Aggregator
CVE-2019-6213 | Apple iOS up to 12.1.2 Kernel memory corruption (HT209443 / EDB-46300)
Большая чистка: план Маска по освобождению американского бизнеса
CVE-2013-5317 | RiteCMS 1.0.0 mode cross site scripting (Exploit 122663 / EDB-27315)
CVE-2021-38427 | RTI Connext DDS Professional/Connext DDS Secure up to 6.1.0 stack-based overflow (icsa-21-315-02)
CVE-2021-38433 | RTI Connext DDS Professional/Connext DDS Secure up to 6.1.0 stack-based overflow (icsa-21-315-02)
CVE-2021-38435 | RTI Connext DDS Professional/Connext DDS Secure up to 6.1.0 buffer overflow (icsa-21-315-02)
Satori provides visibility into data store risk levels
Satori announced its new capabilities, enabling security teams to be in control of all customer data across the development lifecycle in a simple, cost-effective, and holistic way. These capabilities automate the daunting tasks of discovering data, risk assessment, providing granular access control, and mitigating security risks quickly across cloud platforms like AWS, Snowflake, Databricks, and MongoDB. A recent report by Gartner found that 75% of organizations are working to consolidate their cloud-native security vendors. Security … More →
The post Satori provides visibility into data store risk levels appeared first on Help Net Security.
CVE-2008-4910 | Sun Java Web Start input validation (EDB-32529 / XFDB-46119)
CVE-2020-12882 | Submitty up to 20.04.01 SVG Document cross site scripting (EDB-48488)
RTSP狩猎之旅:从协议解析到黑客实战
CVE-2024-3976 | GitLab Community Edition/Enterprise Edition up to 16.9.6/16.10.4/16.11.1 Public Project authorization (Issue 457140)
IDOR的高阶技巧
CVE-2024-2878 | GitLab Community Edition/Enterprise Edition up to 16.9.6/16.10.4/16.11.1 allocation of resources
CVE-2024-52364 | IBM Cloud Pak for Business Automation up to 22.0.2 Web UI cross site scripting
CVE-2024-52365 | IBM Cloud Pak for Business Automation up to 22.0.2 cross site scripting
Cybercriminals Use Go Resty and Node Fetch in 13 Million Password Spraying Attempts
Apple’s macOS Kernel Vulnerability Let Attackers Escalate Privileges – PoC Released
A critical vulnerability in Apple’s macOS kernel (XNU), tracked as CVE-2025-24118, has been disclosed, potentially allowing attackers to escalate privileges, corrupt memory, and even execute kernel-level code. The flaw, affecting macOS Sonoma versions earlier than 14.7.3, macOS Sequoia versions earlier than 15.3, and iPadOS versions earlier than 17.7.4, was discovered by Joseph Ravichandran (@0xjprx), a […]
The post Apple’s macOS Kernel Vulnerability Let Attackers Escalate Privileges – PoC Released appeared first on Cyber Security News.
CVE-2024-49348 | IBM Cloud Pak for Business Automation up to 22.0.2 privileges assignment
Sandboxes Alone Won’t Stop the Malware Onslaught. Here’s What Will.
Rhode Island disclosed in December that a ransomware attack had resulted in a data breach of its RIBridges social services database, exposing personal data of about 650,000 residents that included Social Security numbers, dates of birth, and individual bank account numbers. The impact was enormous — more than half of the state’s population was affected.
The post Sandboxes Alone Won’t Stop the Malware Onslaught. Here’s What Will. appeared first on Security Boulevard.