Aggregator
CVE-2024-7698 | Phoenix Contact FL MGUARD 2102 CSRF Token improper removal of sensitive information before storage or transfer (VDE-2024-039)
CVE-2024-45407 | LizardByte Sunshine channel accessible
CVE-2024-43799 | pillarjs send up to 0.18.x HTTP Response sendStream.redirect cross site scripting (Nessus ID 209177)
CVE-2024-43796 | Express.js up to 4.19.x response.redirect cross site scripting (Nessus ID 208841)
CVE-2024-43800 | expressjs serve-static up to 1.15.x/2.0.x redirect cross site scripting (GHSA-cm22-4g7w-348p / Nessus ID 209172)
CVE-2024-6282 | litonice13 Master Addons Plugin up to 2.0.6.4 on WordPress cross site scripting
APT 'Blind Eagle' Targets Colombian Government
Apple iOS 18.4 Beta 3 Released – New Features, Enhancements, and What to Expect
Apple has taken another step toward the official release of iOS 18.4 by seeding the third developer beta of the update to testers late on March 10, 2025. This latest beta, identified by build number 22E5222f, arrives just one week after the release of iOS 18.4 Beta 2 and continues to refine the features introduced […]
The post Apple iOS 18.4 Beta 3 Released – New Features, Enhancements, and What to Expect appeared first on Cyber Security News.
CVE-2021-28689 | Xen Speculative Execution information disclosure (Nessus ID 232305)
CVE-2023-45931 | Freedesktop Mesa 23.0.4 check_xshm null pointer dereference (Nessus ID 232308)
CVE-2021-40647 | Robert Luberda man2html 1.6g size heap-based overflow (Nessus ID 232331)
CVE-2015-3325 | WP Symposium up to 15.3 on WordPress forum.php show sql injection (Exploit 1153677 / EDB-37080)
Researcher Hacked Embedded Devices To Extract The Firmware
A security researcher known as newp1ayer48 has successfully demonstrated a method to extract firmware from IoT and embedded devices using direct Flash Memory dumps, providing valuable insights for security professionals and bug bounty hunters. The technique, while potentially risky for the hardware, offers a reliable way to obtain firmware when other methods aren’t viable. This […]
The post Researcher Hacked Embedded Devices To Extract The Firmware appeared first on Cyber Security News.
CVE-2025-0289 | Paragon Partition Manager HalReturnToFirmware MappedSystemVa memory corruption
US govt says Americans lost record $12.5 billion to fraud in 2024
BSides Exeter 2024 – Purple Track – Tales Of DOMinica
Author/Presenter:Liam Follin
Our thanks to Bsides Exeter, and the Presenters/Authors for publishing their timely Bsides Exeter Conference content. All brought to you via the organizations YouTube channel.
The post BSides Exeter 2024 – Purple Track – Tales Of DOMinica appeared first on Security Boulevard.
Fast-Track Your PCI DSS 4.0 Compliance with Page Protect & AWS WAF
Meet PCI DSS 4.0 compliance fast with DataDome Page Protect & AWS WAF. Secure payment pages, automate compliance & stop fraud before the March 2025 deadline.
The post Fast-Track Your PCI DSS 4.0 Compliance with Page Protect & AWS WAF appeared first on Security Boulevard.