Aggregator
CVE-2022-37436 | Apache HTTP Server up to 2.4.54 response splitting (Nessus ID 211533)
CVE-2006-20001 | Apache HTTP Server up to 2.4.54 Header out-of-bounds write (Nessus ID 211533)
CVE-2023-25690 | Oracle Hyperion Infrastructure Technology 11.2.14.0.000 Installation/Configuration request smuggling (Nessus ID 211533)
CVE-2023-25690 | Oracle Communications Session Report Manager 9.0.0/9.0.1 FEServer request smuggling (Nessus ID 211533)
CVE-2023-25690 | Oracle Enterprise Manager Ops Center 12.4.0.0 Networking request smuggling (Nessus ID 211533)
CVE-2023-25690 | Oracle HTTP Server 12.2.1.4.0 SSL Module request smuggling (Nessus ID 211533)
CVE-2024-52867 | GNU Guix guix-daemon Local Privilege Escalation (Nessus ID 211622)
《魔兽世界》上线二十周年
Debunking myths about open-source security
In this Help Net Security interview, Stephanie Domas, CISO at Canonical, discusses common misconceptions about open-source security and how the community can work to dispel them. She explains how open-source solutions, contrary to myths, offer enterprise-grade maturity, reliability, and transparency. Domas also shares key factors organizations should prioritize in open-source adoption to enhance security and balance innovation with stability. What are the biggest misconceptions about open-source security, and how can community members and professionals work … More →
The post Debunking myths about open-source security appeared first on Help Net Security.
从安全元数据湖,看懂斗象的技术坚持
执法机构能破解哪些手机
CVE-2021-22146 | Elasticsearch Elastic Cloud Enterprise API permission (EDB-50152)
お知らせ:JPCERT/CC Eyes「TSUBAMEレポート Overflow(2024年7~9月)」
Safeguarding the DNS through registries
The integrity of our online ecosystem heavily relies on domain registries, which serve as the foundation for secure and trusted digital experiences. However, threats like Domain Name System (DNS) abuse– manifesting as phishing, malware, and botnets – jeopardize this security. Such abuses harm individuals and undermine the overall trust in the internet. In this Help Net Security video, Ram Mohan, Chief Strategy Officer at Identity Digital, discusses the role registries play in safeguarding the DNS … More →
The post Safeguarding the DNS through registries appeared first on Help Net Security.
UK CMA Clears Alphabet, Anthropic Partnership
The U.K. antitrust regulator called off an investigation into a $2 billion partnership between computing giant Alphabet and artificial intelligence startup Anthropic. The .K. Competition and Markets Authority probe sought to understand if the deal forms a "relevant merger situation."
Oklahoma Hospital Says Ransomware Hack Hits 133,000 People
An Oklahoma hospital quickly restored its IT systems after a ransomware attack in September, but the 62-bed hospital could not recover some data and later learned that hackers may have accessed the personal information of 133,000 people. The attack is the latest involving a small rural hospital.
India Fines WhatsApp $25M, Bans Data Sharing for 5 Years
India's Competition Commission has fined social media conglomerate Meta over $25 million for forcing WhatsApp users to agree to a sweeping data sharing policy with other Meta platforms. The agency ordered the company to stop using users' data for online advertising on other Meta platforms.
US Agencies Urged to Combat Growing Chinese Cyberthreat
A panel of cybersecurity experts and top industry officials pushed lawmakers and the federal government to step up their defenses against escalating cyberthreats from China, citing recent high-profile examples of evidence that Beijing is increasingly targeting the U.S. with sophisticated attacks.