Aggregator
Safepay
You must login to view this content
Safepay
You must login to view this content
Safepay
You must login to view this content
Safepay
You must login to view this content
Safepay
You must login to view this content
Court rebuffs request by telecoms to review $92 million privacy fine
A district appeals court ruled that the FCC “correctly determined” that telecoms had a duty to protect customer location data that was sold and later misused by third parties.
The post Court rebuffs request by telecoms to review $92 million privacy fine appeared first on CyberScoop.
Threat Actors Using CrossC2 Tool to Expand Cobalt Strike to Operate on Linux and macOS
A sophisticated threat campaign has emerged that leverages CrossC2, an unofficial extension tool that expands Cobalt Strike’s notorious capabilities beyond Windows systems to target Linux and macOS environments. Between September and December 2024, cybersecurity incidents involving this cross-platform malware have been documented, representing a significant evolution in threat actor tactics that traditionally focused on Windows-based […]
The post Threat Actors Using CrossC2 Tool to Expand Cobalt Strike to Operate on Linux and macOS appeared first on Cyber Security News.
CVE-2024-56406 | Perl up to 5.34.3/5.36.3/5.38.3/5.40.1 S_do_trans_invmap heap-based overflow (Nessus ID 234241 / WID-SEC-2025-1850)
CVE-2024-47252 | Apache HTTP Server up to 2.4.63 mod_ssl escape, meta, or control sequences (EUVD-2024-54773 / Nessus ID 241984)
CVE-2024-48615 | libarchive up to 3.7.6 bsdtar rchive_read_support_format_tar.c header_pax_extension null pointer dereference (EUVD-2024-54322 / Nessus ID 234066)
CVE-2024-8176 | libexpat stack-based overflow (EUVD-2024-54057 / Nessus ID 233405)
CVE-2024-45802 | Squid Web Proxy up to 6.9 denial of service (GHSA-f975-v7qw-q7hj / Nessus ID 211386)
CVE-2024-42516 | Apache HTTP Server up to 2.4.63 response splitting (EUVD-2024-54775 / Nessus ID 241984)
CVE-2024-43394 | Apache HTTP Server up to 2.4.63 on Windows mod_rewrite server-side request forgery (EUVD-2024-54772 / Nessus ID 241984)
CVE-2024-43204 | Apache HTTP Server up to 2.4.63 mod_proxy server-side request forgery (EUVD-2024-54774 / Nessus ID 241984)
CVE-2024-37894 | Squid Web Proxy up to 3.5.28/4.16/5.9/6.9 ESI Variable out-of-bounds write (GHSA-wgvf-q977-9xjg / Nessus ID 232586)
CVE-2024-36357 | AMD EPYC 7003 Processors L1D Cache information disclosure (Nessus ID 241570 / WID-SEC-2025-1850)
BSidesSF 2025: Intro To Privacy-Enhancing Technologies (PETs)
Creator, Author and Presenter: Harshal Shah
Our deep appreciation to Security BSides - San Francisco and the Creators, Authors and Presenters for publishing their BSidesSF 2025 video content on YouTube. Originating from the conference’s events held at the lauded CityView / AMC Metreon - certainly a venue like no other; and via the organization's YouTube channel.
Additionally, the organization is welcoming volunteers for the BSidesSF Volunteer Force, as well as their Program Team & Operations roles. See their succinct BSidesSF 'Work With Us' page, in which, the appropriate information is to be had!
The post BSidesSF 2025: Intro To Privacy-Enhancing Technologies (PETs) appeared first on Security Boulevard.