Aggregator
CVE-2022-29931 | Raytion 7.2.0 cross site scripting
CVE-2022-32810 | Apple iOS/iPadOS up to 15.5 Apple Neural Engine Local Privilege Escalation (HT213346)
CVE-2022-32793 | Apple iOS/iPadOS up to 15.5 GPU Drivers out-of-bounds write (HT213346)
CVE-2022-32793 | Apple tvOS up to 15.5.1 GPU Drivers out-of-bounds write (HT213342)
CVE-2022-32810 | Apple watchOS up to 8.6 Apple Neural Engine Local Privilege Escalation (HT213340)
CVE-2022-32793 | Apple watchOS up to 8.6 GPU Drivers out-of-bounds write (HT213340)
CVE-2022-32810 | Apple macOS Apple Neural Engine Local Privilege Escalation (HT213345)
CVE-2022-32793 | Apple macOS GPU Drivers out-of-bounds write (HT213345)
CVE-2022-40674 | libexpat up to 2.4.8 xmlparse.c doContent use after free (DLA 3119-1 / Nessus ID 208595)
CVE-2022-43680 | libexpat up to 2.4.9 XML_ExternalEntityParserCreate use after free (Issue 649 / Nessus ID 211295)
CVE-2022-43680 | Oracle Middleware Common Libraries and Tools 12.2.1.4.0 Centralized Third-party Jars denial of service (Nessus ID 211295)
阿迪达斯曝数据泄露事件,NASA开源软件发现安全漏洞|一周特辑
CVE-2021-44529 | Ivanti EPM Cloud Services Appliance code injection (SA-2021-12-02 / EDB-50833)
CVE-2023-44488 | WebM Project libvpx up to 1.13.0 VP9 vp9_encoder.c memory corruption (Nessus ID 237588)
CVE-2000-0465 | Microsoft Internet Explorer 4.0/4.0.1/5.0/5.0.1 Frame DocumentComplete privileges management (MS00-033 / EDB-19939)
Hackers Drop Info-Stealing Malware On TikTok Users Device Using AI-Generated Videos
Cybercriminals have weaponized artificial intelligence to create sophisticated social engineering attacks on TikTok, using AI-generated tutorial videos to distribute dangerous information-stealing malware that has already reached hundreds of thousands of users across the platform. Threat actors are exploiting TikTok’s massive user base by creating convincing AI-generated videos that masquerade as legitimate software tutorials, specifically targeting […]
The post Hackers Drop Info-Stealing Malware On TikTok Users Device Using AI-Generated Videos appeared first on Cyber Security News.
DoD Cyber Clause Flowdown: What Suppliers Must Do
The Department of Defense DFARS Cybersecurity Clause, more commonly known as the DoD Cyber Clause (or just DFARS 7012), is the long-standing set of rules the DoD has put in place for all members of the DoD supply chain and defense industrial base. It has also spread beyond those boundaries through the use of DFARS […]
The post DoD Cyber Clause Flowdown: What Suppliers Must Do appeared first on Security Boulevard.