Aggregator
Торвальдс vs. пассивный залог: битва за ясность в мире Linux
1 year 7 months ago
Отец Linux раскрывает секрет идеальных заметок к релизу.
研究人员发布针对CVE-2024-47176 CUPS漏洞的开源扫描器
1 year 7 months ago
安全客
Rails 8: создание веб-приложений быстрее и проще, чем когда-либо
1 year 7 months ago
Kamal 2, Propshaft и прокачанные адаптеры: что еще предлагает новая версия фреймворка?
Updates to the Lego Pi Radio Project
1 year 7 months ago
October 8, 2024Back in 2018 we first posted about JJ's Lego Pi Radio, which was an all-in-one
Cyberattack Group 'Awaken Likho' Targets Russian Government with Advanced Tools
1 year 7 months ago
Russian government agencies and industrial entities are the target of an ongoing activity cluster dubbed Awaken Likho.
"The attackers now prefer using the agent for the legitimate MeshCentral platform instead of the UltraVNC module, which they had previously used to gain remote access to systems," Kaspersky said, detailing a new campaign that began in June 2024 and continued at least until
The Hacker News
Hackers Gained Unauthorized Network Access to Casio Networks
1 year 7 months ago
Casio Computer Co., Ltd. has confirmed that a third party illegally accessed its network on October 5th, leading to significant disruptions in its services. The company disclosed the breach after conducting an internal investigation. The investigation revealed that the unauthorized access resulted in a system failure, affecting the availability of some services. Investigation Underway In […]
The post Hackers Gained Unauthorized Network Access to Casio Networks appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Divya
New Case Study: The Evil Twin Checkout Page
1 year 7 months ago
Is your store at risk? Discover how an innovative web security solution saved one global online retailer and its unsuspecting customers from an “evil twin” disaster. Read the full real-life case study here.
The Invisible Threat in Online Shopping
When is a checkout page, not a checkout page? When it's an “evil twin”! Malicious redirects can send unsuspecting shoppers to these perfect-looking
The Hacker News
GoldenJackal Target Embassies and Air-Gapped Systems Using Malware Toolsets
1 year 7 months ago
A little-known threat actor tracked as GoldenJackal has been linked to a series of cyber attacks targeting embassies and governmental organizations with an aim to infiltrate air-gapped systems using two disparate bespoke toolsets.
Victims included a South Asian embassy in Belarus and a European Union (E.U.) government organization, Slovak cybersecurity company ESET said.
"The ultimate goal of
The Hacker News
WPS Office从路径穿越到远程代码执行漏洞(CVE-2024-7262)分析与复现
1 year 7 months ago
WPS Office程序promecefpluginhost.exe存在不当路径验证问题,允许攻击者在Windows上加载任意Windows库文件。
Foxconn построит в Мексике крупнейший завод по производству суперчипов
1 year 7 months ago
Как сотрудничество с Nvidia повлияет на глобальное развитие искусственного интеллекта?
CVE-2021-31344 | Siemens APOGEE MBC ICMP Echo Packet type confusion (ssa-044112)
1 year 7 months ago
A vulnerability was found in Siemens APOGEE MBC, APOGEE MEC, APOGEE PXC Compact, APOGEE PXC Modular, Capital VSTAR, Nucleus NET, Nucleus ReadyStart, Nucleus Source Code, TALON TC Compact and TALON TC Modular. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the component ICMP Echo Packet Handler. The manipulation leads to type confusion.
This vulnerability is known as CVE-2021-31344. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2021-31345 | Siemens APOGEE MBC UDP Protocol buffer overflow (ssa-044112)
1 year 7 months ago
A vulnerability was found in Siemens APOGEE MBC, APOGEE MEC, APOGEE PXC Compact, APOGEE PXC Modular, Capital VSTAR, Nucleus NET, Nucleus ReadyStart, Nucleus Source Code, TALON TC Compact and TALON TC Modular. It has been rated as critical. Affected by this issue is some unknown functionality of the component UDP Protocol Handler. The manipulation leads to buffer overflow.
