Aggregator
Education giant Pearson hit by cyberattack exposing customer data
9 months 1 week ago
Education giant Pearson suffered a cyberattack, allowing threat actors to steal corporate data and customer information, BleepingComputer has learned. [...]
Lawrence Abrams
CVE-2025-2905(CVSS 9.1):WSO2 API 管理器中发现严重 XXE 漏洞
9 months 1 week ago
安全客
LinkedIn通过新的人工智能功能增强求职搜索
9 months 1 week ago
安全客
Living in a Fairytale: PowerSchool's Failures Continue
9 months 1 week ago
Criminals Extort School Employees After Vendor Paid for Data-Deletion Promise
Students, gather round for the sad story of how PowerSchool got schooled not once, but twice. Surprise: attackers who received a ransom payment in return for a promise to delete data they stole from PowerSchool pertaining to students and teachers didn't actually delete the data.
Students, gather round for the sad story of how PowerSchool got schooled not once, but twice. Surprise: attackers who received a ransom payment in return for a promise to delete data they stole from PowerSchool pertaining to students and teachers didn't actually delete the data.
Silence is Golden for Breach Prevention, Not Reporting
9 months 1 week ago
Not Just Ransomware But Verbal Disclosure of Personal Data Common, Watchdog Finds
Two decades after California Senate Bill 1386 introduced the world to data breach notifications, organizations have collectively battened down their cybersecurity hatches and fixed the problem once and for all. Of course, I'm joking, with the results of recent data breach root cause report in hand.
Two decades after California Senate Bill 1386 introduced the world to data breach notifications, organizations have collectively battened down their cybersecurity hatches and fixed the problem once and for all. Of course, I'm joking, with the results of recent data breach root cause report in hand.
Hacker Leaks Stolen LockBit Ransomware Operation Database
9 months 1 week ago
Exposes Details of Victims, 'Aggressive' Negotiations, Cryptocurrency Addresses
One year to the day after an international law enforcement operation unmasked and indicted the leader of the notorious LockBit ransomware group, a hacker has sent the group another love letter.
One year to the day after an international law enforcement operation unmasked and indicted the leader of the notorious LockBit ransomware group, a hacker has sent the group another love letter.
Cryptohack Roundup: Trump's Crypto Wealth
9 months 1 week ago
Also: Mango Markets Hacker Sentenced in CSAM Case
This week, Trump's crypto wealth, Mango Markets hacker sentenced for CSAM, Solana's zero-day fix, French police rescued a crypto millionaire's father from kidnappers, stolen bitcoin frozen, US FTC sued IML and Kraken spotted a North Korean job applicant.
This week, Trump's crypto wealth, Mango Markets hacker sentenced for CSAM, Solana's zero-day fix, French police rescued a crypto millionaire's father from kidnappers, stolen bitcoin frozen, US FTC sued IML and Kraken spotted a North Korean job applicant.
CISA's Acting Director Defends Cuts Amid Growing Turmoil
9 months 1 week ago
Top Cyber Official Says CISA Wants to Eliminate Duplication and Increase Efficiency
The acting director of the Cybersecurity and Infrastructure Security Agency told a House appropriations subcommittee Thursday the nation's cyber defense agency was continuing to improve its ability to respond to growing threats from China despite budget cuts and looming workforce reductions.
The acting director of the Cybersecurity and Infrastructure Security Agency told a House appropriations subcommittee Thursday the nation's cyber defense agency was continuing to improve its ability to respond to growing threats from China despite budget cuts and looming workforce reductions.
Public Report - VeChainThor Galactica Security Assessment
9 months 1 week ago
麒麟四月份遭遇74起网络攻击,成为头号勒索软件集团
9 months 1 week ago
安全客
CVE-2019-0227 | Oracle Rapid Planning 12.1/12.2 Installation server-side request forgery (EDB-46682)
9 months 1 week ago
A vulnerability, which was classified as critical, was found in Oracle Rapid Planning 12.1/12.2. This affects an unknown part of the component Installation. The manipulation leads to server-side request forgery.
This vulnerability is uniquely identified as CVE-2019-0227. The attack can only be initiated within the local network. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2016-3556 | Oracle Agile PLM 9.3.4/9.3.5 EM Integration Remote Code Execution (BID-91787 / ID 1036402)
9 months 1 week ago
A vulnerability classified as very critical has been found in Oracle Agile PLM 9.3.4/9.3.5. Affected is an unknown function of the component EM Integration. The manipulation leads to Remote Code Execution.
This vulnerability is traded as CVE-2016-3556. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2016-3554 | Oracle Agile PLM 9.3.4/9.3.5 PC/BOM/MCAD/Design privilege escalation (BID-91787 / ID 1036402)
9 months 1 week ago
A vulnerability, which was classified as very critical, has been found in Oracle Agile PLM 9.3.4/9.3.5. Affected by this issue is some unknown functionality of the component PC/BOM/MCAD/Design. The manipulation leads to privilege escalation.
This vulnerability is handled as CVE-2016-3554. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2016-3561 | Oracle Agile PLM 9.3.4/9.3.5 SDK Remote Code Execution (BID-91787 / ID 1036402)
9 months 1 week ago
A vulnerability was found in Oracle Agile PLM 9.3.4/9.3.5 and classified as critical. This issue affects some unknown processing of the component SDK. The manipulation leads to Remote Code Execution.
The identification of this vulnerability is CVE-2016-3561. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2016-3538 | Oracle Agile PLM 9.3.4/9.3.5 File Folders/Attachment (BID-91787 / ID 1036402)
9 months 1 week ago
A vulnerability was found in Oracle Agile PLM 9.3.4/9.3.5. It has been classified as critical. Affected is an unknown function of the component File Folders/Attachment. The manipulation leads to an unknown weakness.
This vulnerability is traded as CVE-2016-3538. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2016-3539 | Oracle Agile PLM 9.3.4/9.3.5 File Folders/Attachment (BID-91787 / ID 1036402)
9 months 1 week ago
A vulnerability was found in Oracle Agile PLM 9.3.4/9.3.5. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the component File Folders/Attachment. The manipulation leads to an unknown weakness.
This vulnerability is known as CVE-2016-3539. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2016-3557 | Oracle Agile PLM 9.3.4/9.3.5 File Load (BID-91787 / ID 1036402)
9 months 1 week ago
A vulnerability, which was classified as critical, has been found in Oracle Agile PLM 9.3.4/9.3.5. This issue affects some unknown processing of the component File Load. The manipulation leads to an unknown weakness.
The identification of this vulnerability is CVE-2016-3557. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2016-3555 | Oracle Agile PLM 9.3.4/9.3.5 PGC/Excel Plugin (BID-91787 / ID 1036402)
9 months 1 week ago
A vulnerability has been found in Oracle Agile PLM 9.3.4/9.3.5 and classified as critical. Affected by this vulnerability is an unknown functionality of the component PGC/Excel Plugin. The manipulation leads to an unknown weakness.
This vulnerability is known as CVE-2016-3555. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2016-3553 | Oracle Agile PLM 9.3.4/9.3.5 PC Core (BID-91787 / ID 1036402)
9 months 1 week ago
A vulnerability was found in Oracle Agile PLM 9.3.4/9.3.5. It has been rated as critical. This issue affects some unknown processing of the component PC Core. The manipulation leads to an unknown weakness.
The identification of this vulnerability is CVE-2016-3553. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com