Aggregator
SDC2024倒计时7天!圆桌会谈:从安全到大语言模型
1 year 5 months ago
欢迎来SDC玩儿~
TrickMo恶意软件通过假锁屏窃取Android PIN码
1 year 5 months ago
TrickMo的攻击目标不仅限于银行账户,还包括VPN、电子商务、社交媒体等平台。
AFL++实战入门与afl-fuzz源码流解析
1 year 5 months ago
看雪论坛作者ID:Loserme
SDC2024议题聚焦 | 大模型技术在恶意软件分析中的实践(内含赠票活动)
1 year 5 months ago
沙箱结合大模型,精准高效分析恶意软件
倒计时2天,2024补天白帽大会参会小贴士!
1 year 5 months ago
倒计时2天!2024补天白帽大会参会指南!10月17日:点击查看补天训练“赢”活动安排10月18日:点击查看补天白帽大会大会议程10月18日:点击查看补天白帽大会特色活动大会温馨提示大会交通酒店地址:
Oracle 补丁日安全通告10月份
1 year 5 months ago
近日,深瞳漏洞实验室监测到一则Oracle WebLogic Server官方发布安全补丁的通告,共修复了5个安全漏洞,其中包含1个严重漏洞,4个高危漏洞的信息。
CVE-2008-0649 | ADP Astanda Directory Project 1.2 detail.php link_id sql injection (EDB-5071 / BID-27646)
1 year 5 months ago
A vulnerability was found in ADP Astanda Directory Project 1.2. It has been declared as critical. This vulnerability affects unknown code of the file detail.php. The manipulation of the argument link_id leads to sql injection.
This vulnerability was named CVE-2008-0649. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-0652 | Com Downloads on Joomla index.php filecatid sql injection (EDB-5073 / BID-27648)
1 year 5 months ago
A vulnerability classified as critical was found in Com Downloads on Joomla. Affected by this vulnerability is an unknown functionality of the file index.php. The manipulation of the argument filecatid leads to sql injection.
This vulnerability is known as CVE-2008-0652. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-0653 | Com Ynews 1.0.0 on Joomla index.php id sql injection (EDB-5072 / BID-27649)
1 year 5 months ago
A vulnerability, which was classified as critical, has been found in Com Ynews 1.0.0 on Joomla. Affected by this issue is some unknown functionality of the file index.php. The manipulation of the argument id leads to sql injection.
This vulnerability is handled as CVE-2008-0653. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-0648 | OpenSiteAdmin 0.9.1.1 indexfooter.php path code injection (EDB-5068 / BID-27640)
1 year 5 months ago
A vulnerability was found in OpenSiteAdmin 0.9.1.1. It has been classified as critical. This affects an unknown part of the file indexfooter.php. The manipulation of the argument path leads to code injection.
This vulnerability is uniquely identified as CVE-2008-0648. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-0661 | Illustrate dBpowerAMP Audio Player 2.0 memory corruption (EDB-5067 / BID-27639)
1 year 5 months ago
A vulnerability was found in Illustrate dBpowerAMP Audio Player 2.0. It has been classified as critical. This affects an unknown part. The manipulation leads to memory corruption.
This vulnerability is uniquely identified as CVE-2008-0661. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2008-0787 | MyBB up to Rc4 options[disablesmilies] sql injection (EDB-5070 / BID-27378)
1 year 5 months ago
A vulnerability was found in MyBB. It has been rated as critical. Affected by this issue is some unknown functionality. The manipulation of the argument options[disablesmilies] leads to sql injection.
This vulnerability is handled as CVE-2008-0787. The attack may be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2008-5695 | WordPress up to 1.2 Capabilities input validation (EDB-5066 / XFDB-40266)
1 year 5 months ago
A vulnerability was found in WordPress up to 1.2 and classified as very critical. This issue affects some unknown processing of the component Capabilities. The manipulation leads to improper input validation.
The identification of this vulnerability is CVE-2008-5695. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
Identity Security: How to Reduce Cyber Risk in Manufacturing
1 year 5 months ago
Manufacturing enterprises have more identities than ever to manage - human and non - and face more attacks upon these identities. Manual lifecycle management can't keep pace. Trane Technologies' Aaron Havenar talks about automated identity security measures that don't compromise operational efficiency.
Live Webinar | A Practical Guide To Achieving Continuous Software Supply Chain GRC
1 year 5 months ago
CVE-2014-7728 | Civitasmedia Logan Banner 1.0010.b0010 X.509 Certificate cryptographic issues (VU#582497)
1 year 5 months ago
A vulnerability was found in Civitasmedia Logan Banner 1.0010.b0010. It has been declared as critical. This vulnerability affects unknown code of the component X.509 Certificate Handler. The manipulation leads to cryptographic issues.
This vulnerability was named CVE-2014-7728. The attack can only be initiated within the local network. There is no exploit available.
vuldb.com
首届全球数据技术大会将于10月29日盛大启幕
1 year 5 months ago
GDTC亮点先睹为快
前沿 | IPv6环境下秒拨攻击抑制方案研究
1 year 5 months ago
本文旨在调研IPv6环境新增的网络安全问题,对交通银行现有的网络攻击安全防护体系进行全面评估,识别在IPv6环境下交通银行现有网络安全防护体系的主要短板,并针对IPv6环境下秒拨攻击抑制方案进行研究。
观点 | 人工智能时代“网络水军”的危害与治理策略
1 year 5 months ago
“网络水军”占用了社会公众的注意力资源,其发布的虚假信息影响了公众对真实环境中商品和事件的理性判断,在一定程度上瓦解了互联网信任体系,损害了互联网经济,对社会公益造成了巨大损失。