Aggregator
Crypto Scam App Disguised as WalletConnect Steals $70K in Five-Month Campaign
10 months 2 weeks ago
Cryptocurrency / Mobile SecurityCybersecurity researchers have discovered a malicious Android app
CVE-2007-4069 | Index Script up to 2.8 show_cat.php cat_id sql injection (EDB-4225 / XFDB-35592)
10 months 2 weeks ago
A vulnerability was found in Index Script up to 2.8. It has been classified as critical. Affected is an unknown function of the file show_cat.php. The manipulation of the argument cat_id leads to sql injection.
This vulnerability is traded as CVE-2007-4069. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
Ghidra Tip 0x06: DomainFiles in Projects
10 months 2 weeks ago
This article is based on the public release of Ghidra 11.2.Ghidra’s project base
CiphBit
10 months 2 weeks ago
cohenido
SecWiki News 2024-09-28 Review
10 months 2 weeks ago
VDB-278834 | Backdoor.Win32.Prorat.jz FTP Service stack-based overflow
10 months 2 weeks ago
A vulnerability was found in Backdoor.Win32.Prorat.jz and classified as critical. Affected by this issue is some unknown functionality of the component FTP Service. The manipulation leads to stack-based buffer overflow.
The attack may be launched remotely. Furthermore, there is an exploit available.
It is recommended to apply restrictive firewalling.
vuldb.com
VDB-278833 | Backdoor.Win32.Amatu.a Service Port 2121 mine.exe backdoor
10 months 2 weeks ago
A vulnerability has been found in Backdoor.Win32.Amatu.a and classified as critical. Affected by this vulnerability is an unknown functionality of the file mine.exe of the component Service Port 2121. The manipulation leads to backdoor.
The attack can be launched remotely. Furthermore, there is an exploit available.
It is recommended to apply restrictive firewalling.
vuldb.com
VDB-278832 | Backdoor.Win32.Agent.pw Service Port 21111 stack-based overflow
10 months 2 weeks ago
A vulnerability, which was classified as critical, was found in Backdoor.Win32.Agent.pw. Affected is an unknown function of the component Service Port 21111. The manipulation leads to stack-based buffer overflow.
It is possible to launch the attack remotely. Furthermore, there is an exploit available.
It is recommended to apply restrictive firewalling.
vuldb.com
VDB-278831 | Backdoor.Win32.Boiling Service Port 4369 backdoor
10 months 2 weeks ago
A vulnerability, which was classified as critical, has been found in Backdoor.Win32.Boiling. This issue affects some unknown processing of the component Service Port 4369. The manipulation leads to backdoor.
The attack may be initiated remotely. Furthermore, there is an exploit available.
It is recommended to apply restrictive firewalling.
vuldb.com
Submit #415150: Backdoor.Win32.Prorat.jz 277f9a4db328476300c4da5f680902ea 277f9a4db328476300c4da5f680902ea Remote Stack Buffer Overflow (SEH) [Accepted]
10 months 2 weeks ago
Submit #415150 / VDB-278834
malvuln
Submit #415149: Backdoor.Win32.Amatu.a 1e2d0b90ffc23e00b743c41064bdcc6b 1e2d0b90ffc23e00b743c41064bdcc6b Remote Arbitrary File Write (RCE) [Accepted]
10 months 2 weeks ago
Submit #415149 / VDB-278833
malvuln
Submit #415145: Backdoor.Win32.Agent.pw 68dd7df213674e096d6ee255a7b90088 68dd7df213674e096d6ee255a7b90088 Remote Stack Buffer Overflow (SEH) [Accepted]
10 months 2 weeks ago
Submit #415145 / VDB-278832
malvuln
Submit #415144: Backdoor.Win32.Boiling 80cb490e5d3c4205434850eff6ef5f8f 80cb490e5d3c4205434850eff6ef5f8f. Unauthenticated Remote Command Execution [Accepted]
10 months 2 weeks ago
Submit #415144 / VDB-278831
malvuln
99% точности: тайна нового метода квантовых вычислений
10 months 2 weeks ago
Технология голографического управления светом помогла сохранить кубиты.
Голографическая Вселенная: как забытые идеи фон Неймана раскрывают тайны Вселенной
10 months 2 weeks ago
Как идеи прошлого помогают современным учёным исследовать космос.
api漏洞系列-401、404和302
10 months 2 weeks ago
Meta 因用纯文本存储 6 亿用户密码被罚 1.015 亿美元
10 months 2 weeks ago
因 Meta 多年时间里以纯文本存储愈 5 亿用户密码,爱尔兰数据保护委员会 (DPC) 对其处以 1.015 亿美元罚款。该问题是在 2019 年发现的,主要影响非美国用户,Facebook/Meta 此前披露受影响的主要是 Facebook Lite 服务。Facebook Lite 是 Meta 为网速较慢地区用户推出的服务。Meta 被指违反了欧盟数字保护法 GDPR,包括未通知 DPC 纯文本存储用户密码的可能个人数据泄露。Meta 的用户密码没有泄露到外界,但允许其工程师内部访问。
Irish Data Protection Commission fined Meta €91 million for storing passwords in readable format
10 months 2 weeks ago
The Irish Data Protection Commission (DPC) fined Meta €91 million for storing the passwords of hundreds of millions of users in plaintext. The Irish Data Protection Commission (DPC) has fined Meta Platforms Ireland Limited (MPIL) €91 million ($100 million) for storing the passwords of hundreds of millions of users in plaintext, violating data protection regulations. […]
Pierluigi Paganini
Data training per l’IA: scontro Big Tech-UE, ma il GDPR è baluardo dei nostri diritti
10 months 2 weeks ago
Meta, Spotify e altre grandi aziende tecnologiche hanno di recente criticato, con una lettera aperta