Aggregator
Meta fired 20 employees for leaking information, more firings expected
9 months 1 week ago
Meta fired about 20 employees because they had leaked “confidential information outside the company,” with more firings expected. Meta fired about 20 employees for leaking confidential information outside the company, with more firings expected. “We tell employees when they join the company, and we offer periodic reminders, that it is against our policies to leak […]
Pierluigi Paganini
Week in review: Botnet hits M365 accounts, PoC for Ivanti Endpoint Manager vulnerabilities released
9 months 1 week ago
Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Massive botnet hits Microsoft 365 accounts A recently discovered botnet of over 130,000 compromised devices is launching coordinated password-spraying attacks against Microsoft 365 (M365) accounts. PoC exploit for Ivanti Endpoint Manager vulnerabilities released (CVE-2024-13159) A proof-of-concept (PoC) exploit for four critical Ivanti Endpoint Manager vulnerabilities has been released by Horizon3.ai researchers. Avoiding vendor lock-in when using managed cloud security services … More →
The post Week in review: Botnet hits M365 accounts, PoC for Ivanti Endpoint Manager vulnerabilities released appeared first on Help Net Security.
Help Net Security
滴滴在招人-信息安全BP岗
9 months 1 week ago
滴滴在招人-信息安全BP岗
9 months 1 week ago
滴滴在招人-信息安全BP岗
9 months 1 week ago
滴滴在招人-信息安全BP岗
9 months 1 week ago
滴滴在招人-信息安全BP岗
9 months 1 week ago
滴滴在招人-信息安全BP岗
9 months 1 week ago
滴滴在招人-信息安全BP岗
9 months 1 week ago
滴滴在招人-信息安全BP岗
9 months 1 week ago
Новый инструмент финансовой защиты: самозапрет на кредиты через «Госуслуги»
9 months 1 week ago
Преимущества функции и как ею воспользоваться.
CVE-2007-0614 | Apple iChat denial of service (EDB-3230 / Nessus ID 24354)
9 months 1 week ago
A vulnerability, which was classified as critical, has been found in Apple iChat. This issue affects some unknown processing. The manipulation leads to denial of service.
The identification of this vulnerability is CVE-2007-0614. The attack may be initiated remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-10462 | Mozilla Thunderbird up to 131 Permission Prompt ui layer (Nessus ID 209869)
9 months 1 week ago
A vulnerability classified as critical was found in Mozilla Thunderbird up to 131. Affected by this vulnerability is an unknown functionality of the component Permission Prompt Handler. The manipulation leads to improper restriction of rendered ui layers.
This vulnerability is known as CVE-2024-10462. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-10463 | Mozilla Firefox up to 131 Video Frame information disclosure (Nessus ID 209869)
9 months 1 week ago
A vulnerability, which was classified as problematic, has been found in Mozilla Firefox up to 131. Affected by this issue is some unknown functionality of the component Video Frame Handler. The manipulation leads to information disclosure.
This vulnerability is handled as CVE-2024-10463. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-10463 | Mozilla Thunderbird up to 131 Video Frame information disclosure (Nessus ID 209869)
9 months 1 week ago
A vulnerability, which was classified as problematic, was found in Mozilla Thunderbird up to 131. This affects an unknown part of the component Video Frame Handler. The manipulation leads to information disclosure.
This vulnerability is uniquely identified as CVE-2024-10463. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-10465 | Mozilla Firefox up to 131 Clipboard (Nessus ID 209869)
9 months 1 week ago
A vulnerability has been found in Mozilla Firefox up to 131 and classified as problematic. This vulnerability affects unknown code of the component Clipboard Handler. The manipulation leads to an unknown weakness.
This vulnerability was named CVE-2024-10465. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-10465 | Mozilla Thunderbird up to 131 Clipboard (Nessus ID 209869)
9 months 1 week ago
A vulnerability was found in Mozilla Thunderbird up to 131 and classified as problematic. This issue affects some unknown processing of the component Clipboard Handler. The manipulation leads to an unknown weakness.
The identification of this vulnerability is CVE-2024-10465. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
Патчи не успевают: хакеры эксплуатируют уязвимости быстрее, чем их исправляют
9 months 1 week ago
Традиционные методы защиты отстают от масштабных атак.
CVE-2025-1836 | Incorta 2023.4.3 Edit Insight Service Name csv injection
9 months 1 week ago
A vulnerability was found in Incorta 2023.4.3. It has been classified as problematic. Affected is an unknown function of the component Edit Insight Handler. The manipulation of the argument Service Name leads to csv injection.
This vulnerability is traded as CVE-2025-1836. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
The vendor was contacted early about this disclosure but did not respond in any way.
vuldb.com