Aggregator
DDoSecrets 联合创始人是丝绸之路 2.0 的管理员
US DoJ dismantled remote IT worker fraud schemes run by North Korea
亿赛通公司发布电子文档安全管理系统产品补丁更新
关于Windows远程桌面许可服务存在远程代码执行漏洞的安全公告
上周关注度较高的产品安全漏洞(20240805-20240811)
CNVD漏洞周报2024年第32期
Наследие LockBit рушится: ФБР разбило империю RADAR/DISPOSSESSOR
PostgreSQL Vulnerability Allows Hackers To Execute Arbitrary SQL Functions
A critical vulnerability identified as CVE-2024-7348 has been discovered in PostgreSQL, enabling attackers to execute arbitrary SQL functions. This vulnerability in the pg_dump utility poses a significant security risk, especially when executed by superusers. CVE-2024-7348 – Vulnerability Details The flaw is a Time-of-check Time-of-use (TOCTOU) race condition in the pg_dump process. An attacker can exploit this by […]
The post PostgreSQL Vulnerability Allows Hackers To Execute Arbitrary SQL Functions appeared first on GBHackers on Security | #1 Globally Trusted Cyber Security News Platform.
如果不给佣金苹果威胁移除 Patreon
CVE-2024-6724 | Generate Images Plugin up to 5.2.7 on WordPress Setting cross site scripting
CVE-2024-7247 | bdthemes Element Pack Elementor Addons Plugin up to 5.7.2 on WordPress cross site scripting
CLFS Vulnerability Let Hackers Trigger BSOD Error On All Versions Of Windows 10 & 11
A newly discovered vulnerability in the Common Log File System (CLFS.sys) driver of Windows has been identified, potentially affecting millions of devices running Windows 10, Windows 11, and various Windows Server versions. Tracked as CVE-2024-6768, this vulnerability allows a malicious authenticated low-privilege user to trigger a Blue Screen of Death (BSOD) through a forced call […]
The post CLFS Vulnerability Let Hackers Trigger BSOD Error On All Versions Of Windows 10 & 11 appeared first on Cyber Security News.
CVE-2024-7715 | D-Link DNS-1550-04 up to 20240812 photocenter_mgr.cgi sprintf filter command injection (SAP10383)
Hackers Posing as Security Service Compromised 100 Govt Systems
Hackers masquerading as the Security Service of Ukraine have compromised over 100 government systems. The Computer Emergency Response Team of Ukraine (CERT-UA) at the State Service of Special Communications and Information Protection (SSSCIP) reported the incident on August 12, highlighting the sophisticated tactics employed by the attackers. Malicious Emails Target Government Bodies The attack began […]
The post Hackers Posing as Security Service Compromised 100 Govt Systems appeared first on Cyber Security News.