Aggregator
CVE-2012-0865 | CubeCart up to 3.0.20 switch.php goto input validation (EDB-36686 / BID-51966)
8 months 1 week ago
A vulnerability, which was classified as critical, has been found in CubeCart. Affected by this issue is some unknown functionality of the file switch.php. The manipulation of the argument goto leads to improper input validation.
This vulnerability is handled as CVE-2012-0865. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
Safepay
8 months 1 week ago
cohenido
Safepay
8 months 1 week ago
cohenido
MagicMirror:一键 AI 换脸、发型、穿搭工具
8 months 1 week ago
MagicMirror介绍MagicMirror是一款简便易用的AI工具,支持一键换脸、发型和穿搭功能,适用于macOS和Windows系统。用户只需拖入一张照片,便能轻松进行换脸操作,无需复杂...
黑海洋
MagicMirror:一键 AI 换脸、发型、穿搭工具
8 months 1 week ago
MagicMirror介绍MagicMirror是一款简便易用的AI工具,支持一键换脸、发型和穿搭功能,适用于macOS和Windows系统。用户只需拖入一张照片,便能轻松进行换脸操作,无需复杂的配置
Malware botnets exploit outdated D-Link routers in recent attacks
8 months 1 week ago
Two botnets tracked as ‘Ficora’ and ‘Capsaicin’ have recorded increased activity in targetin
金钱能买到更长的寿命?
8 months 1 week ago
富人日益富有,年龄也日益见长。研究显示,高薪水和高净值的人通常能活得更长久。根据发表在《JAMA Internal Medicine》期刊上的一项研究,当美国人活到 50 多岁后,最富有的 10% 中位数年龄约 86 岁,比最不富有的 10% 多活 14 年。论文合作者表示,有钱人可以买到更健康的食物、更多医保,在更安全污染更少的社区拥有住房。研究人员表示,花更多钱能提高活得更长久的机会。比如吃得少但吃得更好,睡眠更长锻炼更多,花时间多陪陪朋友。Apple Watch 之类的可穿戴设备也有助于发现身体异常。更高的收入与更长的寿命相关,但回报呈递减。有了足够的金钱之后你会花更多的时间考虑自己的健康。而低收入人群通常从事体力工作,更容易发生工作场所事故,更可能接触到有毒物质。
金钱能买到更长的寿命?
8 months 1 week ago
富人日益富有,年龄也日益见长。研究显示,高薪水和高净值的人通常能活得更长久。根据发表在《JAMA Internal Medicine》期刊上的一项研究,当美国人活到 50 多岁后,最富有的
OneQuick 10 – 让你的屏幕边缘秒变”魔法棒”|Windows 快捷操作工具
8 months 1 week ago
CVE-2014-3840 | Mayan EDMS 0.13 Bootstrap cross site scripting (EDB-33493 / BID-67552)
8 months 1 week ago
A vulnerability has been found in Mayan EDMS 0.13 and classified as problematic. This vulnerability affects unknown code of the component Bootstrap. The manipulation leads to cross site scripting.
This vulnerability was named CVE-2014-3840. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2011-5183 | Bioinformatics OrderSys up to 1.6.3 index.php where_clause sql injection (EDB-18091 / OSVDB-83326)
8 months 1 week ago
A vulnerability classified as critical was found in Bioinformatics OrderSys up to 1.6.3. This vulnerability affects unknown code of the file index.php. The manipulation of the argument where_clause leads to sql injection.
This vulnerability was named CVE-2011-5183. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
慢雾(SlowMist) 荣获 ISO/IEC 27001:2022 信息安全管理体系认证证书
8 months 1 week ago
近日,慢雾(SlowMist) 顺利通过国际权威认证机构 DNV 管理服务集团的审核,获得 ISO/IEC 27001:2022 信息安全管理体系认证证书(CNAS & UKAS 双认可),标志着慢雾
慢雾(SlowMist) 荣获 ISO/IEC 27001:2022 信息安全管理体系认证证书
8 months 1 week ago
慢雾(SlowMist) 将继续加强内部管理和技术创新,提升安全性能和用户体验。
国家金融监督管理总局发布《银行保险机构数据安全管理办法》;多款Chrome浏览器插件被黑,超60万用户面临数据被盗风险 | 牛览
8 months 1 week ago
新闻速览 •国家金融监督管理总局发布《银行保险机构数据安全管理办法》 •移动威胁形势日益严峻,iOS设备比安卓 […]
aqniu
国家金融监督管理总局发布《银行保险机构数据安全管理办法》;多款Chrome浏览器插件被黑,超60万用户面临数据被盗风险 | 牛览
8 months 1 week ago
国家金融监督管理总局发布《银行保险机构数据安全管理办法》;多款Chrome浏览器插件被黑,超60万用户面临数据被盗风险 | 牛览 日期:2024年
2024年十大网络安全事件盘点
8 months 1 week ago
为此2024年,网络安全领域经历了一场前所未有的风暴。从微软高管邮箱被黑客攻陷,到全球数百万系统因软件故障陷入 […]
aqniu
2024年十大网络安全事件盘点
8 months 1 week ago
2024年十大网络安全事件盘点 日期:2024年12月30日 阅:84 为此2024
CVE-2016-2107 | Oracle Agile Engineering Data Management 6.1.3.0/6.2.0.0 Install information disclosure (EDB-39768 / Nessus ID 92585)
8 months 1 week ago
A vulnerability was found in Oracle Agile Engineering Data Management 6.1.3.0/6.2.0.0 and classified as critical. Affected by this issue is some unknown functionality of the component Install. The manipulation leads to information disclosure.
This vulnerability is handled as CVE-2016-2107. The attack may be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
使用开源大语言模型将安全通告与易受攻击的函数配对
8 months 1 week ago
作者:Trevor Dunlap, John Speed Meyers, Bradley Reaves, and William Enck.
译者:知道创宇404实验室翻译组
原文链接:https://www.enck.org/pubs/dunlap-dimva24.pdf
摘要
随着对开源软件依赖性的需求不断增加,管理这些依赖中的安全漏洞变得愈加复杂。当前最先进的工业工具通过代码的可达性分...