Aggregator
DuckDuckGo加强诈骗防御以阻止假冒商店和加密网站
6 months 1 week ago
安全客
热点 | 利用AI造谣幼儿园大火被抓,大模型内容安全谁来守护?
6 months 1 week ago
安全客
医疗保健SaaS公司称数据泄露影响了540万患者
6 months 1 week ago
安全客
Microsoft investigates OneDrive bug that breaks file search
6 months 1 week ago
Microsoft is investigating a known OneDrive issue that is causing searches to appear blank for some users or return no results even when searching for files they know they've already uploaded. [...]
Sergiu Gatlan
Qilin Ransomware Adds "Call Lawyer" Feature to Pressure Victims for Larger Ransoms
6 months 1 week ago
The threat actors behind the Qilin ransomware-as-a-service (RaaS) scheme are now offering legal counsel for affiliates to put more pressure on victims to pay up, as the cybercrime group intensifies its activity and tries to fill the void left by its rivals.
The new feature takes the form of a "Call Lawyer" feature on the affiliate panel, per Israeli cybersecurity company Cybereason.
The
The Hacker News
CVE-2023-29536 | Mozilla Firefox up to 111 Javascript Code memory corruption (Bug 1821959 / Nessus ID 239763)
6 months 1 week ago
A vulnerability classified as critical has been found in Mozilla Firefox up to 111. Affected is an unknown function of the component Javascript Code Handler. The manipulation leads to memory corruption.
This vulnerability is traded as CVE-2023-29536. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2023-4050 | Mozilla Firefox up to 115.9 stack-based overflow (DLA 3521-1 / Nessus ID 239763)
6 months 1 week ago
A vulnerability was found in Mozilla Firefox. It has been rated as critical. This issue affects some unknown processing. The manipulation leads to stack-based buffer overflow.
The identification of this vulnerability is CVE-2023-4050. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2023-4046 | Mozilla Firefox up to 115.23.1 WASM JIT Analysis denial of service (DLA 3521-1 / Nessus ID 239763)
6 months 1 week ago
A vulnerability, which was classified as problematic, has been found in Mozilla Firefox. This issue affects some unknown processing of the component WASM JIT Analysis. The manipulation leads to denial of service.
The identification of this vulnerability is CVE-2023-4046. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2023-4049 | Mozilla Firefox up to 115.23.1 use after free (DLA 3521-1 / Nessus ID 239763)
6 months 1 week ago
A vulnerability classified as problematic was found in Mozilla Firefox. Affected by this vulnerability is an unknown functionality. The manipulation leads to use after free.
This vulnerability is known as CVE-2023-4049. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2023-4578 | Mozilla Firefox up to 116 SpiderMonkey JS::CheckRegExpSyntax allocation of resources (Bug 1839007 / Nessus ID 239763)
6 months 1 week ago
A vulnerability has been found in Mozilla Firefox up to 116 and classified as problematic. Affected by this vulnerability is the function JS::CheckRegExpSyntax of the component SpiderMonkey. The manipulation leads to allocation of resources.
This vulnerability is known as CVE-2023-4578. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2023-4578 | Mozilla Thunderbird up to 115.1 JS::CheckRegExpSyntax memory corruption (Nessus ID 239763)
6 months 1 week ago
A vulnerability was found in Mozilla Thunderbird up to 115.1 and classified as critical. Affected by this issue is the function JS::CheckRegExpSyntax. The manipulation leads to memory corruption.
This vulnerability is handled as CVE-2023-4578. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2023-4051 | Mozilla Firefox up to 115.23.1 Full Screen Notifications (Nessus ID 239763)
6 months 1 week ago
A vulnerability classified as problematic has been found in Mozilla Firefox. Affected is an unknown function of the component Full Screen Notifications Handler. The manipulation leads to an unknown weakness.
This vulnerability is traded as CVE-2023-4051. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2023-4580 | Mozilla Thunderbird up to 115.1 Push Notification cleartext storage in a file or on disk (Nessus ID 239763)
6 months 1 week ago
A vulnerability was found in Mozilla Thunderbird up to 115.1. It has been classified as problematic. This affects an unknown part of the component Push Notification. The manipulation leads to cleartext storage in a file or on disk.
This vulnerability is uniquely identified as CVE-2023-4580. The attack needs to be approached within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2023-4580 | Mozilla Firefox up to 116 Push Notification cleartext storage in a file or on disk (Bug 1843046 / Nessus ID 239763)
6 months 1 week ago
A vulnerability was found in Mozilla Firefox up to 116. It has been classified as problematic. This affects an unknown part of the component Push Notification Handler. The manipulation leads to cleartext storage in a file or on disk.
This vulnerability is uniquely identified as CVE-2023-4580. Local access is required to approach this attack. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2023-4053 | Mozilla Firefox up to 115.23.1 Full Screen Notifications link following (Nessus ID 239763)
6 months 1 week ago
A vulnerability was found in Mozilla Firefox. It has been classified as problematic. This affects an unknown part of the component Full Screen Notifications Handler. The manipulation leads to link following.
This vulnerability is uniquely identified as CVE-2023-4053. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2023-4045 | Mozilla Firefox up to 115.23.1 Offscreen Canvas cross-domain policy (DLA 3521-1 / Nessus ID 239763)
6 months 1 week ago
A vulnerability classified as problematic was found in Mozilla Firefox. This vulnerability affects unknown code of the component Offscreen Canvas Handler. The manipulation leads to permissive cross-domain policy with untrusted domains.
This vulnerability was named CVE-2023-4045. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2023-4581 | Mozilla Thunderbird up to 115.0.1 XLL Add-In File access control (Nessus ID 239763)
6 months 1 week ago
A vulnerability was found in Mozilla Thunderbird. It has been declared as critical. This vulnerability affects unknown code of the component XLL Add-In File. The manipulation leads to improper access controls.
This vulnerability was named CVE-2023-4581. The attack can only be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2023-4581 | Mozilla Firefox up to 116 XLL Add-In File access control (Bug 1843758 / Nessus ID 239763)
6 months 1 week ago
A vulnerability was found in Mozilla Firefox up to 116. It has been declared as problematic. This vulnerability affects unknown code of the component XLL Add-In File Handler. The manipulation leads to improper access controls.
This vulnerability was named CVE-2023-4581. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
中国科学家培育出有两个父亲的健康小鼠
6 months 1 week ago
中科院的研究人员报告成功培育出一只来自双父亲的小鼠,并且健康成年。生物铭印(Biological imprinting)是一种基因表达的遗传模式,涉及到特定基因的激活或关闭,取决于它们来自父亲还是母亲。研究人员发现,如果调整铭印基因的选择,能为独特的生殖能力开启大门,如完全来自父系的胚胎。当小鼠胚胎以正常方式形成时,父系和母系 DNA 结合在一起。此种结合产生了铭印基因的精确平衡。仅有父系的胚胎中,与生长相关的特定基因可能会被过度刺激,研究团队选择性地修改这些基因,使得纯父系胚胎能成熟。研究负责人表示,该研究提供了强有力的证据,表明铭印基因异常是哺乳动物单性生殖的主要障碍。