Aggregator
CVE-2024-21309 | Microsoft Windows Kernel-Mode Driver integer underflow
CVE-2024-0679 | ColorMag Plugin up to 3.1.2 on WordPress Plugin Installation authorization
CVE-2023-51926 | Yonyou YonBIP 3_23.05 nc.bs.framework.comn.serv.CommonServletDispatcher path traversal
CVE-2023-7063 | WPForms Pro up to 1.8.5.3 on WordPress Form Submission cross site scripting
CVE-2024-23726 | Ubee DDW365 XCNDDW365/DDW366 XCNDXW3WB WPA2-PSK default credentials
CVE-2024-23725 | Ghost up to 5.75.x Post Summary excerpt.js cross site scripting
CVE-2024-23752 | PandasAI up to 1.5.17 Python Code synthetic_dataframe code injection (Issue 868)
CVE-2023-52353 | mbed TLS up to 3.5.1 mbedtls_ssl_session_reset session fixiation (Issue 8654 / Nessus ID 211939)
CVE-2024-23730 | LlamaHub up to 0.0.66 OpenAPI Plugin Loader/ChatGPT Plugin Loader privilege escalation
BypassFuzzer: Fuzz 401/403/404 pages for bypasses
Bypass Fuzzer Fuzz 401/403ing endpoints for bypasses This tool performs various checks via headers, path normalization, verbs, etc. to attempt to bypass ACLs or URL validation. It will output the response codes and length...
The post BypassFuzzer: Fuzz 401/403/404 pages for bypasses appeared first on Penetration Testing Tools.
微信测试「朋友圈折叠」功能;华为推尊界 S800,70.8 万起;宇树预热「钢铁侠」新机器人 | 极客早知道
端午安康
分享图片
端午安康!
中国人民银行发布《中国人民银行业务领域网络安全事件报告管理办法》
Microsoft Reveals Techniques To Defending Against Advancing AiTM Attacks
Microsoft’s latest security research has unveiled sophisticated defense strategies against the rapidly evolving threat landscape of Adversary-in-the-Middle (AiTM) attacks, marking a critical development in enterprise cybersecurity. The emergence of AiTM attacks represents a fundamental shift in how threat actors approach credential theft, particularly as organizations increasingly adopt multifactor authentication (MFA) and other advanced security measures […]
The post Microsoft Reveals Techniques To Defending Against Advancing AiTM Attacks appeared first on Cyber Security News.