Aggregator
圆满收官|荣耀安全奖励计划2024年度致谢
野蛮fuzz:持久性fuzz
CVE-2015-20107 | Python up to 3.10.4 mailcap Module os command injection (Issue 68966 / Nessus ID 211348)
CVE-2024-27306 | aio-libs aiohttp up to 3.9.3 Index Pages cross site scripting (Nessus ID 211353)
CVE-2022-2929 | ISC DHCP up to 4.1-ESV-R16-P1/4.4.3 fqdn Label resource consumption (Nessus ID 211355)
Бумажные письма с вирусом: как поддельные QR-коды заполонили Швейцарию
工信部:关于防范SteelFox恶意软件的风险提示
人均最高7.2万元!知名律所因泄露用户个人信息赔偿超5700万元
CVE-2023-0962 | SourceCodester Music Gallery Site 1.0 GET Request Master.php id sql injection (EDB-51291)
U.S. CISA adds Palo Alto Networks Expedition bugs to its Known Exploited Vulnerabilities catalog
ChatGPT 可导致访问底层沙箱OS和“工作指南”数据
PostgreSQL 高危漏洞可导致环境变量被利用
原创漏洞-施耐德EcoStruxure Power Desig任意代码执行漏洞分析
Zero-Day Exploits Surge in 2023, Cisco, Fortinet Vulnerabilities Targeted
A report from the Five Eyes cybersecurity alliance, released by the CISA, highlights the majority of the most exploited vulnerabilities last year were initially zero-day flaws, a significant increase compared to 2022 when less than half of the top vulnerabilities were zero-day exploits.
The post Zero-Day Exploits Surge in 2023, Cisco, Fortinet Vulnerabilities Targeted appeared first on Security Boulevard.
嘿朋友,你想成为SYN扫描传奇吗?
0,1% на безопасность или 3% на штрафы: что готовит новый КоАП для бизнеса?
Bitsight acquires Cybersixgill to help organizations manage cyber exposure
Bitsight announced it has signed a definitive agreement to acquire Cybersixgill, a global cyber threat intelligence (CTI) data provider. Together, Bitsight and Cybersixgill will provide visibility into an organization’s external attack surface, supply chain, and the threats targeting it. As a result, security leaders can proactively identify, prioritize, and mitigate risk across their first and third party environments. With cyber attacks on the rise, CTI data is increasingly vital. However, applying threat intelligence findings to … More →
The post Bitsight acquires Cybersixgill to help organizations manage cyber exposure appeared first on Help Net Security.
Critical Laravel Vulnerability CVE-2024-52301 Allows Unauthorized Access
CVE-2024-52301 is a critical vulnerability identified in Laravel, a widely used PHP framework for building web applications. The vulnerability allows unauthorized access by exploiting improperly validated inputs, potentially leading to privilege escalation, data tampering, or full system compromise. Given Laravel’s widespread adoption across industries, the discovery is a cause for concern, as it could leave […]
The post Critical Laravel Vulnerability CVE-2024-52301 Allows Unauthorized Access appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.