Aggregator
Babuk
9 months ago
cohenido
Babuk
9 months ago
cohenido
Babuk
9 months ago
cohenido
Babuk
9 months ago
cohenido
DieNet Targeted the Website of Amazon Pay
9 months ago
DieNet Targeted the Website of Amazon Pay
Dark Web Informer - Cyber Threat Intelligence
Volt Typhoon Strikes Massachusetts Power Utility
9 months ago
The prolonged attack, which lasted 300+ days, is the first known compromise of the US electric grid by the Voltzite subgroup of the Chinese APT; during it, the APT attempted to exfiltrate critical OT infrastructure data.
Elizabeth Montalbano, Contributing Writer
DieNet Targeted the Website of Military.com
9 months ago
DieNet Targeted the Website of Military.com
Dark Web Informer - Cyber Threat Intelligence
紧急!CISA 警告苹果 iOS 漏洞正被恶意利用
9 months ago
安全客
Сто дней без сердца: мужчина дождался донора благодаря устройству BiVACOR
9 months ago
Искусственные органы перестают быть научной фантастикой?
360携手清微智能DeepSeek一体机 拟推动“国产算力+大模型安全+AI应用”协同发展
9 months ago
安全客
CVE-2024-34398 | BMC Remedy Mid Tier 7.6.04 cross site scripting
9 months ago
A vulnerability was found in BMC Remedy Mid Tier 7.6.04. It has been classified as problematic. This affects an unknown part. The manipulation leads to basic cross site scripting.
This vulnerability is uniquely identified as CVE-2024-34398. It is possible to initiate the attack remotely. There is no exploit available.
vuldb.com
New North Korean Android spyware slips onto Google Play
9 months ago
A new Android spyware named 'KoSpy' is linked to North Korean threat actors who have infiltrated Google Play and third-party app store APKPure through at least five malicious apps. [...]
Bill Toulas
重磅!苹果攻克 2025 年第三个正被利用的零日漏洞
9 months ago
安全客
CVE-2024-42791 | Kashipara Music Management System 1.0 ajax.php?action=delete_genre cross-site request forgery
9 months ago
A vulnerability classified as problematic was found in Kashipara Music Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /music/ajax.php?action=delete_genre. The manipulation leads to cross-site request forgery.
This vulnerability is known as CVE-2024-42791. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-42818 | fastapi-admin pro 0.1.4 Product Name cross site scripting
9 months ago
A vulnerability was found in fastapi-admin pro 0.1.4. It has been declared as problematic. Affected by this vulnerability is an unknown functionality. The manipulation of the argument Product Name leads to cross site scripting.
This vulnerability is known as CVE-2024-42818. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-42790 | Kashipara Music Management System 1.0 index.php?page=test page cross site scripting
9 months ago
A vulnerability has been found in Kashipara Music Management System 1.0 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file /music/index.php?page=test. The manipulation of the argument page leads to cross site scripting.
This vulnerability is known as CVE-2024-42790. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-42792 | Kashipara Music Management System 1.0 ajax.php?action=delete_playlist cross-site request forgery
9 months ago
A vulnerability was found in Kashipara Music Management System 1.0. It has been classified as problematic. This affects an unknown part of the file /music/ajax.php?action=delete_playlist. The manipulation leads to cross-site request forgery.
This vulnerability is uniquely identified as CVE-2024-42792. It is possible to initiate the attack remotely. There is no exploit available.
vuldb.com
CVE-2024-43967 | Stark Digital WP Testimonial Widget Plugin up to 3.1 on WordPress cross site scripting
9 months ago
A vulnerability, which was classified as problematic, has been found in Stark Digital WP Testimonial Widget Plugin up to 3.1 on WordPress. Affected by this issue is some unknown functionality. The manipulation leads to cross site scripting.
This vulnerability is handled as CVE-2024-43967. The attack may be launched remotely. There is no exploit available.
vuldb.com
ISACA London Chapter's E-Voting System Comes Under Scrutiny
9 months ago
ISACA London Chapter members demand e-voting system investigation over security and privacy concerns