Aggregator
New Malware Targets Android Users by Abusing Cross-Platform Framework for Evasion
A recent discovery by the McAfee Mobile Research Team has highlighted a new wave of Android malware campaigns that utilize the .NET MAUI cross-platform framework to evade detection. This framework, introduced by Microsoft as a replacement for Xamarin, allows developers to build applications for multiple platforms, including Android, iOS, Windows, and macOS. However, cybercriminals have […]
The post New Malware Targets Android Users by Abusing Cross-Platform Framework for Evasion appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Искусственные нервы оживят неподвижное тело: паралич ‒ больше не приговор
Cicada3301
New Android Malware Uses .NET MAUI to Evade Detection
Панель управления в кармане: VanHelsing делает вымогательство максимально мобильным
Accused Snowflake Attacker 'Judische' Agrees to US Extradition
Randall Munroe’s XKCD ‘Lungfish’
via the comic humor & dry wit of Randall Munroe, creator of XKCD
The post Randall Munroe’s XKCD ‘Lungfish’ appeared first on Security Boulevard.
CVE-2022-44566 | activerecord Gem on Ruby PostgreSQL Adapter denial of service
CVE-2022-48297 | Huawei EMUI/Magic UI Geofencing out-of-bounds
CVE-2022-48299 | Huawei EMUI/Magic UI WMS Module improper authentication
CVE-2023-22798 | Brave adblock-lists redirect
CVE-2023-35812 | Amazon Linux AMI prior 0:7.4p1-22.amzn2.0.2 OpenSSH Client path traversal
CVE-2024-24722 | 12d Synergy Server/File Replication Server prior 4.3.10.192/5.1.5.221/5.1.6.235 unquoted search path
CVE-2023-24330 | D-Link DIR-882 FW130B06 POST Request /HNAP1/ command injection
CVE-2023-24334 | Tenda AC23 16.03.07.45_cn_TDC01 schedStartTime stack-based overflow
CVE-2024-29753 | Google Android tmu.c tmu_set_control_temp_step out-of-bounds write
CVE-2024-29783 | Google Android tmu_get_tr_thresholds out-of-bounds
Лесные Архимеды: шимпанзе знают законы физики лучше, чем мы думали
Ingress-nginx vulnerabilities can lead to Kubernetes cluster takeover
Wiz researchers have unearthed several critical vulnerabilities affecting Ingress NGINX Controller for Kubernetes (ingress-nginx) that may allow attackers to take over Kubernetes clusters. “Based on our analysis, about 43% of cloud environments are vulnerable to these vulnerabilities, with our research uncovering over 6,500 clusters, including Fortune 500 companies, that publicly expose vulnerable Kubernetes ingress controllers’ admission controllers to the public internet—putting them at immediate critical risk,” the researchers noted. The “IngressNightmare” vulnerabilities Ingress NGINX Controller … More →
The post Ingress-nginx vulnerabilities can lead to Kubernetes cluster takeover appeared first on Help Net Security.