first on Security Boulevard.
【公益译文】对抗式机器学习攻击与缓解措施分类及术语(下)
【开放注册公告】吾爱破解论坛2024年11月11日光棍节开放注册公告
CVE-2016-9793 | Linux Kernel up to 4.8.13 net/core/sock.c sock_setsockopt sk_sndbuf/sk_rcvbuf memory corruption (FEDORA-2016-5cb5b4082d / EDB-41995)
Downgrade attacks open patched systems to malware
A new report by the former SafeBreach researcher Alon Leviev is raising alarms about the risks posed by downgrade attacks on Microsoft Windows. In a blog post, Leviev, who now works for Microsoft, explained that his latest bypass could allow a malicious actor to load unsigned kernel drivers on a fully patched Windows system. Those could then be used to disable security features, deploy and disguise malicious code and processes, and so on.
The post Downgrade attacks open patched systems to malware appeared first on Security Boulevard.