Aggregator
‘Brothers in arms’ geëerd na inzet in steeds onrustiger wordende wereld
10 months 3 weeks ago
“Hoe soepel ga je in een gevechtssituatie om met regels en procedures? Kies je voor de can do mentaliteit die wij hier in Nederland graag koesteren? Of houd je liever vast aan gemaakte afspraken?” Commandant der Strijdkrachten (CDS) generaal Onno Eichelsheim stelde de vragen en plein public voor zo’n 550 militairen, terug van een uitzending.
CVE-2014-7757 | Awful Ninja Game 1.0.23 X.509 Certificate cryptographic issues (VU#582497)
10 months 3 weeks ago
A vulnerability, which was classified as critical, was found in Awful Ninja Game 1.0.23. This affects an unknown part of the component X.509 Certificate Handler. The manipulation leads to cryptographic issues.
This vulnerability is uniquely identified as CVE-2014-7757. The attack needs to be initiated within the local network. There is no exploit available.
vuldb.com
От чат-ботов до разведки: новый вектор развития Google
10 months 3 weeks ago
Компания представила секретную версию Gemini для военных и разведки США.
Iranian Hackers Target Critical Infrastructure with Brute Force Attacks
10 months 3 weeks ago
The ongoing campaign targets multiple critical infrastructure sectors, including healthcare, government, information technology, engineering, and energy
USENIX NSDI ’24 – Towards Provably Performant Congestion Control
10 months 3 weeks ago
Authors/Presenters:Anup Agarwal, Venkat Arun, Devdeep Ray, Ruben Martins, Srinivasan Seshan
Our sincere thanks to USENIX, and the Presenters & Authors for publishing their superb 21st USENIX Symposium on Networked Systems Design and Implementation (NSDI '24) content, placing the organizations enduring commitment to Open Access front and center. Originating from the conference’s events situated at the Hyatt Regency Santa Clara; and via the organizations YouTube channel.
The post USENIX NSDI ’24 – Towards Provably Performant Congestion Control appeared first on Security Boulevard.
Marc Handelman
CVE-2010-2482 | LibTIFF up to 3.9.4 null pointer dereference (Bug 608010 / EDB-14573)
10 months 3 weeks ago
A vulnerability, which was classified as problematic, has been found in LibTIFF. Affected by this issue is some unknown functionality. The manipulation leads to null pointer dereference.
This vulnerability is handled as CVE-2010-2482. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2024-48920 | acm309 PutongOJ prior 2.1.0-beta.1 missing authentication
10 months 3 weeks ago
A vulnerability classified as critical has been found in acm309 PutongOJ. This affects an unknown part. The manipulation leads to missing authentication.
This vulnerability is uniquely identified as CVE-2024-48920. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
Цифровой детокс: как смартфоны Nokia помогут бороться с отвлечением внимания
10 months 3 weeks ago
Простое, но гениальное решение превращает смартфон в инструмент для концентрации.
热点 | 又一汽车巨头遭勒索攻击,360为车企系好网络“安全带”
10 months 3 weeks ago
安全客
Hackers blackmail Globe Life after stealing customer data
10 months 3 weeks ago
Insurance giant Globe Life says an unknown threat actor attempted to extort money in exchange for not publishing data stolen from the company's systems earlier this year. [...]
Bill Toulas
CVE-2014-7756 | Radiohead Fan 4.6.2 X.509 Certificate cryptographic issues (VU#582497)
10 months 3 weeks ago
A vulnerability, which was classified as critical, has been found in Radiohead Fan 4.6.2. Affected by this issue is some unknown functionality of the component X.509 Certificate Handler. The manipulation leads to cryptographic issues.
This vulnerability is handled as CVE-2014-7756. The attack needs to be done within the local network. There is no exploit available.
vuldb.com
利用开源 EDRSilencer 工具以规避 EDR
10 months 3 weeks ago
安全客
Школьник может лишиться будущего из-за использования ИИ
10 months 3 weeks ago
Родители учащегося подают на учебное заведение в суд.
Sudanese Brothers Arrested in ‘AnonSudan’ Takedown
10 months 3 weeks ago
The U.S. government on Wednesday announced the arrest and charging of two Sudanese brothers accused of running Anonymous Sudan (a.k.a. AnonSudan), a cybercrime business known for launching powerful distributed denial-of-service (DDoS) attacks against a range of targets, including dozens of hospitals, news websites and cloud providers. One of the brothers is facing life in prison for allegedly seeking to kill people with his attacks.
BrianKrebs
CVE-2014-7755 | eTopUpOnline 3.4.9 X.509 Certificate cryptographic issues (VU#582497)
10 months 3 weeks ago
A vulnerability classified as critical was found in eTopUpOnline 3.4.9. Affected by this vulnerability is an unknown functionality of the component X.509 Certificate Handler. The manipulation leads to cryptographic issues.
This vulnerability is known as CVE-2014-7755. The attack can only be initiated within the local network. There is no exploit available.
vuldb.com
openHarmony逆向工具包
10 months 3 weeks ago
ABCDE是一个使用Kotlin编写的OpenHarmony逆向工具包,目前已经实现的功能为解析方舟字节码文件中 的类信息、方法信息、字面量数组信息以及对方法进行反汇编,解析资源索引文件等功能。...
黑海洋
Top 5 Cloud Security Automations for SecOps Teams
10 months 3 weeks ago
Learn about 5 powerful cloud security automations with Blink Ops to simplify security operations like S3 bucket monitoring, subdomain takeover detection and failed EC2 login detection. [...]
Sponsored by Blink Ops
CVE-2021-23017 | Oracle GoldenGate GG Market Place for Support off-by-one (EDB-50973)
10 months 3 weeks ago
A vulnerability, which was classified as very critical, has been found in Oracle GoldenGate. This issue affects some unknown processing of the component GG Market Place for Support. The manipulation leads to off-by-one.
The identification of this vulnerability is CVE-2021-23017. The attack may be initiated remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
Horns&Hooves: цифровой Остап Бендер обчищает компании по всей стране
10 months 3 weeks ago
«Лаборатория Касперского» обнаружила массовую рассылку с вредоносными файлами.