Aggregator
CVE-2010-0769 | IBM WebSphere Application Server up to 6.1.0.10 credentials management (Nessus ID 45429 / ID 86876)
CVE-2010-0770 | IBM WebSphere Application Server up to 6.1.0.10 resource management (Nessus ID 45429 / ID 86876)
CVE-2010-1031 | HP Insight Control Suite For Linux up to 2.00 Local Privilege Escalation (BID-39052 / SA39227)
CVE-2010-1193 | VMware Server 2.0.0 Error Message cross site scripting (ID 117372 / SBV-25318)
CVE-2010-1225 | Microsoft Virtual PC 2007 access control (ID 117077 / BID-38764)
CVE-2010-1227 | Sun Java System Communications Express 6.2 cross site scripting (Nessus ID 25073 / SBV-29248)
CVE-2010-1228 | Google Chrome up to 2.0.172.32 Sandbox race condition (ID 117083 / SBV-25588)
CVE-2010-1229 | Google Chrome up to 2.0.172.32 Sandbox resource management (Nessus ID 45086 / ID 117083)
CVE-2010-1230 | Google Chrome up to 4.0.249.0 information disclosure (Nessus ID 45086 / ID 117083)
CVE-2010-1231 | Google Chrome up to 2.0.172.32 Remote Code Execution (Nessus ID 45086 / ID 117083)
CVE-2025-70067 | Assimp up to 6.0.2 FBX File AddBinaryProperty buffer overflow
CVE-2026-6266 | Red Hat Ansible Automation Platform up to 2.6 authentication bypass (RHSA-2026:13508)
Top 3 takeaways for security leaders
Вирус с легальной подписью. DigiCert взломали, и теперь «проверено антивирусом» — это не гарантия
Wiz ZeroDay.Cloud Event Reveals 20-Year-Old PostgreSQL Vulnerabilities
Breaking the code: Multi-stage ‘code of conduct’ phishing campaign leads to AiTM token compromise
Microsoft Defender Research observed a large-scale credential theft campaign that exemplifies this trend, using code of conduct-themed lures, a multi-step attack chain, and legitimate email services to distribute fully authenticated messages from attacker-controlled domains.
The post Breaking the code: Multi-stage ‘code of conduct’ phishing campaign leads to AiTM token compromise appeared first on Microsoft Security Blog.
Breaking the code: Multi-stage ‘code of conduct’ phishing campaign leads to AiTM token compromise
Microsoft Defender Research observed a large-scale credential theft campaign that exemplifies this trend, using code of conduct-themed lures, a multi-step attack chain, and legitimate email services to distribute fully authenticated messages from attacker-controlled domains.
The post Breaking the code: Multi-stage ‘code of conduct’ phishing campaign leads to AiTM token compromise appeared first on Microsoft Security Blog.