Aggregator
Rhode Island confirms data breach after Brain Cipher ransomware attack
1 year ago
Rhode Island is warning that its RIBridges system, managed by Deloitte, suffered a data breach exposing residents' personal information after the Brain Cipher ransomware gang hacked its systems. [...]
Bill Toulas
Nieuwe satellieten voor verbeteren informatiepositie van Defensie
1 year ago
Het Delftse bedrijf ISISpace (Innovative Solutions in Space) gaat zich inzetten voor de krijgsmacht. Dat gebeurt voor de ontwikkeling, de bouw en de operatie van satellieten. Beide partijen legden dit vandaag contractueel vast.
CVE-2009-3242 | Wireshark 1.2.0/1.2.1 packet.c denial of service (Bug 3893 / EDB-33224)
1 year ago
A vulnerability, which was classified as problematic, has been found in Wireshark 1.2.0/1.2.1. Affected by this issue is some unknown functionality of the file packet.c. The manipulation leads to denial of service.
This vulnerability is handled as CVE-2009-3242. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
Монета с характером: почему у орла и решки неравные шансы
1 year ago
Самый древний способ принятия решений оказался обманкой.
Federal money is helping states overhaul cybersecurity. What happens if it dries up?
1 year ago
As hackers pummel state and local governments with cyberattacks that exploit their untrained employ
CISA and EPA Warn of Cyber Risks to Water System Interfaces
1 year ago
CISA and EPA have published guidance for operators of water and wastewater systems to protect against cyber-attacks
Apache Struts2 文件上传逻辑绕过(CVE-2024-53677)(S2-067)
1 year ago
前言 Apache官方公告又更新了一个Struts2的漏洞,考虑到很久没有发无密码的博客了,再加上漏洞的影响并不严重,因此公开分享利用的思路。分析影响版本Struts 2.0.0 - Struts
CVE-2022-0441 | MasterStudy LMS Plugin up to 2.7.5 on WordPress New Account privileges management (ID 2667195 / EDB-50752)
1 year ago
A vulnerability classified as critical was found in MasterStudy LMS Plugin up to 2.7.5 on WordPress. This vulnerability affects unknown code of the component New Account Handler. The manipulation leads to improper privilege management.
This vulnerability was named CVE-2022-0441. The attack needs to be done within the local network. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
Top 5 roadblocks for MSPs and how OpenText MDR clears the way
1 year ago
The managed service provider (MSP) industry is booming with opportunities. At the same time
A Threat Actor is Allegedly Selling Data of NiceHash for 1.5 BTC
1 year ago
A Threat Actor is Allegedly Selling Data of NiceHash for 1.5 BTC
Dark Web Informer - Cyber Threat Intelligence
Hacking Kerio Control via CVE-2024-52875: from CRLF Injection to 1-click RCE
1 year ago
CVE-2024-1597 | PostgreSQL pgjdbc up to 42.7.1 Simple Query Mode sql injection (GHSA-24rp-q3w6-vc56 / Nessus ID 213039)
1 year ago
A vulnerability was found in PostgreSQL pgjdbc up to 42.7.1. It has been rated as critical. This issue affects some unknown processing of the component Simple Query Mode. The manipulation leads to sql injection.
The identification of this vulnerability is CVE-2024-1597. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-31197 | PostgreSQL JDBC Driver up to 42.2.25/42.4.0 java.sql.ResultRow.refreshRow sql injection (GHSA-r38f-c4h4-hqq2 / Nessus ID 213039)
1 year ago
A vulnerability was found in PostgreSQL JDBC Driver up to 42.2.25/42.4.0. It has been declared as critical. Affected by this vulnerability is the function java.sql.ResultRow.refreshRow. The manipulation leads to sql injection.
This vulnerability is known as CVE-2022-31197. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-31197 | Oracle Enterprise Data Quality 12.2.1.4.0 General sql injection (Nessus ID 213039)
1 year ago
A vulnerability, which was classified as critical, was found in Oracle Enterprise Data Quality 12.2.1.4.0. This affects an unknown part of the component General. The manipulation leads to sql injection.
This vulnerability is uniquely identified as CVE-2022-31197. It is possible to initiate the attack remotely. There is no exploit available.
vuldb.com
Akira
1 year ago
cohenido
Akira
1 year ago
cohenido
【已复现】Apache Struts 文件上传漏洞(CVE-2024-53677)安全风险通告第二次更新
1 year ago
致力于第一时间为企业级用户提供权威漏洞情报和有效解决方案。
A Threat Actor Claims to Have Leaked Data of an Unidentified Private Clinic in the USA
1 year ago
A Threat Actor Claims to Have Leaked Data of an Unidentified Private Clinic in the USA
Dark Web Informer - Cyber Threat Intelligence
MovieNet опережает человека и Google: точность анализа выше на 18%
1 year ago
ИИ модель подражает работе человеческого мозга при анализе видео.