Aggregator
Kubernetes(K8S)集群服务器取证详解
9 months 3 weeks ago
跨国抓捕:俄罗斯勒索软件头目被引渡至美国
9 months 3 weeks ago
error code: 521
CVE-2024-10094 | Pegasystems Pega Infinity up to 24.1.1 code injection
9 months 3 weeks ago
A vulnerability classified as critical has been found in Pegasystems Pega Infinity up to 24.1.1. This affects an unknown part. The manipulation leads to code injection.
This vulnerability is uniquely identified as CVE-2024-10094. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
苹果计划授权其 Apple TV+独占内容
9 months 3 weeks ago
苹果计划向竞争对手的流媒体服务授权 Apple TV+ 的独占内容,此举旨在节省资金和扩大影响面。自 2019 年 Apple TV+ 推出以来,苹果斥资逾 200 亿美元打造原创内容。但
Apple Urgently Patches Actively Exploited Zero-Days
9 months 3 weeks ago
Though information regarding the exploits is limited, the company did report that Intel-based Mac systems have been targeted by cybercriminals looking to exploit CVE-2024-44308 and CVE-2024-44309.
Dark Reading Staff
После прочтения сжечь: как Google стирает улики и уклоняется от судебных исков
9 months 3 weeks ago
Корпорацию обвиняют в намеренном удалении доказательств и сокрытии фактов.
Small US Cyber Agencies Are Underfunded & That's a Problem
9 months 3 weeks ago
If the US wants to maintain its lead in cybersecurity, it needs to make the tough funding decisions that are demanded of it.
Michael Daniel
Modern Cyber Attacks: Understanding the Threats and Building Robust Defenses
9 months 3 weeks ago
Cyber attacks are more sophisticated than ever, from ransomware and phishing to DDoS attacks. This post explores these threats and provides actionable insights into building robust defenses. Learn how to implement security best practices and protect your valuable data from modern cyber attacks.
The post Modern Cyber Attacks: Understanding the Threats and Building Robust Defenses appeared first on Security Boulevard.
Deepak Gupta - Tech Entrepreneur, Cybersecurity Author
China-Backed Hackers Leverage SIGTRAN, GSM Protocols to Infiltrate Telecom Networks
9 months 3 weeks ago
Cyber Espionage / Telecom SecurityA new China-linked cyber espionage group has been attributed as
Palo Alto Networks security advisory (AV24-670)
9 months 3 weeks ago
Canadian Centre for Cyber Security
双奖加冕!360引领AI+安全新风向
9 months 3 weeks ago
安全客
CVE-2024-51209 | PHPGurukul Client Management System 1.2 Admin Search Invoice Page search cross site scripting
9 months 3 weeks ago
A vulnerability was found in PHPGurukul Client Management System 1.2. It has been rated as problematic. Affected by this issue is some unknown functionality of the component Admin Search Invoice Page/Client Search Invoice Page. The manipulation of the argument search leads to cross site scripting.
This vulnerability is handled as CVE-2024-51209. The attack may be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-52470 | Brainvireinfo Dynamic URL SEO Plugin up to 1.0 on WordPress cross site scripting
9 months 3 weeks ago
A vulnerability was found in Brainvireinfo Dynamic URL SEO Plugin up to 1.0 on WordPress. It has been declared as problematic. Affected by this vulnerability is an unknown functionality. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2024-52470. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-52473 | Sandeep Verma HTML5 Lyrics Karaoke Player Plugin up to 2.4 on WordPress cross site scripting
9 months 3 weeks ago
A vulnerability was found in Sandeep Verma HTML5 Lyrics Karaoke Player Plugin up to 2.4 on WordPress. It has been classified as problematic. Affected is an unknown function. The manipulation leads to cross site scripting.
This vulnerability is traded as CVE-2024-52473. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
CVE-2024-52472 | Weather Atlas Widget Plugin up to 3.0.1 on WordPress cross site scripting
9 months 3 weeks ago
A vulnerability was found in Weather Atlas Widget Plugin up to 3.0.1 on WordPress and classified as problematic. This issue affects some unknown processing. The manipulation leads to cross site scripting.
The identification of this vulnerability is CVE-2024-52472. The attack may be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-52471 | petesheppard84 Extensions for Elementor Plugin up to 2.0.37 on WordPress cross site scripting
9 months 3 weeks ago
A vulnerability has been found in petesheppard84 Extensions for Elementor Plugin up to 2.0.37 on WordPress and classified as problematic. This vulnerability affects unknown code. The manipulation leads to cross site scripting.
This vulnerability was named CVE-2024-52471. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-52598 | Bubka 2FAuth up to 5.4.0 Endpoint preview cross site scripting
9 months 3 weeks ago
A vulnerability, which was classified as problematic, was found in Bubka 2FAuth up to 5.4.0. This affects an unknown part of the file /api/v1/twofaccounts/preview of the component Endpoint. The manipulation leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2024-52598. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
从 UnitedHealth 勒索软件攻击中吸取的五个备份教训
9 months 3 weeks ago
安全客
CVE-2024-51208 | PHPGurukul Boat Booking System 1.0 Image Upload change-image.php unrestricted upload
9 months 3 weeks ago
A vulnerability, which was classified as critical, has been found in PHPGurukul Boat Booking System 1.0. Affected by this issue is some unknown functionality of the file change-image.php of the component Image Upload Handler. The manipulation leads to unrestricted upload.
This vulnerability is handled as CVE-2024-51208. The attack may be launched remotely. There is no exploit available.
vuldb.com