Aggregator
开源身份和访问管理平台 Keycloak 发布了安全更新以解决一个高严重性漏洞
11 months 1 week ago
安全客
美国证券交易委员会与贸易公司达成和解,称其利用人工智能“流行语”欺骗投资者
11 months 1 week ago
安全客
CVE-2016-2016 | Base-VxFS/VxFS ACL Inheritance access control (ID 185123 / ID 1035816)
11 months 1 week ago
A vulnerability was found in Base-VxFS and VxFS. It has been declared as problematic. This vulnerability affects unknown code of the component ACL Inheritance Handler. The manipulation leads to improper access controls.
This vulnerability was named CVE-2016-2016. Attacking locally is a requirement. There is no exploit available.
vuldb.com
AsyncRAT 恶意软件活动利用 Bitbucket 发起多阶段攻击
11 months 1 week ago
安全客
Progress 修补 Telerik 报告服务器中的重大安全漏洞 CVE-2024-8015 (CVSS 9.1)
11 months 1 week ago
安全客
CVE-2024-41713 (CVSS 9.8): 未修补的 MiCollab 漏洞允许未经授权的访问
11 months 1 week ago
安全客
Zyxel 设备遭恶意攻击: 需要紧急固件更新
11 months 1 week ago
安全客
Palo Alto Expedition 中的 CVE-2024-9465 (CVSS 9.2) SQLi 漏洞曝光: 发布完整漏洞利用和 PoC
11 months 1 week ago
安全客
Veeam曝出关键漏洞,勒索团伙趁火打劫利用RCE攻击全球企业
11 months 1 week ago
主站 分类 漏洞 工具 极客
伊朗黑客使用ChatGPT策划ICS攻击
11 months 1 week ago
据OPENAI本月最新发布的报告《Influence and cyber operations: an update》,伊朗黑客组织CyberAv3ngers利用人工智能模型ChatGPT策划针对工业
诺贝尔和平奖授予日本核爆受害者团体
11 months 1 week ago
2024 年诺贝尔和平奖授予了日本原子弹氢弹爆炸受害者团体协议会(简称被团协)。被团协由
广岛、长崎核爆幸存者组成,因其为实现无核世界所做的努力以及通过证人证词表明绝不能再次使用核武器而获得和平奖。挪威诺贝尔委员会希望借此承认一个事实:核武器在接近 80 年里没有在战争中使用过。日本被团协等组织为核禁忌的建立做出了巨大贡献。但令人担忧的是今天反对使用核武器的禁忌正面临压力。核大国正对其核武库进行现代化和升级;新兴国家似乎正准备获取核武器;当前正发生的战争出现了使用核武器的威胁。在人类历史的这一时刻,我们需要提醒自己核武器是什么:它们是世界上迄今为止最具破坏性的武器。
CVE-2024-9817 | code-projects Blood Bank System 1.0 /update.php name sql injection
11 months 1 week ago
A vulnerability was found in code-projects Blood Bank System 1.0. It has been classified as critical. This affects an unknown part of the file /update.php. The manipulation of the argument name leads to sql injection.
This vulnerability is uniquely identified as CVE-2024-9817. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2024-9818 | SourceCodester Online Veterinary Appointment System 1.0 manage_category.php id sql injection
11 months 1 week ago
A vulnerability classified as critical has been found in SourceCodester Online Veterinary Appointment System 1.0. Affected is an unknown function of the file /admin/categories/manage_category.php. The manipulation of the argument id leads to sql injection.
This vulnerability is traded as CVE-2024-9818. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
Sonatype Reports 156% Increase in OSS Malicious Packages
11 months 1 week ago
A new Sonatype report reveals a 156% surge in open source malware, with over 704,102 malicious packages identified since 2019, as OSS adoption continues to skyrocket
Check Point 软件技术公司在 2024 年 Gartner® 端点防护平台魔力象限™ 报告中获评端点安全防护远见者
11 months 1 week ago
Check Point
Passkey, который мы так ждали: Windows Hello обзавёлся новой функцией
11 months 1 week ago
Microsoft открывает новую эру безопасности, где не нужно жертвовать удобством.
供应链安全问题已成为国际冲突“超限战”武器
11 months 1 week ago
供应链安全问题已成为国际冲突“超限战”武器 日期:2024年10月11日 阅:11
业务安全“星选厂商”|海云安入选2024年度网络与信息安全行业代表性星选企业
11 months 1 week ago
业务安全“星选厂商”|海云安入选2024年度网络与信息安全行业代表性星选企业 日期:2024年10月11日 阅:12
Russia's SVR Targets Zimbra, TeamCity Servers for Cyber Espionage
11 months 1 week ago
Russian-backed APT29 has been spying on US and European organizations since at least 2021, a US-UK joint advisory said