Aggregator
CVE-2014-7772 | MB Tickets 3.0.1 X.509 Certificate cryptographic issues (VU#582497)
1 year 5 months ago
A vulnerability classified as critical has been found in MB Tickets 3.0.1. Affected is an unknown function of the component X.509 Certificate Handler. The manipulation leads to cryptographic issues.
This vulnerability is traded as CVE-2014-7772. Access to the local network is required for this attack. There is no exploit available.
vuldb.com
国安部披“智能驾驶非法测绘”,移动版“监控系统”敲响安全警钟!
1 year 5 months ago
安全客
Akira 和 Fog 勒索软件正利用关键的 Veeam RCE 漏洞
1 year 5 months ago
胡金鱼
CVE-2016-6978 | Adobe Acrobat Reader up to 11.0.17/15.006.30201/15.017.20053 memory corruption (APSB16-33 / Nessus ID 94074)
1 year 5 months ago
A vulnerability, which was classified as critical, was found in Adobe Acrobat Reader up to 11.0.17/15.006.30201/15.017.20053. Affected is an unknown function. The manipulation leads to memory corruption.
This vulnerability is traded as CVE-2016-6978. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
Beware: Fake Google Meet Pages Deliver Infostealers in Ongoing ClickFix Campaign
1 year 5 months ago
Threat actors are leveraging fake Google Meet web pages as part of an ongoing malware campaign dubbed ClickFix to deliver infostealers targeting Windows and macOS systems.
"This tactic involves displaying fake error messages in web browsers to deceive users into copying and executing a given malicious PowerShell code, finally infecting their systems," French cybersecurity company Sekoia said in
The Hacker News
ClickFix攻击活动升级:可通过虚假谷歌会议画面传播恶意软件
1 year 5 months ago
主站 分类 漏洞 工具 极客
CVE-2014-7771 | World Tamil Bayan 0.1 X.509 Certificate cryptographic issues (VU#582497)
1 year 5 months ago
A vulnerability was found in World Tamil Bayan 0.1. It has been rated as critical. This issue affects some unknown processing of the component X.509 Certificate Handler. The manipulation leads to cryptographic issues.
The identification of this vulnerability is CVE-2014-7771. The attack needs to be initiated within the local network. There is no exploit available.
vuldb.com
黑客团伙Anonymous Sudan被FBI重创,组织者被判终身监禁
1 year 5 months ago
美国联邦检察官已指控Anonymous Sudan(Storm-1359) 的两名运营者,其中一人将很有可能被判终身监禁。
Лицо как дисконтная карта: Kroger меняет подход к формированию цен
1 year 5 months ago
Фраза «торговать лицом» приобрела новый смысл.
CVE-2008-6147 | Aspapp ForumApp 3.3 access control (EDB-7599 / SA33344)
1 year 5 months ago
A vulnerability classified as problematic was found in Aspapp ForumApp 3.3. This vulnerability affects unknown code. The manipulation leads to improper access controls.
This vulnerability was named CVE-2008-6147. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
新疗法能消除 2 型糖尿病患者对胰岛素的需求
1 year 5 months ago
一种结合 ReCET (Re-Cellularization via Electroporation Therapy) 和塞马格鲁肽(semaglutide)的新疗法能消除 2 型糖尿病患者对胰岛素的需求,参与研究的 86% 的患者不再需要注射胰岛素。全世界有 4.22 亿人受到 2 型糖尿病影响。最新的人体临床试验共有 14 人参加,年龄 28- 75 岁之间,体重指数在 24-40 kg/m² 之间。参与者首先在深度镇静下接受 ReCET 手术,该疗法旨在提高人体对自身胰岛素的敏感性。术后参与者坚持两周的等热量流质饮食,之后逐渐将塞马格鲁肽过度到 1mg/周。6 个月和 12 个月的随访中,86% 的参与者(14 人中的 12 人)不再需要胰岛素治疗,并成功保持了 24 个月。
CVE-2024-48911 | thinkst opencanary up to 0.9.3 authorization (GHSA-pf5v-pqfv-x8jj)
1 year 5 months ago
A vulnerability, which was classified as problematic, was found in thinkst opencanary up to 0.9.3. Affected is an unknown function. The manipulation leads to incorrect authorization.
This vulnerability is traded as CVE-2024-48911. An attack has to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-9364 | SendGrid Plugin up to 1.4 on WordPress Log authorization
1 year 5 months ago
A vulnerability has been found in SendGrid Plugin up to 1.4 on WordPress and classified as problematic. Affected by this vulnerability is an unknown functionality of the component Log Handler. The manipulation leads to missing authorization.
This vulnerability is known as CVE-2024-9364. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2023-37569 | ESDS Emagic Data Center Management Suit Ping os command injection (CIVN-2023-0226 / EDB-51673)
1 year 5 months ago
A vulnerability was found in ESDS Emagic Data Center Management Suit. It has been rated as critical. This issue affects some unknown processing of the component Ping. The manipulation leads to os command injection.
The identification of this vulnerability is CVE-2023-37569. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
US Arrest Man for SEC X Account Hack
1 year 5 months ago
US authorities have charged a man for involvement in the SEC X account hack in January 2024, which falsely announced the approval of Bitcoin Exchange Traded Funds
Arrested: USDoD, Anonymous Sudan, SEC X account hacker
1 year 5 months ago
Law enforcement agencies have arrested suspects involved in cyber attacks claimed by USDoD and Anonymous Sudan, as well as a person involved in the hacking of SEC’s X (Twitter) account. USDoD On Wednesday, the Brazilian federal police (Policia Federal) arrested a man in Belo Horizonte, suspected of being the person behind the “USDoD” moniker (previously “EquationCorp” and “NetSec”). USDoD has claimed the breaches into Policia Federal, Airbus, the US Environmental Protection Agency (EPA), and FBI’s … More →
The post Arrested: USDoD, Anonymous Sudan, SEC X account hacker appeared first on Help Net Security.
Zeljka Zorz
Великая китайская хитрость: как Huawei переиграла американские санкции
1 year 5 months ago
Поднебесная находит новые лазейки в технологической блокаде.
AI威胁监测护航新质生产力发展 | FCIS 2024议题前瞻
1 year 5 months ago
以新质生产力为中心,从威胁监测视角探索AI如何高效提升检测与响应能力。
Live Webinar | Overcoming SASE Adoption Journey Challenges for USA Inc.
1 year 5 months ago