Aggregator
Crowdstrike Attack Report
10 months 1 week ago
Crowdstrike Attack Report On July 19, 2024, a sudden outage affected a majority of pr
Reverse Engineering Set Top Boxes (Blog Series)
10 months 1 week ago
От кашля к диагнозу: Google обучил ИИ выявлять туберкулёз по звуку
10 months 1 week ago
ИИ научился «слышать» скрытые болезни человека.
懒猫微服:小巧身材,大大满足——从颜值到功能的全方位体验
10 months 1 week ago
起因 上上个星期在推.. 阅读更多
glzjin
RansomHub Hits Powered by Ex-Affiliates of LockBit, BlackCat
10 months 1 week ago
Feds Count Over 200 Known US Victims of Ransomware Group That Launched in February
Beware a surge in attacks tied to a ransomware group called RansomHub that's recruited affiliates from down-or-out operations LockBit and BlackCat and successfully crypto-locked systems at more than 200 organizations nationwide, including critical infrastructure, the U.S. government warned.
Beware a surge in attacks tied to a ransomware group called RansomHub that's recruited affiliates from down-or-out operations LockBit and BlackCat and successfully crypto-locked systems at more than 200 organizations nationwide, including critical infrastructure, the U.S. government warned.
Why Dell Is Once Again Eyeing the Sale of MSSP Secureworks
10 months 1 week ago
Growth, Profitability and Stock Price Woes Have Dell Primed to Cash Out Its Chips
Majority owner Dell is exploring a possible sale of Atlanta-based cybersecurity services vendor Secureworks, tapping investment bankers at Morgan Stanley and Piper Sandler to gauge takeover interest from potential acquirers, which include private equity firms, Reuters reported Thursday.
Majority owner Dell is exploring a possible sale of Atlanta-based cybersecurity services vendor Secureworks, tapping investment bankers at Morgan Stanley and Piper Sandler to gauge takeover interest from potential acquirers, which include private equity firms, Reuters reported Thursday.
Indictment of Telegram CEO Threatens End-to-End Encryption
10 months 1 week ago
Telegram Messages Hard to Encrypt But CEO Faces Charges for Noncompliant Cryptology
The arrest and indictment of Telegram CEO Pavel Durov is sparking concerns about the viability of encrypted communications in France. The Paris Prosecutor's Office indicted Durov, the 39-year-old Russian-born owner of Telegram on Wednesday, after arresting him Saturday night.
The arrest and indictment of Telegram CEO Pavel Durov is sparking concerns about the viability of encrypted communications in France. The Paris Prosecutor's Office indicted Durov, the 39-year-old Russian-born owner of Telegram on Wednesday, after arresting him Saturday night.
CISA and HHS Would Team Up in Health Sector Under House Bill
10 months 1 week ago
Bill Is Similar to Senate Proposals, But Will Congress Take Action Before Election?
A bipartisan House bill aims to bolster cybersecurity in the healthcare sector by requiring stronger collaboration between CISA and the Department of Health and Human Services. The bill is a companion to nearly identical bipartisan legislation introduced in the Senate in July.
A bipartisan House bill aims to bolster cybersecurity in the healthcare sector by requiring stronger collaboration between CISA and the Department of Health and Human Services. The bill is a companion to nearly identical bipartisan legislation introduced in the Senate in July.
US Body to Assess OpenAI and Anthropic Models Before Release
10 months 1 week ago
The AI Safety Institute Will Evaluate Safety and Suggest Improvements
AI companies OpenAI and Anthropic made a deal with a U.S. federal body to provide early access to major models for safety evaluations. The agreements are "are an important milestone as we work to help responsibly steward the future of AI," said U.S. AI Safety Institute Director Elizabeth Kelly.
AI companies OpenAI and Anthropic made a deal with a U.S. federal body to provide early access to major models for safety evaluations. The agreements are "are an important milestone as we work to help responsibly steward the future of AI," said U.S. AI Safety Institute Director Elizabeth Kelly.
