Aggregator
The Evolution of iOS Passcode Security
CVE-2024-2961 | GNU C Library up to 2.39 iconv out-of-bounds write (DLA 3807-1 / Nessus ID 214840)
CVE-2023-30536 | slim psr7 up to 1.6.0 Header interpretation conflict (GHSA-q2qj-628g-vhfw / Nessus ID 214840)
巴塞尔税务机关因域名错误不得不购买巴哈马域名
CVE-2001-0324 | Microsoft Windows 98/2000 Java Applet UDP Socket denial of service (EDB-20613 / BID-2340)
CVE-2007-1355 | Apache Tomcat up to 4.0.0 hello.jsp test cross site scripting (EDB-30052 / Nessus ID 25289)
Microsoft to Boost M365 Bounty Program With New Products & Rewards Up to $27,000
A significant extension of Microsoft’s Microsoft 365 (M365) Bounty Program has been announced. The program now includes new Viva products under its scope for identifying vulnerabilities, with rewards reaching up to $27,000 for critical submissions. This update underscores Microsoft’s commitment to enhancing the security of its software ecosystem and encouraging global collaboration in vulnerability detection. […]
The post Microsoft to Boost M365 Bounty Program With New Products & Rewards Up to $27,000 appeared first on Cyber Security News.
D-Link Routers Vulnerability Let Attackers Gain Full Router Control Remotely
A critical unauthenticated Remote Code Execution (RCE) vulnerability has been affecting DSL-3788 routers, allowing attackers to acquire complete control over the router remotely. The flaw has been detected in firmware versions v1.01R1B036_EU_EN and below. This vulnerability was reported by Max Bellia of SECURE NETWORK BVTECH. The vulnerability resides in the webproc CGI component of the […]
The post D-Link Routers Vulnerability Let Attackers Gain Full Router Control Remotely appeared first on Cyber Security News.
CVE-2015-4181 | phpMyBackupPro 2.1/2.2/2.3/2.4/2.5 Incomplete Fix get_file.php view path traversal (EDB-10169)
Authorities Take Down Cracked & Nulled Hacking Forums Used by 10 Million Users
In a law enforcement operation dubbed “Operation Talent,” an international coalition of law enforcement agencies led by Germany’s Bundeskriminalamt (BKA) and Europol has dismantled two of the world’s largest cybercrime forums: Cracked.io and Nulled.to. These platforms, which collectively hosted over 10 million users, served as hubs for illicit activities, including selling stolen data, malware, hacking […]
The post Authorities Take Down Cracked & Nulled Hacking Forums Used by 10 Million Users appeared first on Cyber Security News.