Aggregator
议题全公布 | FCIS 2024网络安全创新大会
CVE-2008-2872 | Aspindir sHibby sHop up to 2.2 default.asp sayfa sql injection (EDB-5895 / XFDB-43295)
CVE-2008-2892 | Com Expshop 1.0 on Joomla index.php catid sql injection (EDB-5893 / XFDB-43246)
CVE-2008-2890 | OFFL Online Fantasy Football League up to 0.2.6 teams.php player_id sql injection (EDB-5889 / XFDB-43259)
CVE-2008-2893 | Ajhyip AJ Square aj-hyip news.php id sql injection (EDB-5890 / XFDB-43247)
CVE-2008-2900 | PHPAuction 3.2 item.php id sql injection (EDB-5892 / XFDB-43262)
CVE-2008-5123 | Castillocentral CCleague 1.2 admin.php sql injection (EDB-5888 / XFDB-43280)
CVE-2008-5125 | Castillocentral CCleague 1.2 admin.php improper authentication (EDB-5888 / XFDB-43281)
CVE-2008-2833 | Worldlevel le.cms 1.4 submit0 improper authentication (EDB-5887 / XFDB-43274)
CVE-2008-2834 | Sidb Scientific Image DataBase 0.41 projects.php id sql injection (EDB-5885 / XFDB-43255)
CVE-2010-4254 | Novell Moonlight up to 2.99.9 input validation (EDB-15974 / Nessus ID 75587)
От защиты до уязвимости: App-Bound Encryption в Chrome оказался не так крепок
CVE-2010-1677 | MHonArc 2.6.16 resource management (EDB-35478 / Nessus ID 52727)
SMB Force-Authentication Vulnerability Impacts All OPA Versions For Windows
Open Policy Agent (OPA) recently patched a critical vulnerability that could have exposed NTLM credentials of the OPA server’s local user account to remote attackers, which was present in both the OPA CLI and Go SDK. By exploiting this flaw, attackers could have compromised the OPA server’s authentication mechanisms and potentially gained unauthorized access to […]
The post SMB Force-Authentication Vulnerability Impacts All OPA Versions For Windows appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Latrodectus Employs New anti-Debugging And Sandbox Evasion Techniques
Latrodectus, a new malware loader, has rapidly evolved since its discovery, potentially replacing IcedID. It includes a command to download IcedID and has undergone multiple iterations, likely to evade detection. Extracting configurations from these versions is crucial for effective threat detection, as the Latrodectus malware has evolved over the past year, with new versions released […]
The post Latrodectus Employs New anti-Debugging And Sandbox Evasion Techniques appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.