Aggregator
CVE-2024-26805 | Linux Kernel up to 6.7.8 lib/iov_iter.c netlink_to_full_skb uninitialized pointer (WID-SEC-2024-0773)
CVE-2024-26804 | Linux Kernel up to 6.7.8 ip_tunnel skb_network_offset use after free (Nessus ID 208425 / WID-SEC-2024-0773)
CVE-2010-1478 | Ternaria Com Jfeedback 1.2 index.php controller path traversal (EDB-12145 / Nessus ID 43636)
CVE-2010-5022 | Harmistechnology Com Jesubmit 1.4 index.php view sql injection (EDB-14054 / BID-41171)
CVE-2010-0796 | Harmistechnology Com Jeeventcalendar 1.0 index.php eid sql injection (EDB-11287 / XFDB-56009)
CVE-2010-2128 | Harmistechnology Com Jequoteform 1.0 index.php view path traversal (EDB-12607 / Nessus ID 45490)
CVE-2010-2680 | Harmistechnology Com Jesectionfinder Finder Section/Property view path traversal (EDB-14064 / XFDB-59796)
CVE-2024-26803 | Linux Kernel up to 5.15.150/6.1.80/6.6.20/6.7.8 veth_disable_xdp uninitialized pointer (Nessus ID 210815 / WID-SEC-2024-0773)
CVE-2024-26802 | Linux Kernel up to 5.15.150/6.1.80/6.6.20/6.7.8 stmmac destroy_workqueue null pointer dereference (WID-SEC-2024-0773)
CVE-2024-26801 | Linux Kernel up to 6.7.8 Bluetooth hci_error_reset use after free (Nessus ID 213130 / WID-SEC-2024-0773)
The End of FunkSec: Free Decryptor Released for Ransomware Victims After AI-Assisted Group Goes Dormant
In late 2024, a new ransomware strain named FunkSec emerged on the cybercrime scene. It quickly drew attention due to its aggressive tactics and unconventional implementation. Within a short span, dozens of organizations across...
The post The End of FunkSec: Free Decryptor Released for Ransomware Victims After AI-Assisted Group Goes Dormant appeared first on Penetration Testing Tools.
CVE-2024-26799 | Linux Kernel up to 6.6.20/6.7.8 qcom lpass-cdc-dma.c __lpass_get_dmactl_handle uninitialized pointer (99adc8b4d2f3/d5a7726e6ea6/1382d8b55129 / WID-SEC-2024-0773)
CVE-2024-26800 | Linux Kernel up to 6.6.20/6.7.8 tls crypto_aead_decrypt use after free (81be85353b0f/1ac9fb84bc7e / Nessus ID 210006)
CVE-2024-26796 | Linux Kernel up to 6.6.20/6.7.8 perf ctr_get_width null pointer dereference (e0d17ee872cf/e4f50e85de5a/682dc133f83e / WID-SEC-2024-0773)
CVE-2024-26798 | Linux Kernel up to 5.15.150/6.0/6.1.80/6.6.20/6.7.8 fbcon_do_set_font allocation of resources (WID-SEC-2024-0773)
CVE-2024-26797 | Linux Kernel up to 6.7.8 Error Message map_hw_resources buffer overflow (50a6302cf881/0f8ca019544a / WID-SEC-2024-0773)
SentinelOne Exposes China’s Contractor Network, Linking MSS & Hafnium to 15+ Stealthy Surveillance Patents
A new report from SentinelOne casts a revealing light on a lesser-known yet extensive facet of China’s cyber-espionage apparatus: the contractor infrastructure tied to the threat group Silk Typhoon (also known as Hafnium), which...
The post SentinelOne Exposes China’s Contractor Network, Linking MSS & Hafnium to 15+ Stealthy Surveillance Patents appeared first on Penetration Testing Tools.