Aggregator
中情局一封未分类邮件:大量涉我事务特工名单外流?
OpenWrt 24.10 释出
Introducing Lateral Security for VMware Cloud Foundation with VMware vDefend Validated Solution
At Broadcom, we are committed to providing cutting-edge security solutions to empower VMware Cloud Foundation customers with cyber-resilient private cloud. We are excited to announce the general availability of Lateral Security for VMware Cloud Foundation with VMware vDefend validated solution. New to VMware Validated Solutions? VMware Validated Solutions is a vetted portfolio of technical validated solutions … Continued
The post Introducing Lateral Security for VMware Cloud Foundation with VMware vDefend Validated Solution appeared first on VMware Security Blog.
AppleScript: встроенная защита macOS превратилась в инструмент взлома
CVE-2022-37345 | Intel NUC Kit 1.1/22.40/MYi30060 BIOS Firmware improper authentication (intel-sa-00752)
CVE-2024-25636 | Misskey up to 2023.12.1 unrestricted upload (GHSA-qqrm-9grj-6v32)
CVE-2024-1559 | jackdewey Link Library Plugin up to 7.6 on WordPress ll_reciprocal cross site scripting
CVE-2023-6260 | Brivo ACS100/ACS300 prior 6.2.4.3 os command injection
CVE-2024-26136 | kedi ElectronCord aaaeaf4e6c99893827b2eea4dd02f755e1e24041 on Discord Access Token config.json information disclosure (GHSA-ppwc-5vwp-mhw8)
CVE-2024-26140 | yetanalytics lrs up to 1.2.16 xAPI cross site scripting (GHSA-7rw2-3hhp-rc46)
CVE-2024-25117 | dompdf php-svg-lib up to 0.5.1 parseCssStyle file inclusion
CVE-2023-46241 | discourse-microsoft-auth microsoft_auth:revoke authorization (GHSA-2w32-w539-3m7r)
CVE-2024-26138 | xwikisas application-licensing up to 1.24.1 authorization
CVE-2024-26145 | Discourse discourse-calendar Private Event authorization
CVE-2024-23654 | discourse-ai on Discourse server-side request forgery
CVE-2024-26130 | pyca cryptography up to 42.0.3 PrivateFormat.PKCS12.encryption_builder.hmac_hash null pointer dereference (Nessus ID 208713)
CVE-2024-0240 | Silicon Labs Gecko SDK prior 4.3.0 Notifications resource consumption
Cisco IOS SNMP Vulnerabilities Allow Attackers to Launch DoS Attacks”
Cisco has disclosed multiple vulnerabilities in its Simple Network Management Protocol (SNMP) subsystem affecting Cisco IOS, IOS XE, and IOS XR software. These flaws, identified as high-severity, could allow an authenticated remote attacker to trigger Denial-of-Service (DoS) conditions, disrupting network operations. Key Details According to the Cisco Security Advisory ID: cisco-sa-snmp-dos-sdxnSUcW, the vulnerabilities stem from improper […]
The post Cisco IOS SNMP Vulnerabilities Allow Attackers to Launch DoS Attacks” appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Cybercriminals Abusing ScreenConnect RMM Tool for Persistent Access
Cybersecurity experts have identified an alarming trend of cybercriminals exploiting ConnectWise ScreenConnect, a widely-used Remote Monitoring and Management (RMM) tool, to establish persistent access to compromised systems. Threat Actors Exploit Legitimate Software for Malicious Gains Silent Push Threat Analysts and other researchers have observed a surge in the abuse of this legitimate software, leveraging its […]
The post Cybercriminals Abusing ScreenConnect RMM Tool for Persistent Access appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.