This vulnerability is handled as CVE-2021-31345. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2021-31346 | Siemens APOGEE MBC ICMP Packet buffer overflow (ssa-044112)
1 year 7 months ago
A vulnerability classified as critical has been found in Siemens APOGEE MBC, APOGEE MEC, APOGEE PXC Compact, APOGEE PXC Modular, Capital VSTAR, Nucleus NET, Nucleus ReadyStart, Nucleus Source Code, TALON TC Compact and TALON TC Modular. This affects an unknown part of the component ICMP Packet Handler. The manipulation leads to buffer overflow.
This vulnerability is uniquely identified as CVE-2021-31346. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2021-31881 | Siemens APOGEE MBC DHCP OFFER Message out-of-bounds (ssa-044112)
1 year 7 months ago
A vulnerability classified as problematic was found in Siemens APOGEE MBC, APOGEE MEC, APOGEE PXC Compact, APOGEE PXC Modular, Capital VSTAR, Nucleus NET, Nucleus ReadyStart, Nucleus Source Code, TALON TC Compact and TALON TC Modular. This vulnerability affects unknown code of the component DHCP OFFER Message Handler. The manipulation leads to out-of-bounds read.
This vulnerability was named CVE-2021-31881. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2021-31882 | Siemens APOGEE MBC DHCP ACK Packet memory corruption (ssa-044112)
1 year 7 months ago
A vulnerability, which was classified as critical, has been found in Siemens APOGEE MBC, APOGEE MEC, APOGEE PXC Compact, APOGEE PXC Modular, Capital VSTAR, Nucleus NET, Nucleus ReadyStart, Nucleus Source Code, TALON TC Compact and TALON TC Modular. This issue affects some unknown processing of the component DHCP ACK Packet Handler. The manipulation leads to memory corruption.
The identification of this vulnerability is CVE-2021-31882. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2021-31883 | Siemens APOGEE MBC DHCP ACK Message memory corruption (ssa-044112)
1 year 7 months ago
A vulnerability, which was classified as critical, was found in Siemens APOGEE MBC, APOGEE MEC, APOGEE PXC Compact, APOGEE PXC Modular, Capital VSTAR, Nucleus NET, Nucleus ReadyStart, Nucleus Source Code, TALON TC Compact and TALON TC Modular. Affected is an unknown function of the component DHCP ACK Message Handler. The manipulation leads to memory corruption.
This vulnerability is traded as CVE-2021-31883. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2021-31889 | Siemens APOGEE MBC TCP SACK Packet integer underflow (ssa-044112)
1 year 7 months ago
A vulnerability was found in Siemens APOGEE MBC, APOGEE MEC, APOGEE PXC Compact, APOGEE PXC Modular, Capital VSTAR, Nucleus NET, Nucleus ReadyStart, Nucleus Source Code, TALON TC Compact and TALON TC Modular. It has been classified as critical. This affects an unknown part of the component TCP SACK Packet Handler. The manipulation leads to integer underflow.
This vulnerability is uniquely identified as CVE-2021-31889. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2021-31890 | Siemens APOGEE MBC TCP buffer overflow (ssa-044112)
1 year 7 months ago
A vulnerability was found in Siemens APOGEE MBC, APOGEE MEC, APOGEE PXC Compact, APOGEE PXC Modular, Capital VSTAR, Nucleus NET, Nucleus ReadyStart, Nucleus Source Code, TALON TC Compact and TALON TC Modular. It has been declared as critical. This vulnerability affects unknown code of the component TCP Handler. The manipulation leads to buffer overflow.
This vulnerability was named CVE-2021-31890. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-24309 | Siemens Mendix prior 7.23.29/8.18.16 XPath access control (ssa-148641)
1 year 7 months ago
A vulnerability, which was classified as problematic, has been found in Siemens Mendix. Affected by this issue is some unknown functionality of the component XPath Handler. The manipulation leads to improper access controls.
This vulnerability is handled as CVE-2022-24309. The attack needs to be approached within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com