Aggregator
CVE-2006-5020 | SolidState RegisteredDomainsPage.class.php base_path privileges management (EDB-2413 / XFDB-29095)
CVE-2024-20310 | Cisco IOS XE Web-based Interface path traversal (cisco-sa-cucm-imps-xss-quWkd9yF)
CVE-2024-20281 | Cisco Data Center Network Manager up to 12.1.3b Web-based Management Interface cross-site request forgery (cisco-sa-ndfccsrf-TEmZEfJ9)
CVE-2024-20367 | Cisco Enterprise Chat and Email 11.5/11.6/12.0/12.5/12.6 Web UI cross site scripting (cisco-sa-ece-xss-CSQxgxfM)
TSMC сделала «запретный подарок» для Huawei — теперь расхлёбывает последствия
Transforming cybersecurity into a strategic business enabler
In this Help Net Security interview, Kevin Serafin, CISO at Ecolab, discusses aligning security strategy with long-term business goals, building strong partnerships across the organization, and approaching third-party risk with agility. How do you define cyber risk within your organization’s overall enterprise risk framework? At Ecolab, we don’t approach cyber risk in isolation. Instead, it’s positioned as an integral component of our overall enterprise risk management framework. We define cyber risk as the potential for … More →
The post Transforming cybersecurity into a strategic business enabler appeared first on Help Net Security.
Cybercriminals Attacked National Social Security Fund of Morocco - Millions of Digital Identities at Risk of Data Breach
ZDI-CAN-26916: MLflow
Digital Threats Targeting India - Banking Financial Services and Insurance Insurance (BFSI) Sector
ZDI-CAN-26925: Autodesk
ZDI-CAN-26922: Autodesk
ZDI-CAN-26917: Autodesk
ZDI-CAN-26923: Autodesk
APTRS: Open-source automated penetration testing reporting system
APTRS is an open-source reporting tool built with Python and Django. It’s made for penetration testers and security teams who want to save time on reports. Instead of writing reports by hand, users can create PDF and Excel files directly in the tool. APTRS features “APTRS is the only tool specifically focused on pentest reporting combined with project and client management. It’s designed to give clients real-time visibility and control over their penetration tests,” Sourav … More →
The post APTRS: Open-source automated penetration testing reporting system appeared first on Help Net Security.
Как настроить Telegram для полной анонимности и безопасности
Patch Tuesday: Microsoft залатала 134 дыры, но хакеры уже успели пролезть в одну
お知らせ:JPCERT/CC Eyes「RightsCon 2025参加記」
What’s Trending: Top Cyber Attacker Techniques, December 2024–February 2025
AI is challenging the geopolitical status quo
AI-powered cyberattacks are becoming powerful new weapons. Organizations need to act fast to close the gap between today’s defenses and tomorrow’s threats. These attacks are only going to grow. New data from Armis Labs shows that the threat of AI in cyberwarfare is growing. Its third annual global report finds rising concern among organizations and governments worldwide. 73% of IT leaders worry that nation-states are using AI to launch smarter, more targeted attacks. “AI is … More →
The post AI is challenging the geopolitical status quo appeared first on Help Net Security.