Posts of last 24 hours
A vulnerability described as critical has been identified in Microsoft Windows. This affects an unknown part of the component Active Directory Domain Services. The manipulation results in improper privilege management.
This vulnerability was named CVE-2021-42291. The attack may be performed from remote. There is no available exploit.
Applying a patch is advised to resolve this issue.
https://vuldb.com/vuln/186409
A vulnerability, which was classified as critical, has been found in Microsoft Malware Protection Engine. Impacted is an unknown function of the component Defender. Performing a manipulation results in code injection.
This vulnerability is identified as CVE-2021-42298. The attack can be initiated remotely. There is not any exploit available.
To fix this issue, it is recommended to deploy a patch.
https://vuldb.com/vuln/186412
速修复
https://mp.weixin.qq.com/s?__biz=MzI2NTg4OTc5Nw==&mid=2247526941&idx=2&sn=788a548f95d9b2c816994f379dbef5d5
速修复
https://mp.weixin.qq.com/s?__biz=MzI2NTg4OTc5Nw==&mid=2247526941&idx=1&sn=11e4c40814e3f01c72e6879ff92a5b4c
Фейковый сайт «Топливо24» похитил у россиян 3,7 млн рублей за пять дней.
https://www.securitylab.ru/news/576296.php
Bilibili 本周重新发布了国际版应用,准备推出英文版本,进军全球市场。新的国际版应用将不需要身份验证,用户无需提供护照或身份证件即可注册。Bilibili 此前已积极邀请西方知名主播如 MrBeast 在其有 3.76 亿月活用户的中文主站发布视频。更大规模的全球扩张可能会挑战 YouTube 的霸主地位,但也面临类似 TikTok 的审查、内容审核和数据安全等棘手问题。根据招聘信息,B 站正在洛杉矶、伦敦、墨西哥城、圣保罗、伊斯坦布尔和东京招聘社区经理。
https://www.solidot.org/story?sid=85155
Multiple Vulnerabilities in NVIDIA Triton Inference Server Overview CVE-2026-47627 (CVSS 9.8): Critical path traversal vulnerability allowing unauthenticated denial of service. […]
The post Weekly Threat Landscape Digest – Week 34 appeared first on HawkEye.
https://hawk-eye.io/2026/08/weekly-threat-landscape-digest-week-34-2/?utm_source=rss&utm_medium=rss&utm_campaign=weekly-threat-landscape-digest-week-34-2
A vulnerability classified as critical has been found in Microsoft Windows. This affects an unknown function of the component Credential Security Support Provider Protocol. Performing a manipulation results in improper privilege management.
This vulnerability is identified as CVE-2021-41366. The attack can be initiated remotely. There is not any exploit available.
Applying a patch is the recommended action to fix this issue.
https://vuldb.com/vuln/186382
A vulnerability classified as critical was found in Microsoft Windows. This impacts an unknown function of the component NTFS. Executing a manipulation can lead to improper privilege management.
This vulnerability is tracked as CVE-2021-41367. The attack can be launched remotely. No exploit exists.
It is best practice to apply a patch to resolve this issue.
https://vuldb.com/vuln/186383
A vulnerability, which was classified as critical, has been found in Microsoft Office up to LTSC 2021. Affected is an unknown function of the component Access. The manipulation leads to Remote Code Execution.
This vulnerability is listed as CVE-2021-41368. The attack may be initiated remotely. There is no available exploit.
It is recommended to apply a patch to fix this issue.
https://vuldb.com/vuln/186384