Aggregator
欢迎报名5.14 EISS 大会,提问题送书啦
3 years 11 months ago
欢迎大家扫码报名参加5.14日的eiss大会,提问题送书啦
欢迎报名5.14 EISS 大会,提问题送书啦
3 years 11 months ago
欢迎大家扫码报名参加5.14日的eiss大会,提问题送书啦
chrome sandbox escape case study and plaidctf2020 mojo writeup
3 years 11 months ago
sakura
DDoS Attack Trends for 2020
3 years 11 months ago
Denial-of-service attacks are increasing and becoming more complex. We look at how attackers are attempting to bring down services around the world.
Apple Security Update for Safari - Exploitation in the Wild Reported
3 years 11 months ago
Summary
Apple has published a security update for Safari. One vulnerability is addressed in the update, which is reported as being actively exploited in the wild.
Threat Type
Vulnerability
Overview
Apple has published a security update for Safari. One vulnerability is addressed in the update, which is reported as being actively exploited in the wild. If successfully exploited, the vulnerability could potentially allow a remote attacker to execute arbitrary code. We recommend updating to the latest version a
Mozilla Security Advisories - May 5 2021
3 years 11 months ago
Summary
The Mozilla Foundation has issued three security advisories that address multiple vulnerabilities in Firefox, Firefox ESR, and Thunderbird.
Threat Type
Vulnerability
Overview
The Mozilla Foundation has released Firefox 88.0.1 and Firefox for Android 88.1.3. There are two vulnerabilities addressed in the update of which one is rated as Critical and one as High. The critical vulnerability only affects the Android version and potentially leaves the browser vulnerable to a universal cross-site scripting
【Java 代码审计入门-04】SSRF 漏洞原理与实际案例介绍
3 years 11 months ago
【Java 代码审计入门-04】SSRF 漏洞原理与实际案例介绍
AWS S3 subdomain takeover
3 years 11 months ago
TonghuaRoot
HTTP/2 Header Field Re-used Attack Trick
3 years 11 months ago
TonghuaRoot
【Java 代码审计入门-04】SSRF 漏洞原理与实际案例介绍
3 years 11 months ago
【Java 代码审计入门-04】SSRF 漏洞原理与实际案例介绍
DC Metro Police Hit With Ransomware Attack
3 years 11 months ago
Summary
About a week ago, the Infosecurity Group reported that Washington D.C.'s metro police department was hit by ransomware threat actors of Russian origins.
Threat Type
Ransomware
Overview
The Babuk group claimed to have information on confidential informants used by the district's police department. Metro police only acknowledged the breach but not whether or not they paid the ransom or even that there was an attack and that ransom was being sought. The information the group claimed to have included ga
【Java 代码审计入门-03】XSS 漏洞原理与实际案例介绍
3 years 11 months ago
【Java 代码审计入门-03】XSS 漏洞原理与实际案例介绍
VMware Security Advisory VMSA-2021-0007
3 years 11 months ago
Summary
VMWare published a security advisory, VMSA-2021-0007, that addresses a remote code execution vulnerability in VMware vRealize Business for Cloud.
Threat Type
Vulnerability
Overview
VMWare published a security advisory, VMSA-2021-0007, that addresses a vulnerability (CVE-2021-21984) in VMware vRealize Business for Cloud. The vulnerability could allow an unauthenticated remote attacker to execute arbitrary code on an affected vRealize Business for Cloud Virtual appliance. We recommend reviewing the ad
Cisco Security Advisories May 5 2021
3 years 11 months ago
Summary
Cisco has published twenty-nine Security Advisories. Of the advisories, two are rated as Critical, seven are rated as High, nineteen are rated as Medium, and one is rated as Informational.
Threat Type
Vulnerability
Overview
Cisco has published twenty-nine Security Advisories. Of the advisories, two are rated as Critical, seven are rated as High, nineteen are rated as Medium, and one is rated as Informational. Please note that one of the advisories summarized below (cisco-sa-anyconnect-profile-AggMUC
Defeating the Pirates
3 years 11 months ago
In Akamai's paper, "Inside the World of Video Pirates," we discovered why digital intellectual property theft (aka "piracy") is possibly the most misunderstood form of cybercrime facing the TV, sports, and film industries.
Ian Munford
【Java 代码审计入门-03】XSS 漏洞原理与实际案例介绍
3 years 11 months ago
【Java 代码审计入门-03】XSS 漏洞原理与实际案例介绍
java反射机制小结
3 years 11 months ago
带你了解 Java 反射知识
java反射机制小结
3 years 11 months ago
带你了解 Java 反射知识
开源信息收集周报#73
3 years 11 months ago
情报小蜜蜂改版啦~