Aggregator
岁序更新 金蛇献瑞 | 纽创信安恭祝大家新春快乐!
10 months 2 weeks ago
岁序更新 金蛇献瑞 | 纽创信安恭祝大家新春快乐!
10 months 2 weeks ago
岁序更新 金蛇献瑞 | 纽创信安恭祝大家新春快乐!
10 months 2 weeks ago
岁序更新 金蛇献瑞 | 纽创信安恭祝大家新春快乐!
10 months 2 weeks ago
分享图片
10 months 2 weeks ago
分享图片
10 months 2 weeks ago
(图作者 | @Aoemax)
Overcoming the Top 5 Cloud Security Challenges | Live Webinar
10 months 2 weeks ago
DeepSeek's New AI Model Shakes American Tech Industry
10 months 2 weeks ago
AI Startup's R1 Model Draws Praise and Skepticism
An open reasoning model from Chinese artificial intelligence startup DeepSeek has the tech industry assessing its potential impact as shares of U.S. technology mainstays plummeted in trading on Monday. Hangzhou-based DeepSeek released its R1 model on Jan. 20.
An open reasoning model from Chinese artificial intelligence startup DeepSeek has the tech industry assessing its potential impact as shares of U.S. technology mainstays plummeted in trading on Monday. Hangzhou-based DeepSeek released its R1 model on Jan. 20.
SonicWall's Zero-Day Provokes Patch Alerts
10 months 2 weeks ago
Preauthentication Deserialization Flaw Could Result in Remote Code Execution
Software vendors and national security agencies are urging immediate patching of a critical SonicWall flaw days after the security device manufacturer disclosed that hackers are actively exploiting a zero-day. The flaw doesn't require user authentication.
Software vendors and national security agencies are urging immediate patching of a critical SonicWall flaw days after the security device manufacturer disclosed that hackers are actively exploiting a zero-day. The flaw doesn't require user authentication.
Nursing Home, Rehab Chain Says Hack Affects Nearly 70,000
10 months 2 weeks ago
RansomHub Theft Hit Patients of 2 Dozen HCF Facilities and Home Healthcare Unit
A chain of more than two dozen skilled nursing and rehabilitation facilities is notifying tens of thousands of patients whose information was compromised in a hacking incident last fall. Russian-speaking cybercriminal gang RansomHub claims to have published 250GB of data stolen in the heist.
A chain of more than two dozen skilled nursing and rehabilitation facilities is notifying tens of thousands of patients whose information was compromised in a hacking incident last fall. Russian-speaking cybercriminal gang RansomHub claims to have published 250GB of data stolen in the heist.
Swedish Authorities Seize Vessel in Cable Sabotage Probe
10 months 2 weeks ago
Undersea Cable Damage in Baltic Sparks Concerns of Russian 'Shadow Fleet' Activity
Swedish authorities seized a vessel in the Baltic Sea as part of a criminal investigation into sabotage of an undersea cable between Sweden and Latvia after a series of regional cable disruptions, including one involving suspected Russian shadow fleet activity, raising security concerns.
Swedish authorities seized a vessel in the Baltic Sea as part of a criminal investigation into sabotage of an undersea cable between Sweden and Latvia after a series of regional cable disruptions, including one involving suspected Russian shadow fleet activity, raising security concerns.
2025 蛇年春节快乐
10 months 2 weeks ago
CVE-2024-3881 | Tenda W30E 1.0.1.25(633) /goform/frmL7ProtForm frmL7PlotForm page stack-based overflow
10 months 2 weeks ago
A vulnerability was found in Tenda W30E 1.0.1.25(633) and classified as critical. This issue affects the function frmL7PlotForm of the file /goform/frmL7ProtForm. The manipulation of the argument page leads to stack-based buffer overflow.
The identification of this vulnerability is CVE-2024-3881. The attack may be initiated remotely. Furthermore, there is an exploit available.
The vendor was contacted early about this disclosure but did not respond in any way.
The vendor was contacted early about this disclosure but did not respond in any way.
vuldb.com
CVE-2024-3882 | Tenda W30E 1.0.1.25(633) /goform/fromRouteStatic page stack-based overflow
10 months 2 weeks ago
A vulnerability was found in Tenda W30E 1.0.1.25(633). It has been classified as critical. Affected is the function fromRouteStatic of the file /goform/fromRouteStatic. The manipulation of the argument page leads to stack-based buffer overflow.
This vulnerability is traded as CVE-2024-3882. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
The vendor was contacted early about this disclosure but did not respond in any way.
The vendor was contacted early about this disclosure but did not respond in any way.
vuldb.com
CVE-2024-26863 | Linux Kernel up to 6.8.1 Sequence Number hsr_get_node missing initialization (Nessus ID 210815)
10 months 2 weeks ago
A vulnerability was found in Linux Kernel up to 6.8.1. It has been classified as problematic. Affected is the function hsr_get_node of the component Sequence Number Handler. The manipulation leads to missing initialization of a variable.
This vulnerability is traded as CVE-2024-26863. The attack needs to be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-26866 | Linux Kernel up to 6.6.22/6.7.10/6.8.1 lpspi use after free
10 months 2 weeks ago
A vulnerability was found in Linux Kernel up to 6.6.22/6.7.10/6.8.1. It has been classified as critical. This affects an unknown part of the component lpspi. The manipulation leads to use after free.
This vulnerability is uniquely identified as CVE-2024-26866. Access to the local network is required for this attack to succeed. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-26879 | Linux Kernel up to 5.15.152/6.1.82/6.6.22/6.7.10/6.8.1 meson axg_clk_regmaps null pointer dereference
10 months 2 weeks ago
A vulnerability was found in Linux Kernel up to 5.15.152/6.1.82/6.6.22/6.7.10/6.8.1. It has been declared as critical. Affected by this vulnerability is the function axg_clk_regmaps of the component meson. The manipulation leads to null pointer dereference.
This vulnerability is known as CVE-2024-26879. The attack can only be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-26893 | Linux Kernel up to 6.1.82/6.6.22/6.7.10/6.8.1 arm_scmi chan_free null pointer dereference (Nessus ID 210741)
10 months 2 weeks ago
A vulnerability was found in Linux Kernel up to 6.1.82/6.6.22/6.7.10/6.8.1 and classified as critical. This issue affects the function chan_free of the component arm_scmi. The manipulation leads to null pointer dereference.
The identification of this vulnerability is CVE-2024-26893. The attack needs to be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-4111 | Tenda TX9 22.03.02.10 /goform/SetLEDCfg sub_42BD7C time stack-based overflow
10 months 2 weeks ago
A vulnerability was found in Tenda TX9 22.03.02.10. It has been rated as critical. Affected by this issue is the function sub_42BD7C of the file /goform/SetLEDCfg. The manipulation of the argument time leads to stack-based buffer overflow.
This vulnerability is handled as CVE-2024-4111. The attack may be launched remotely. Furthermore, there is an exploit available.
The vendor was contacted early about this disclosure but did not respond in any way.
The vendor was contacted early about this disclosure but did not respond in any way.
vuldb.com