Aggregator
Google Chrome will let you send money to your favourite website
1 year 10 months ago
error code: 1106
CVE-2024-28740 | Koha ILS up to 23.05 additonal-contents.pl cross site scripting
1 year 10 months ago
A vulnerability has been found in Koha ILS up to 23.05 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file additonal-contents.pl. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2024-28740. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-28739 | Koha ILS up to 23.05 format Privilege Escalation
1 year 10 months ago
A vulnerability, which was classified as critical, was found in Koha ILS up to 23.05. Affected is an unknown function. The manipulation of the argument format leads to Privilege Escalation.
This vulnerability is traded as CVE-2024-28739. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
CVE-2024-42397 | HPE Aruba InstantOS/ArubaOS PAPI Protocol denial of service
1 year 10 months ago
A vulnerability, which was classified as problematic, has been found in HPE Aruba InstantOS and ArubaOS. This issue affects some unknown processing of the component PAPI Protocol Handler. The manipulation leads to denial of service.
The identification of this vulnerability is CVE-2024-42397. The attack may be initiated remotely. There is no exploit available.
vuldb.com
Google Chrome will let you send money to your favourite website
1 year 10 months ago
Google has confirmed plans to implement Web Monetization in Chrome, allowing website owners to receive micro-payments as tips or rewards for their content as an additional way to generate revenue. [...]
Mayank Parmar
CVE-2024-42396 | HPE Aruba InstantOS/ArubaOS PAPI Protocol denial of service
1 year 10 months ago
A vulnerability classified as problematic was found in HPE Aruba InstantOS and ArubaOS. This vulnerability affects unknown code of the component PAPI Protocol Handler. The manipulation leads to denial of service.
This vulnerability was named CVE-2024-42396. The attack can be initiated remotely. There is no exploit available.
vuldb.com
Building Successful Security Champions Programs - Marisa Fagan - ASW #294
1 year 10 months ago
Aug 6, 2024Even though Security Champions programs look very differentacross organizations and matu
Астрофотограф раскрывает тайну секретного китайского космоплана
1 year 10 months ago
Гибридный космический корабль был запущен в декабре 2023 года в свой третий полет, но об этой секретной китайской миссии известно очень мало.
USENIX Security ’23 – Prime Match: A Privacy-Preserving Inventory Matching System
1 year 10 months ago
Authors/Presenters:Antigoni Polychroniadou, Gilad Asharov, Benjamin Diamond, Tucker Bal
USENIX Security ’23 – Prime Match: A Privacy-Preserving Inventory Matching System
1 year 10 months ago
Authors/Presenters:Antigoni Polychroniadou, Gilad Asharov, Benjamin Diamond, Tucker Balch, Hans Buehler, Richard Hua, Suwen Gu, Greg Gimler, Manuela Veloso
Many thanks to USENIX for publishing their outstanding USENIX Security ’23 Presenter’s content, and the organizations strong commitment to Open Access. Originating from the conference’s events situated at the Anaheim Marriott; and via the organizations YouTube channel.
The post USENIX Security ’23 – Prime Match: A Privacy-Preserving Inventory Matching System appeared first on Security Boulevard.
Marc Handelman
INTERPOL recovers over $40 million stolen in a BEC attack
1 year 10 months ago
error code: 1106
Mozilla security advisory (AV24-439)
1 year 10 months ago
Canadian Centre for Cyber Security
CVE-2024-7565 | Smartbear SoapUI unpackageAll path traversal (ZDI-24-1100)
1 year 10 months ago
A vulnerability classified as critical has been found in Smartbear SoapUI. This affects the function unpackageAll. The manipulation leads to path traversal.
This vulnerability is uniquely identified as CVE-2024-7565. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-42222 | Apache CloudStack up to 4.19.1.0 Network Listing API information disclosure
1 year 10 months ago
A vulnerability was found in Apache CloudStack up to 4.19.1.0. It has been rated as problematic. Affected by this issue is some unknown functionality of the component Network Listing API. The manipulation leads to information disclosure.
This vulnerability is handled as CVE-2024-42222. The attack needs to be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
INTERPOL recovers over $40 million stolen in a BEC attack
1 year 10 months ago
A global stop-payment mechanism created by INTERPOL successfully recovered over $40 million stolen in a BEC attack on a company in Singapore. [...]
Lawrence Abrams
Слизевик помогает составить карту щупалец темной материи во Вселенной
1 year 10 months ago
Исследователи применяют биологические алгоритмы для понимания процессов, происходящих в галактиках.
CVE-2024-42062 | Apache CloudStack up to 4.18.2.2/4.19.1.0 User Key information disclosure
1 year 10 months ago
A vulnerability was found in Apache CloudStack up to 4.18.2.2/4.19.1.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the component User Key Handler. The manipulation leads to information disclosure.
This vulnerability is known as CVE-2024-42062. The attack needs to be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
BloodHound Operator — Dog Whispering Reloaded
1 year 10 months ago
SadProcessor
BloodHound Operator — Dog Whispering Reloaded
1 year 10 months ago