Aggregator
看暴漫学越权7
9 months 1 week ago
The TechCrunch Cyber Glossary
9 months 1 week ago
Cybersecurity is a world full of technical lingo and jargon. At TechCrunch, we have been writing ab
Guerre di Rete - Cercapersone esplosi: una ricostruzione
9 months 1 week ago
Guerre di Rete - una newsletter di notizie cyberdi Carola FredianiN.191 - 22 settembre 2024(Comunica
Code Smell 270 - Boolean APIs
9 months 1 week ago
Avoid booleans, alwaysTL;DR: Replace boolean security flags in APIs with separate, more secure end
PatriotCTF 2024
9 months 1 week ago
Name: PatriotCTF 2024 (an PatriotCTF event.)
Date: Sept. 20, 2024, 10 p.m. — 22 Sept. 2024, 22:00 UTC [add to calendar]
Format: Jeopardy
On-line
Offical URL: http://pctf.competitivecyber.club/
Rating weight: 31.83
Event organizers: Competitive Cyber at Mason
Date: Sept. 20, 2024, 10 p.m. — 22 Sept. 2024, 22:00 UTC [add to calendar]
Format: Jeopardy
On-line
Offical URL: http://pctf.competitivecyber.club/
Rating weight: 31.83
Event organizers: Competitive Cyber at Mason
ASIS CTF Quals 2024
9 months 1 week ago
Name: ASIS CTF Quals 2024 (an ASIS CTF Quals event.)
Date: Sept. 21, 2024, 2 p.m. — 22 Sept. 2024, 14:00 UTC [add to calendar]
Format: Jeopardy
On-line
Offical URL: https://asisctf.com/
Rating weight: 66.25
Event organizers: ASIS
Date: Sept. 21, 2024, 2 p.m. — 22 Sept. 2024, 14:00 UTC [add to calendar]
Format: Jeopardy
On-line
Offical URL: https://asisctf.com/
Rating weight: 66.25
Event organizers: ASIS
SECURITY AFFAIRS MALWARE NEWSLETTER – ROUND 12
9 months 1 week ago
SECURITY AFFAIRS MALWARE NEWSLETTER – ROUND 12 | Security Affairs newsletter Round 490 by Pierlu
CVE-2016-7636 | Apple macOS up to 10.12.1 Security input validation (HT207423 / Nessus ID 95917)
9 months 1 week ago
A vulnerability classified as problematic was found in Apple macOS up to 10.12.1. Affected by this vulnerability is an unknown functionality of the component Security. The manipulation leads to improper input validation.
This vulnerability is known as CVE-2016-7636. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
AntSword新增类型:JSPRAW的一些玩法
9 months 1 week ago
背景最近给AntSword新增了一种类型:JSPRAW,主要有以下两点改进:JSPRAW不再使用其他参数进行传参,同时支持key-value键值对以及raw传参形式新增toString触发方式,Pay
Security Affairs newsletter Round 490 by Pierluigi Paganini – INTERNATIONAL EDITION
9 months 1 week ago
SECURITY AFFAIRS MALWARE NEWSLETTER – ROUND 12 | Security Affairs newsletter Round 490 by Pierlu
CVE-2021-38163 | SAP NetWeaver 7.30/7.31/7.40/7.50 Visual Composer unrestricted upload
9 months 1 week ago
A vulnerability was found in SAP NetWeaver 7.30/7.31/7.40/7.50. It has been rated as critical. Affected by this issue is some unknown functionality of the component Visual Composer. The manipulation leads to unrestricted upload.
This vulnerability is handled as CVE-2021-38163. The attack may be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2021-30883 | Apple iOS/iPadOS up to 15.0.1 IOMobileFrameBuffer memory corruption (HT212846)
9 months 1 week ago
A vulnerability classified as critical has been found in Apple iOS and iPadOS up to 15.0.1. This affects an unknown part of the component IOMobileFrameBuffer. The manipulation leads to memory corruption.
This vulnerability is uniquely identified as CVE-2021-30883. Attacking locally is a requirement. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2021-30883 | Apple tvOS 15.0 IOMobileFrameBuffer memory corruption (HT212876)
9 months 1 week ago
A vulnerability, which was classified as critical, was found in Apple tvOS 15.0. Affected is an unknown function of the component IOMobileFrameBuffer. The manipulation leads to memory corruption.
This vulnerability is traded as CVE-2021-30883. An attack has to be approached locally. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2021-30883 | Apple watchOS up to 8.0.1 IOMobileFrameBuffer memory corruption (HT212874)
9 months 1 week ago
A vulnerability was found in Apple watchOS up to 8.0.1. It has been classified as critical. This affects an unknown part of the component IOMobileFrameBuffer. The manipulation leads to memory corruption.
This vulnerability is uniquely identified as CVE-2021-30883. The attack needs to be approached locally. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2021-30883 | Apple macOS up to 12.0 IOMobileFrameBuffer memory corruption (HT212869)
9 months 1 week ago
A vulnerability was found in Apple macOS up to 12.0 and classified as critical. This issue affects some unknown processing of the component IOMobileFrameBuffer. The manipulation leads to memory corruption.
The identification of this vulnerability is CVE-2021-30883. An attack has to be approached locally. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2021-1048 | Google Android Kernel use after free
9 months 1 week ago
A vulnerability was found in Google Android. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the component Kernel. The manipulation leads to use after free.
This vulnerability is known as CVE-2021-1048. The attack can be launched remotely. Furthermore, there is an exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2021-4034 | polkit /usr/bin/pkexec access control (EDB-50689)
9 months 1 week ago
A vulnerability, which was classified as critical, has been found in polkit. This issue affects some unknown processing of the file /usr/bin/pkexec. The manipulation leads to improper access controls.
The identification of this vulnerability is CVE-2021-4034. The attack may be initiated remotely. Furthermore, there is an exploit available.
It is recommended to change the configuration settings.
vuldb.com
CVE-2022-26134 | Atlassian Confluence Server/Data Center up to 7.18.0 OGNL injection (CONFSERVER-79016 / EDB-50952)
9 months 1 week ago
A vulnerability, which was classified as very critical, was found in Atlassian Confluence Server and Data Center up to 7.18.0. Affected is an unknown function of the component OGNL Handler. The manipulation leads to injection.
This vulnerability is traded as CVE-2022-26134. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2007-3401 | B1G b1gBB 2.24 footer.inc.php tfooter file inclusion (EDB-4102 / XFDB-35035)
9 months 1 week ago
A vulnerability has been found in B1G b1gBB 2.24 and classified as critical. This vulnerability affects unknown code of the file footer.inc.php. The manipulation of the argument tfooter leads to file inclusion.
This vulnerability was named CVE-2007-3401. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com