Aggregator
Hackers blackmail Globe Life after stealing customer data
1 year 5 months ago
Insurance giant Globe Life says an unknown threat actor attempted to extort money in exchange for not publishing data stolen from the company's systems earlier this year. [...]
Bill Toulas
CVE-2014-7756 | Radiohead Fan 4.6.2 X.509 Certificate cryptographic issues (VU#582497)
1 year 5 months ago
A vulnerability, which was classified as critical, has been found in Radiohead Fan 4.6.2. Affected by this issue is some unknown functionality of the component X.509 Certificate Handler. The manipulation leads to cryptographic issues.
This vulnerability is handled as CVE-2014-7756. The attack needs to be done within the local network. There is no exploit available.
vuldb.com
利用开源 EDRSilencer 工具以规避 EDR
1 year 5 months ago
安全客
Школьник может лишиться будущего из-за использования ИИ
1 year 5 months ago
Родители учащегося подают на учебное заведение в суд.
Sudanese Brothers Arrested in ‘AnonSudan’ Takedown
1 year 5 months ago
The U.S. government on Wednesday announced the arrest and charging of two Sudanese brothers accused of running Anonymous Sudan (a.k.a. AnonSudan), a cybercrime business known for launching powerful distributed denial-of-service (DDoS) attacks against a range of targets, including dozens of hospitals, news websites and cloud providers. One of the brothers is facing life in prison for allegedly seeking to kill people with his attacks.
BrianKrebs
CVE-2014-7755 | eTopUpOnline 3.4.9 X.509 Certificate cryptographic issues (VU#582497)
1 year 5 months ago
A vulnerability classified as critical was found in eTopUpOnline 3.4.9. Affected by this vulnerability is an unknown functionality of the component X.509 Certificate Handler. The manipulation leads to cryptographic issues.
This vulnerability is known as CVE-2014-7755. The attack can only be initiated within the local network. There is no exploit available.
vuldb.com
openHarmony逆向工具包
1 year 5 months ago
ABCDE是一个使用Kotlin编写的OpenHarmony逆向工具包,目前已经实现的功能为解析方舟字节码文件中 的类信息、方法信息、字面量数组信息以及对方法进行反汇编,解析资源索引文件等功能。...
黑海洋
Top 5 Cloud Security Automations for SecOps Teams
1 year 5 months ago
Learn about 5 powerful cloud security automations with Blink Ops to simplify security operations like S3 bucket monitoring, subdomain takeover detection and failed EC2 login detection. [...]
Sponsored by Blink Ops
CVE-2021-23017 | Oracle GoldenGate GG Market Place for Support off-by-one (EDB-50973)
1 year 5 months ago
A vulnerability, which was classified as very critical, has been found in Oracle GoldenGate. This issue affects some unknown processing of the component GG Market Place for Support. The manipulation leads to off-by-one.
The identification of this vulnerability is CVE-2021-23017. The attack may be initiated remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
Horns&Hooves: цифровой Остап Бендер обчищает компании по всей стране
1 year 5 months ago
«Лаборатория Касперского» обнаружила массовую рассылку с вредоносными файлами.
Is a CPO Still a CPO? The Evolving Role of Privacy Leadership
1 year 5 months ago
Has the role of chief privacy officer become something more than it was? And is it still a role that just one person can handle?
Arlo Gilbert
官方通报“境外企业以汽车智驾为由非法测绘”,多方连夜回应
1 year 5 months ago
Nederland bestelt in Tsjechië meer artilleriegranaten en pantserhouwitsers voor Oekraïne
1 year 5 months ago
Nederland bestelt samen met Denemarken nieuwe artilleriegranaten voor Oekraïne. Deze worden besteld bij de Tsjechische defensie-industrie. Dat valt te lezen in een gezamenlijke verklaring van Nederland, Tsjechië en Denemarken, die is vrijgegeven rondom de Europese Raad.
mbNET.mini工业路由器发现严重漏洞,可能导致全面系统接管
1 year 5 months ago
安全客
Researchers Uncover Cicada3301 Ransomware Operations and Its Affiliate Program
1 year 5 months ago
Cybersecurity researchers have gleaned additional insights into a nascent ransomware-as-a-service (RaaS) called Cicada3301 after successfully gaining access to the group's affiliate panel on the dark web.
Singapore-headquartered Group-IB said it contacted the threat actor behind the Cicada3301 persona on the RAMP cybercrime forum via the Tox messaging service after the latter put out an
The Hacker News
CVE-2008-0811 | AuraCMS 1.62 query sql injection (EDB-5130 / BID-27841)
1 year 5 months ago
A vulnerability was found in AuraCMS 1.62. It has been classified as critical. Affected is an unknown function. The manipulation of the argument query leads to sql injection.
This vulnerability is traded as CVE-2008-0811. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-0829 | Mambo 2.6.8 jooget.php id sql injection (EDB-5132 / BID-27836)
1 year 5 months ago
A vulnerability was found in Mambo 2.6.8. It has been classified as critical. Affected is an unknown function of the file jooget.php. The manipulation of the argument id leads to sql injection.
This vulnerability is traded as CVE-2008-0829. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-0835 | Simple CMS up to 1.0.3 indexen.php area sql injection (EDB-5131 / BID-27843)
1 year 5 months ago
A vulnerability has been found in Simple CMS up to 1.0.3 and classified as critical. Affected by this vulnerability is an unknown functionality of the file indexen.php. The manipulation of the argument area leads to sql injection.
This vulnerability is known as CVE-2008-0835. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-0841 | Com Ricette Component 1.0 on Joomla index.php id sql injection (EDB-5133 / BID-27834)
1 year 5 months ago
A vulnerability classified as critical has been found in Com Ricette Component 1.0 on Joomla. Affected is an unknown function of the file index.php. The manipulation of the argument id leads to sql injection.
This vulnerability is traded as CVE-2008-0841. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com