Aggregator
PDNS: британские школьники получат защиту от кибератак уровня Минобороны
10 months 3 weeks ago
Спецслужбы следят за безопасностью молодого поколения.
Зловещие данные: Speedtest может передавать информацию американским спецслужбам
10 months 3 weeks ago
Госдума и ФСБ предлагают отечественные продукты для измерения скорости интернета.
Тайваньский шоу-бизнес на службе Пекина: как далеко это зайдёт?
10 months 3 weeks ago
Правительственные объекты оказались под прицелом невидимых врагов.
CVE-2024-7417 | Royal Elementor Addons and Templates Plugin up to 1.3.986 on WordPress Private Post information disclosure
10 months 3 weeks ago
A vulnerability was found in Royal Elementor Addons and Templates Plugin up to 1.3.986 on WordPress. It has been classified as problematic. Affected is an unknown function of the component Private Post Handler. The manipulation leads to information disclosure.
This vulnerability is traded as CVE-2024-7417. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
CVE-2024-9862 | miniOrange OTP Verification with Firebase Plugin up to 3.6.0 on WordPress unverified password change
10 months 3 weeks ago
A vulnerability classified as critical has been found in miniOrange OTP Verification with Firebase Plugin up to 3.6.0 on WordPress. This affects an unknown part. The manipulation leads to unverified password change.
This vulnerability is uniquely identified as CVE-2024-9862. It is possible to initiate the attack remotely. There is no exploit available.
vuldb.com
CVE-2024-9861 | miniOrange OTP Verification with Firebase Plugin up to 3.6.0 on WordPress improper authentication
10 months 3 weeks ago
A vulnerability classified as critical was found in miniOrange OTP Verification with Firebase Plugin up to 3.6.0 on WordPress. This vulnerability affects unknown code. The manipulation leads to improper authentication.
This vulnerability was named CVE-2024-9861. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-9863 | miniOrange OTP Verification with Firebase Plugin up to 3.6.0 on WordPress Registration privileges assignment
10 months 3 weeks ago
A vulnerability has been found in miniOrange OTP Verification with Firebase Plugin up to 3.6.0 on WordPress and classified as critical. Affected by this vulnerability is an unknown functionality of the component Registration. The manipulation leads to incorrect privilege assignment.
This vulnerability is known as CVE-2024-9863. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-9351 | Forminator Forms Plugin up to 1.35.1 on WordPress Draft Quiz Creation cross-site request forgery
10 months 3 weeks ago
A vulnerability, which was classified as problematic, was found in Forminator Forms Plugin up to 1.35.1 on WordPress. Affected is an unknown function of the component Draft Quiz Creation. The manipulation leads to cross-site request forgery.
This vulnerability is traded as CVE-2024-9351. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
CVE-2024-9215 | publishpress Co-Authors, Multiple Authors and Guest Authors in an Author Box Plugin action_edited_author authorization
10 months 3 weeks ago
A vulnerability has been found in publishpress Co-Authors, Multiple Authors and Guest Authors in an Author Box Plugin up to 4.7.1 on WordPress and classified as critical. Affected by this vulnerability is the function action_edited_author. The manipulation leads to authorization bypass.
This vulnerability is known as CVE-2024-9215. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-9263 | arraytics WP Timetics Plugin up to 1.0.25 on WordPress Object Reference save authorization (ID 3169771)
10 months 3 weeks ago
A vulnerability was found in arraytics WP Timetics Plugin up to 1.0.25 on WordPress and classified as critical. Affected by this issue is the function save of the component Object Reference Handler. The manipulation leads to authorization bypass.
This vulnerability is handled as CVE-2024-9263. The attack may be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-5429 | Logo Slider Plugin up to 4.0.x on WordPress Attribute cross site scripting
10 months 3 weeks ago
A vulnerability was found in Logo Slider Plugin up to 4.0.x on WordPress. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the component Attribute Handler. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2024-5429. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CISA 警告 SolarWinds Help Desk 软件漏洞被主动利用
10 months 3 weeks ago
安全客
CVE-2014-7751 | Fotoschilenas Recetas de Tragos 0.1 X.509 Certificate cryptographic issues (VU#582497)
10 months 3 weeks ago
A vulnerability was found in Fotoschilenas Recetas de Tragos 0.1. It has been classified as critical. This affects an unknown part of the component X.509 Certificate Handler. The manipulation leads to cryptographic issues.
This vulnerability is uniquely identified as CVE-2014-7751. Access to the local network is required for this attack. There is no exploit available.
vuldb.com
谷歌 2023年披露的漏洞中,70%是0 Day
10 months 3 weeks ago
主站 分类 漏洞 工具 极客
美国网络安全和基础设施安全局 (CISA) 在其已知漏洞目录中增加了 Windows 内核、Mozilla Firefox 和 SolarWinds Web Help Desk 漏洞。
10 months 3 weeks ago
安全客
How To Integrate Technology In The Classroom: A Comprehensive Guide
10 months 3 weeks ago
School classrooms rely on technology. From the technologies that fuel remote learning and provide access to a world of educational resources to those that facilitate interactive, personalized learning, never before have teachers and students had such influential tools at their disposal. Even though the sky’s the limit, technology can still present challenges — with integration ...
The post How To Integrate Technology In The Classroom: A Comprehensive Guide appeared first on ManagedMethods Cybersecurity, Safety & Compliance for K-12.
The post How To Integrate Technology In The Classroom: A Comprehensive Guide appeared first on Security Boulevard.
Alexa Sander
От нуля до N: хакеры побили рекорд в скорости эксплуатации уязвимостей
10 months 3 weeks ago
Статистика 0Day-атак скрывает настоящую цифровую пандемию.
从误用到滥用: 人工智能风险与攻击
10 months 3 weeks ago
安全客
Statelijke inmenging zet persoonlijke én nationale veiligheid onder druk
10 months 3 weeks ago
Andere landen proberen invloed uit te oefenen op Nederlanders met een migratieachtergrond. Dit doen ze bijvoorbeeld door spionage, intimidatie of zelfs ontvoering of moord. Deze vormen van statelijke inmenging zetten niet alleen de persoonlijke vrijheden van inwoners van Nederland onder druk, maar ondermijnen ook de democratische rechtsorde in Nederland. Dat staat in de fenomeenanalyse Over de grens van de AIVD en de NCTV over statelijke inmenging in diasporagemeenschappen. De publicatie helpt de samenleving en overheidsorganisaties om dit fenomeen beter te herkennen en te begrijpen. Op rijksoverheid.nl is een communicatietoolkit gelanceerd om hierover het gesprek te stimuleren.