Aggregator
CVE-2024-43451
9 months ago
Currently trending CVE - Hype Score: 1 - NTLM Hash Disclosure Spoofing Vulnerability
Lynx
9 months ago
cohenido
Breaches Often Start Where You Least Expect | Grip Security
9 months ago
Major breaches don’t start with hackers—they start with overlooked security gaps. Learn how to find and fix SaaS blind spots before they become attacks.
The post Breaches Often Start Where You Least Expect | Grip Security appeared first on Security Boulevard.
Grip Security Blog
Canadian Auto Retail Giant AutoCanada Targeted by MEDUSA Ransomware, 455GB of Data Allegedly Stolen
9 months ago
Canadian Auto Retail Giant AutoCanada Targeted by MEDUSA Ransomware, 455GB of Data Allegedly Stolen
Dark Web Informer - Cyber Threat Intelligence
360 Privacy Raises $36M to Expand Threat Protection Services
9 months ago
Investment to Scale Engineering, Expansion from Data Deletion to Threat Reduction
Executive digital protection firm 360 Privacy raised $36 million to expand its engineering team and boost its ability to remove sensitive data from brokers. The company is shifting from a data deletion focus to broader threat mitigation, tackling risks from digital tracking and location data leaks.
Executive digital protection firm 360 Privacy raised $36 million to expand its engineering team and boost its ability to remove sensitive data from brokers. The company is shifting from a data deletion focus to broader threat mitigation, tackling risks from digital tracking and location data leaks.
Insurer Notifying 335,500 Customers, Agents, Others of Hack
9 months ago
Texas Incident is Largest Breach Reported by a Health Plan So Far in 2025
A Texas-based insurance firm is notifying more than 335,500 people of a December hack involving their sensitive personal and health information. The breach affects many - but not all - of the company's policyholders, agents and insurance carrier partners in multiple states.
A Texas-based insurance firm is notifying more than 335,500 people of a December hack involving their sensitive personal and health information. The breach affects many - but not all - of the company's policyholders, agents and insurance carrier partners in multiple states.
Federal Judges Block Trump's Mass Firings of Federal Workers
9 months ago
Restraining Order Allows Dismissed Cyber Defense Agency Employees to Return to Work
A temporary restraining order against the Trump administration's efforts to shrink the size of the federal workforce will allow thousands of probationary employees to return to work as experts warn the purge threatens national cybersecurity.
A temporary restraining order against the Trump administration's efforts to shrink the size of the federal workforce will allow thousands of probationary employees to return to work as experts warn the purge threatens national cybersecurity.
DeepSeek-R1 Can Almost Generate Malware
9 months ago
DeepSeek Comes Very Close to Producing a Keylogger and Ransomware
Security researchers used the Chinese DeepSeek-R1 artificial intelligence reasoning model to come close to developing ransomware variants and keyloggers with evasion capabilities. The model needs prompt engineering and its output requires code editing.
Security researchers used the Chinese DeepSeek-R1 artificial intelligence reasoning model to come close to developing ransomware variants and keyloggers with evasion capabilities. The model needs prompt engineering and its output requires code editing.
360 Privacy Raises $36M to Expand Threat Protection Services
9 months ago
Investment to Scale Engineering, Expansion From Data Deletion to Threat Reduction
Executive digital protection firm 360 Privacy raised $36 million to expand its engineering team and boost its ability to remove sensitive data from brokers. The company is shifting from a data deletion focus to broader threat mitigation, tackling risks from digital tracking and location data leaks.
Executive digital protection firm 360 Privacy raised $36 million to expand its engineering team and boost its ability to remove sensitive data from brokers. The company is shifting from a data deletion focus to broader threat mitigation, tackling risks from digital tracking and location data leaks.
Insurer Notifying 335,500 Customers, Agents, Others of Hack
9 months ago
Texas Incident Is the Largest Breach Reported by a Health Plan So Far in 2025
A Texas-based insurance firm is notifying more than 335,500 people of a December 2024 hack involving their sensitive personal and health information. The breach affects many - but not all - of the company's policyholders, agents and insurance carrier partners in multiple states.
A Texas-based insurance firm is notifying more than 335,500 people of a December 2024 hack involving their sensitive personal and health information. The breach affects many - but not all - of the company's policyholders, agents and insurance carrier partners in multiple states.
Federal Judges Block Trump's Mass Firings of Federal Workers
9 months ago
Restraining Order Allows Dismissed Cyber Defense Agency Employees to Return to Work
A temporary restraining order against the Trump administration's efforts to shrink the size of the federal workforce will allow thousands of probationary employees to return to work as experts warn the purge threatens national cybersecurity.
A temporary restraining order against the Trump administration's efforts to shrink the size of the federal workforce will allow thousands of probationary employees to return to work as experts warn the purge threatens national cybersecurity.
Daily Dose of Dark Web Informer - 14th of March 2025
9 months ago
This daily article is intended to make it easier for those who want to stay updated with my regular Dark Web Informer and X/Twitter posts.
Dark Web Informer - Cyber Threat Intelligence
CVE-2024-39388 | Adobe Substance3D Stager up to 3.0.2 use after free (apsb24-60)
9 months ago
A vulnerability, which was classified as critical, was found in Adobe Substance3D Stager up to 3.0.2. This affects an unknown part. The manipulation leads to use after free.
This vulnerability is uniquely identified as CVE-2024-39388. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-39389 | Adobe InDesign Desktop up to 18.5.2/19.4 stack-based overflow (apsb24-56)
9 months ago
A vulnerability has been found in Adobe InDesign Desktop up to 18.5.2/19.4 and classified as critical. This vulnerability affects unknown code. The manipulation leads to stack-based buffer overflow.
This vulnerability was named CVE-2024-39389. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-39390 | Adobe InDesign Desktop up to 18.5.2/19.4 out-of-bounds write (apsb24-56)
9 months ago
A vulnerability was found in Adobe InDesign Desktop up to 18.5.2/19.4 and classified as critical. This issue affects some unknown processing. The manipulation leads to out-of-bounds write.
The identification of this vulnerability is CVE-2024-39390. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-39391 | Adobe InDesign Desktop up to 18.5.2/19.4 out-of-bounds write (apsb24-56)
9 months ago
A vulnerability was found in Adobe InDesign Desktop up to 18.5.2/19.4. It has been classified as critical. Affected is an unknown function. The manipulation leads to out-of-bounds write.
This vulnerability is traded as CVE-2024-39391. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-39394 | Adobe InDesign Desktop up to 18.5.2/19.4 out-of-bounds write (apsb24-56)
9 months ago
A vulnerability was found in Adobe InDesign Desktop up to 18.5.2/19.4. It has been declared as critical. Affected by this vulnerability is an unknown functionality. The manipulation leads to out-of-bounds write.
This vulnerability is known as CVE-2024-39394. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-39422 | Adobe Acrobat Reader use after free (apsb24-57)
9 months ago
A vulnerability was found in Adobe Acrobat Reader up to 20.005.30636/24.002.20965/24.002.20964/24.001.30123. It has been rated as critical. Affected by this issue is some unknown functionality. The manipulation leads to use after free.
This vulnerability is handled as CVE-2024-39422. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-39423 | Adobe Acrobat Reader out-of-bounds write (apsb24-57)
9 months ago
A vulnerability classified as critical has been found in Adobe Acrobat Reader up to 20.005.30636/24.002.20965/24.002.20964/24.001.30123. This affects an unknown part. The manipulation leads to out-of-bounds write.
This vulnerability is uniquely identified as CVE-2024-39423. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com