Verkada Agrees to $2.95M Civil Penalty After Hacks
10 months 1 week ago
Cloud-Based Security Camera Firm Pledges Better Security in US FTC Settlement
A California security camera company agreed to pay a $2.95 million civil penalty and implement a security program after hackers in 2021 accessed video from 150,000 internet-connected security cameras, including from devices placed inside psychiatric hospitals and women's health clinics.
A California security camera company agreed to pay a $2.95 million civil penalty and implement a security program after hackers in 2021 accessed video from 150,000 internet-connected security cameras, including from devices placed inside psychiatric hospitals and women's health clinics.
SlowTempest: масштабная кибератака проникает в ключевые системы Китая
10 months 1 week ago
ZIP-архивы стали причиной массового шпионажа в стране.
CVE-2024-8366 | code-projects Pharmacy Management System 1.0 Update My Profile Page index.php fname/lname/email cross site scripting
10 months 1 week ago
A vulnerability was found in code-projects Pharmacy Management System 1.0. It has been classified as problematic. This affects an unknown part of the file /index.php?id=userProfileEdit of the component Update My Profile Page. The manipulation of the argument fname/lname/email with the input <script>alert(1)</script> leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2024-8366. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2024-8276 | WPZOOM Portfolio Lite Plugin up to 1.4.4 on WordPress cross site scripting
10 months 1 week ago
A vulnerability was found in WPZOOM Portfolio Lite Plugin up to 1.4.4 on WordPress and classified as problematic. Affected by this issue is some unknown functionality. The manipulation leads to cross site scripting.
This vulnerability is handled as CVE-2024-8276. The attack may be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-8108 | Share This Image Plugin up to 2.01 on WordPress alignment cross site scripting
10 months 1 week ago
A vulnerability has been found in Share This Image Plugin up to 2.01 on WordPress and classified as problematic. Affected by this vulnerability is an unknown functionality. The manipulation of the argument alignment leads to cross site scripting.
This vulnerability is known as CVE-2024-8108. The attack can be launched remotely. There is no exploit available.
vuldb.com
Submit #398778: https://code-projects.org https://code-projects.org/pharmacy-management-system-in-php-with-source-code/ 1.0 HTML Injection [Duplicate]
10 months 1 week ago
Submit #398778 / VDB-276261
vulrep
CVE-2022-4539 | Web Application Firewall Plugin up to 2.1.2 on WordPress protection mechanism
10 months 1 week ago
A vulnerability, which was classified as problematic, was found in Web Application Firewall Plugin up to 2.1.2 on WordPress. Affected is an unknown function. The manipulation leads to protection mechanism failure.
This vulnerability is traded as CVE-2022-4539. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
Submit #398777: https://code-projects.org/ https://code-projects.org/pharmacy-management-system-in-php-with-source-code/ 1.0 Stored XSS [Accepted]
10 months 1 week ago
Submit #398777 / VDB-276261
vulrep
CVE-2022-4100 | WP Cerber Security Plugin up to 9.4 on WordPress IP Protection access control
10 months 1 week ago
A vulnerability, which was classified as critical, has been found in WP Cerber Security Plugin up to 9.4 on WordPress. This issue affects some unknown processing of the component IP Protection. The manipulation leads to improper access controls.
The identification of this vulnerability is CVE-2022-4100. The attack may be initiated remotely. There is no exploit available.
vuldb.com
CVE-2022-4536 | IP Vault Plugin up to 1.1 on WordPress protection mechanism
10 months 1 week ago
A vulnerability classified as problematic was found in IP Vault Plugin up to 1.1 on WordPress. This vulnerability affects unknown code. The manipulation leads to protection mechanism failure.
This vulnerability was named CVE-2022-4536. The attack can be initiated remotely. There is no exploit available.
vuldb.com