Aggregator
Executives Warned About Celebrity Podcast Scams
Hackers Exploit Apache ActiveMQ Flaw to Breach Cloud Linux Servers
Cybersecurity researchers have uncovered a sophisticated attack campaign where hackers exploiting a critical Apache ActiveMQ vulnerability are taking the unusual step of patching the security flaw after gaining access to victim systems. The Red Canary Threat Intelligence team observed this counterintuitive behavior across dozens of compromised cloud-based Linux servers, revealing a strategic approach to maintaining […]
The post Hackers Exploit Apache ActiveMQ Flaw to Breach Cloud Linux Servers appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
CVE-2022-31624 | MariaDB up to 10.6 server_audit.c log_statement_ex denial of service (MDEV-26556 / Nessus ID 252504)
CVE-2020-14641 | Oracle MySQL Server up to 8.0.20 Roles information disclosure (Nessus ID 252506)
CVE-2022-40151 | Oracle WebCenter Portal 12.2.1.4.0 Security Framework denial of service (Nessus ID 252507)
CVE-2022-40151 | XStream XML Data stack-based overflow (Issue 304 / Nessus ID 252507)
CVE-2022-40151 | Oracle Communications Cloud Native Core Binding Support Function Install/Upgrade denial of service (Nessus ID 252507)
CVE-2020-10755 | openstack-cinder up to 14.0.x/15.1.x/16.0.x API Endpoint Credentials insufficiently protected credentials (Nessus ID 252512)
CVE-2020-14576 | Oracle MySQL Server up to 5.7.30/8.0.20 UDF denial of service (Nessus ID 252514)
CVE-2020-14631 | Oracle MySQL Server up to 8.0.20 Audit denial of service (Nessus ID 252513)
Ваш холодильник прямо сейчас расстреливает Пентагон терабайтами данных — и зарабатывает $800 в день
PyPI恶意包利用依赖引入恶意行为,发动软件供应链攻击
Plex 修复神秘漏洞,提醒用户立即升级
【通知】第三届全国大学生开源情报数据采集与分析大赛开始报名啦!提供免费培训
【资料】情报组织如何吸引和利用顶尖人才
The U.S. should bolster investment reviews to combat China
The Committee on Foreign Investment in the United States just published its 2024 report, revealing once again that shielding U.S. tech from risky foreign investments was a critical focus for the interagency group that reviews investments in the United States for national security risks. But as U.S.-China tensions further intensify, bolstering these reviews is even […]
The post The U.S. should bolster investment reviews to combat China appeared first on CyberScoop.
Weekoverzicht Defensieoperaties
CodeRabbit RCE Flaw Gives Attackers Write Access to 1M Repositories
A critical remote code execution vulnerability in CodeRabbit, one of GitHub’s most popular AI-powered code review tools, could have allowed attackers to gain read and write access to over one million code repositories, including private ones, according to security researchers from Kudelski Security who disclosed the flaw at Black Hat USA 2024. The security flaw […]
The post CodeRabbit RCE Flaw Gives Attackers Write Access to 1M Repositories appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.