A new malicious package called 'SteelFox' mines for cryptocurrency and steals credit card data by using the "bring your own vulnerable driver" technique to get SYSTEM privileges on Windows machines. [...]
A vulnerability was found in Apple Mac OS X up to 10.11.4. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the component Kernel. The manipulation leads to memory corruption.
This vulnerability is known as CVE-2016-1830. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
An ongoing threat campaign dubbed VEILDrive has been observed taking advantage of legitimate services from Microsoft, including Teams, SharePoint, Quick Assist, and OneDrive, as part of its modus operandi.
"Leveraging Microsoft SaaS services — including Teams, SharePoint, Quick Assist, and OneDrive — the attacker exploited the trusted infrastructures of previously compromised organizations to
A vulnerability, which was classified as problematic, has been found in Symfony. Affected by this issue is the function NoPrivateNetworkHttpClient. The manipulation leads to information disclosure.
This vulnerability is handled as CVE-2024-50342. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability classified as problematic was found in Symfony. Affected by this vulnerability is an unknown functionality. The manipulation leads to information disclosure.
This vulnerability is known as CVE-2024-50343. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability classified as problematic has been found in Symfony. Affected is an unknown function. The manipulation leads to open redirect.
This vulnerability is traded as CVE-2024-50345. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Symfony on Windows. It has been rated as critical. This issue affects some unknown processing of the component Process Class Handler. The manipulation leads to command injection.
The identification of this vulnerability is CVE-2024-51736. The attack needs to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.