Aggregator
CVE-2022-1725 | vim up to 8.2.4956 null pointer dereference (EUVD-2022-25007)
CVE-2022-1714 | radare2 up to 5.6.x heap-based overflow (EUVD-2022-24997)
CVE-2022-1720 | vim up to 8.2.4938 vim/vim grab_file_name buffer overflow (EUVD-2022-25002)
Apiiro CLI turns AI coding assistants into full-stack security engineers
The Apiiro CLI brings the Apiiro platform to your terminal and to your AI coding assistants, giving them six native security capabilities: scanning, risk management, remediation, an AI security analyst (via Apiiro Guardian Agent), AI Threat Modeling, and prompt enrichment. It installs in seconds on macOS, Linux, and Windows via brew, direct download, or RPM. Apiiro CLI ships with agent skills, structured capability definitions that AI coding assistants like Claude Code and Cursor can read … More →
The post Apiiro CLI turns AI coding assistants into full-stack security engineers appeared first on Help Net Security.
CVE-2022-1674 | vim up to 8.2.4925 regexp.c vim_regexec_string null pointer dereference (EUVD-2022-24960)
Хватит винить смартфоны в своей бессоннице. Кажется, проблема совсем в другом
CPUID Website Compromised to Deliver Weaponized HWMonitor and CPU-Z Tools
The cpuid-dot-com website, home to widely used system utilities CPU-Z and HWMonitor, is at the center of an active supply chain security incident. Users downloading HWMonitor 1.63 or CPU-Z ZIPs since early April have reportedly received trojanized installers capable of dropping malicious DLLs, evading antivirus detection through in-memory execution, and establishing connections to attacker-controlled infrastructure. […]
The post CPUID Website Compromised to Deliver Weaponized HWMonitor and CPU-Z Tools appeared first on Cyber Security News.