Aggregator
RansomHub
9 months 3 weeks ago
cohenido
Fog
9 months 3 weeks ago
cohenido
Cybercriminals used a gaming engine to create undetectable malware loader
9 months 3 weeks ago
Threat actors are using an ingenious new way for covertly delivering malware to a wide variety of operating systems and platforms: they have created a malware loader that uses Godot Engine, an open-source game engine. The loader – dubbed GodLoader – is distributed through the Stargazers Ghost Network, an extensive network of GitHub accounts and repositories that provides malware distribution “as-a-Service”. According to Check Point researchers, over 17,000 machines have been infected with the malicious … More →
The post Cybercriminals used a gaming engine to create undetectable malware loader appeared first on Help Net Security.
Zeljka Zorz
RansomHub
9 months 3 weeks ago
cohenido
CVE-2023-32223 | D-Link DSL-224 3.0.10 improper authentication
9 months 3 weeks ago
A vulnerability classified as critical was found in D-Link DSL-224 3.0.10. This vulnerability affects unknown code. The manipulation leads to improper authentication.
This vulnerability was named CVE-2023-32223. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-20958 | Oracle Installed Base up to 12.2.13 Engineering Change Order
9 months 3 weeks ago
A vulnerability classified as critical has been found in Oracle Installed Base up to 12.2.13. This affects an unknown part of the component Engineering Change Order. The manipulation leads to an unknown weakness.
This vulnerability is uniquely identified as CVE-2024-20958. It is possible to initiate the attack remotely. There is no exploit available.
vuldb.com
CVE-2024-20917 | Oracle Enterprise Manager Base Platform 13.5.0.0 Log Management Remote Code Execution
9 months 3 weeks ago
A vulnerability classified as critical was found in Oracle Enterprise Manager Base Platform 13.5.0.0. Affected by this vulnerability is an unknown functionality of the component Log Management. The manipulation leads to Remote Code Execution.
This vulnerability is known as CVE-2024-20917. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-20956 | Oracle Agile Product Lifecycle Management for Process Prior to 6.2.4.2 Installation Remote Code Execution
9 months 3 weeks ago
A vulnerability was found in Oracle Agile Product Lifecycle Management for Process Prior to 6.2.4.2. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the component Installation. The manipulation leads to Remote Code Execution.
This vulnerability is known as CVE-2024-20956. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2023-52349 | Unisoc S8000 Ril Service out-of-bounds write
9 months 3 weeks ago
A vulnerability, which was classified as critical, was found in Unisoc SC7731E, SC9832E, SC9863A, T310, T606, T612, T616, T610, T618, T760, T770, T820 and S8000. Affected is an unknown function of the component Ril Service. The manipulation leads to out-of-bounds write.
This vulnerability is traded as CVE-2023-52349. The attack needs to be approached locally. There is no exploit available.
vuldb.com
CVE-2023-52350 | Unisoc S8000 Ril Service out-of-bounds write
9 months 3 weeks ago
A vulnerability has been found in Unisoc SC7731E, SC9832E, SC9863A, T310, T606, T612, T616, T610, T618, T760, T770, T820 and S8000 and classified as critical. Affected by this vulnerability is an unknown functionality of the component Ril Service. The manipulation leads to out-of-bounds write.
This vulnerability is known as CVE-2023-52350. An attack has to be approached locally. There is no exploit available.
vuldb.com
Consumer and privacy predictions for 2025
9 months 3 weeks ago
Overview of 2024 consumer cyberthreats and trends predictionsPart of the Kaspersky Se
Argonauts
9 months 3 weeks ago
cohenido
Argonauts
9 months 3 weeks ago
cohenido
Argonauts
9 months 3 weeks ago
cohenido
Argonauts
9 months 3 weeks ago
cohenido
CVE-2012-2512 | SAP NetWeaver 7.0 disp+work.exe DiagTraceStreamI memory corruption (EDB-18853 / ID 121196)
9 months 3 weeks ago
A vulnerability was found in SAP NetWeaver 7.0. It has been classified as problematic. Affected is the function DiagTraceStreamI of the file disp+work.exe. The manipulation leads to memory corruption.
This vulnerability is traded as CVE-2012-2512. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
How DSPM Helps Businesses Meet Compliance Requirements
9 months 3 weeks ago
How DSPM Helps Businesses Meet Compliance Requirements Pierluig
绿盟科技威胁周报(2024.11.18-2024.11.24)
9 months 3 weeks ago
阅读: 5一、热点资讯1.苹果发布紧急安全更新修复WebKit引擎中的漏洞,黑客已经利用漏洞展开攻击【标签】CVE-2024-44308【概述】苹果本周发布
CVE-2009-3566 | McAfee IntruShield Network Security Manager up to 5.1.7.72 Session Identifier cross site scripting (EDB-33347 / ID 86859)
9 months 3 weeks ago
A vulnerability was found in McAfee IntruShield Network Security Manager up to 5.1.7.72 and classified as problematic. Affected by this issue is some unknown functionality of the component Session Identifier. The manipulation leads to cross site scripting.
This vulnerability is handled as CVE-2009-3566. The attack may be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com