Aggregator
CVE-2021-38435 | RTI Connext DDS Professional/Connext DDS Secure up to 6.1.0 buffer overflow (icsa-21-315-02)
Satori provides visibility into data store risk levels
Satori announced its new capabilities, enabling security teams to be in control of all customer data across the development lifecycle in a simple, cost-effective, and holistic way. These capabilities automate the daunting tasks of discovering data, risk assessment, providing granular access control, and mitigating security risks quickly across cloud platforms like AWS, Snowflake, Databricks, and MongoDB. A recent report by Gartner found that 75% of organizations are working to consolidate their cloud-native security vendors. Security … More →
The post Satori provides visibility into data store risk levels appeared first on Help Net Security.
CVE-2008-4910 | Sun Java Web Start input validation (EDB-32529 / XFDB-46119)
CVE-2020-12882 | Submitty up to 20.04.01 SVG Document cross site scripting (EDB-48488)
RTSP狩猎之旅:从协议解析到黑客实战
CVE-2024-3976 | GitLab Community Edition/Enterprise Edition up to 16.9.6/16.10.4/16.11.1 Public Project authorization (Issue 457140)
IDOR的高阶技巧
CVE-2024-2878 | GitLab Community Edition/Enterprise Edition up to 16.9.6/16.10.4/16.11.1 allocation of resources
CVE-2024-52364 | IBM Cloud Pak for Business Automation up to 22.0.2 Web UI cross site scripting
CVE-2024-52365 | IBM Cloud Pak for Business Automation up to 22.0.2 cross site scripting
Cybercriminals Use Go Resty and Node Fetch in 13 Million Password Spraying Attempts
Apple’s macOS Kernel Vulnerability Let Attackers Escalate Privileges – PoC Released
A critical vulnerability in Apple’s macOS kernel (XNU), tracked as CVE-2025-24118, has been disclosed, potentially allowing attackers to escalate privileges, corrupt memory, and even execute kernel-level code. The flaw, affecting macOS Sonoma versions earlier than 14.7.3, macOS Sequoia versions earlier than 15.3, and iPadOS versions earlier than 17.7.4, was discovered by Joseph Ravichandran (@0xjprx), a […]
The post Apple’s macOS Kernel Vulnerability Let Attackers Escalate Privileges – PoC Released appeared first on Cyber Security News.
CVE-2024-49348 | IBM Cloud Pak for Business Automation up to 22.0.2 privileges assignment
Sandboxes Alone Won’t Stop the Malware Onslaught. Here’s What Will.
Rhode Island disclosed in December that a ransomware attack had resulted in a data breach of its RIBridges social services database, exposing personal data of about 650,000 residents that included Social Security numbers, dates of birth, and individual bank account numbers. The impact was enormous — more than half of the state’s population was affected.
The post Sandboxes Alone Won’t Stop the Malware Onslaught. Here’s What Will. appeared first on Security Boulevard.
CVE-2025-22664 | Survey Maker team Plugin Plugin up to 5.1.3.5 on WordPress cross site scripting
CVE-2025-22675 | bPlugins Alert Box Block up to 1.1.0 on WordPress notice/alerts cross site scripting
CVE-2025-24602 | WP24 Domain Check Plugin up to 1.10.14 on WordPress cross site scripting
CVE-2003-1518 | Adiscon Winsyslog 4.21 Sp1/5.0 Beta Syslog Message memory corruption (EDB-23242 / Nessus ID 11884)
Sophos Acquires Secureworks for $859 Million
Sophos, a global leader in cybersecurity solutions, has finalized its acquisition of SecureWorks, a prominent managed security services provider, in an all-cash transaction valued at $859 million. Sophos is now the top pure-play provider of Managed Detection and Response (MDR) services, serving more than 28,000 businesses worldwide due to this strategic approach. The acquisition brings […]
The post Sophos Acquires Secureworks for $859 Million appeared first on Cyber Security News.