Aggregator
西班牙伊比利亚航空供应商遭入侵致客户数据泄露
CVE-2021-3839 | DPDK vhost Library vhost_user_set_inflight_fd out-of-bounds write (Nessus ID 276164)
CVE-2022-0669 | dpdk Message resource consumption (Nessus ID 276164)
CVE-2024-4436 | Red Hat OpenStack Platform etcd Package resource consumption (EUVD-2024-44547 / Nessus ID 276175)
CVE-2022-48925 | Linux Kernel up to 5.9/5.10/5.10.102/5.15.25/5.16.11 RDMA resolve_prepare_src use after free (Nessus ID 276179)
CVE-2024-4438 | Red Hat OpenStack Platform etcd Package resource consumption (Nessus ID 276175 / WID-SEC-2024-1228)
CVE-2024-39465 | Linux Kernel up to 6.9.4 mgb4 debugfs_remove_recursive denial of service (252204b634ef/825fc4949795 / Nessus ID 276179)
Можно ли отключить Starlink во время войны? Китай уже просчитал — но цена пугает
SolarWinds 修复 Serv-U 三款高危漏洞,可被用于远程代码执行
CVE-2025-13584 | Eigenfocus up to 1.4.0 Description entry.description/time_entry.description cross site scripting (ID 358)
CVE-2025-7402 | Ads Pro Plugin up to 4.95 on WordPress site_id sql injection
cnspec: Open-source, cloud-native security and policy project
cnspec is an open source tool that helps when you are trying to keep a sprawling setup of clouds, containers, APIs and endpoints under control. It checks security and compliance across all of it, which makes it easier to see what needs attention. At its core, cnspec looks for vulnerabilities and misconfigurations across public and private cloud environments, Kubernetes clusters, containers, container registries, servers, endpoints, SaaS products, infrastructure as code and APIs. It uses a … More →
The post cnspec: Open-source, cloud-native security and policy project appeared first on Help Net Security.
X 展示账号地理位置暴露众多 MAGA 账号在外国运营
CVE-2025-13589 | Otsuka Information FMS up to 20251014.10r45111 cross site scripting
Утечка на Уолл-стрит: данные клиентов JPMorgan и Citi украдены у подрядчика
The privacy tension driving the medical data shift nobody wants to talk about
Most people assume their medical data sits in quiet storage, protected by familiar rules. That belief gives a sense of safety, but new research argues that the world around healthcare data has changed faster than the policies meant to guide it. As a result, the system is stuck, and the cost of that stagnation is rising for patients, researchers, and innovators. The paper, written by experts from major U.S. medical institutions, examines how healthcare’s privacy-centric … More →
The post The privacy tension driving the medical data shift nobody wants to talk about appeared first on Help Net Security.