βΌ CVE-2022-22892 βΌ
π Read
via "National Vulnerability Database".
There is an Assertion 'ecma_is_value_undefined (value) || ecma_is_value_null (value) || ecma_is_value_boolean (value) || ecma_is_value_number (value) || ecma_is_value_string (value) || ecma_is_value_bigint (value) || ecma_is_value_symbol (value) || ecma_is_value_object (value)' failed at jerry-core/ecma/base/ecma-helpers-value.c in Jerryscripts 3.0.0.π Read
via "National Vulnerability Database".
βΌ CVE-2022-22895 βΌ
π Read
via "National Vulnerability Database".
Jerryscript 3.0.0 was discovered to contain a heap-buffer-overflow via ecma_utf8_string_to_number_by_radix in /jerry-core/ecma/base/ecma-helpers-conversion.c.π Read
via "National Vulnerability Database".
βΌ CVE-2022-22929 βΌ
π Read
via "National Vulnerability Database".
MCMS v5.2.4 was discovered to have an arbitrary file upload vulnerability in the New Template module, which allows attackers to execute arbitrary code via a crafted ZIP file.π Read
via "National Vulnerability Database".
βΌ CVE-2022-22930 βΌ
π Read
via "National Vulnerability Database".
A remote code execution (RCE) vulnerability in the Template Management function of MCMS v5.2.4 allows attackers to execute arbitrary code via a crafted payload.π Read
via "National Vulnerability Database".
βΌ CVE-2022-22928 βΌ
π Read
via "National Vulnerability Database".
MCMS v5.2.4 was discovered to have a hardcoded shiro-key, allowing attackers to exploit the key and execute arbitrary code.π Read
via "National Vulnerability Database".
π’ Safari bug lets websites track browsing activity and unique identifiers π’
π Read
via "ITPro".
The flaw, found in Apple's WebKit browser engine, affects Safari 15 on macOS and all browsers on iOS and iPadOS 15π Read
via "ITPro".
IT PRO
Safari bug lets websites track browsing activity and unique identifiers | IT PRO
The flaw, found in Apple's WebKit browser engine, affects Safari 15 on macOS and all browsers on iOS and iPadOS 15
π’ NSW ditches e-voting system after glitch left citizens unable to vote π’
π Read
via "ITPro".
The electoral commissioner is also seeking the validity of the results in three councillor electionsπ Read
via "ITPro".
IT PRO
NSW ditches e-voting system after glitch left citizens unable to vote | IT PRO
The electoral commissioner is also seeking the validity of the results in three councillor elections
π’ Aldi launches its first checkout-free store in London π’
π Read
via "ITPro".
The store uses facial age estimation technology provided by Yoti to verify the purchase of age-restricted productsπ Read
via "ITPro".
IT PRO
Aldi launches its first checkout-free store in London | IT PRO
The store uses facial age estimation technology provided by Yoti to verify the purchase of age-restricted products
π’ European data regulators issued β¬1.1 billion in GDPR fines in 2021 π’
π Read
via "ITPro".
The UK placed sixth on the GDPR fine table with its Β£20 million fine levied against British Airwaysπ Read
via "ITPro".
IT PRO
European data regulators issued β¬1.1 billion in GDPR fines in 2021 | IT PRO
The UK placed sixth on the GDPR fine table with its Β£20 million fine levied against British Airways
π’ IOC defends China Olympics app after 'devastating flaw' revealed π’
π Read
via "ITPro".
The app may even be breaking Google and Appleβs app store policies when it comes to privacy, according to Citizen Labπ Read
via "ITPro".
IT PRO
IOC defends China Olympics app after 'devastating flaw' revealed | IT PRO
The app may even be breaking Google and Appleβs app store policies when it comes to privacy, according to Citizen Lab
π’ NCA plots education drive to crack down on children exploring cyber crime π’
π Read
via "ITPro".
With children as young as nine being referred to the NCA for launching DDoS attacks, the new campaign aims to educate children in the consequences of cyber crimeπ Read
via "ITPro".
IT PRO
NCA plots education drive to crack down on children exploring cyber crime | IT PRO
With children as young as nine being referred to the NCA for launching DDoS attacks, the new campaign aims to educate children in the consequences of cyber crime
π’ A month in the life of a social engineer - part three π’
π Read
via "ITPro".
With the master plan now well underway, we learn how the hacker exploits their target's βunpatchableβ human flaws to gain access to corporate systemsπ Read
via "ITPro".
IT PRO
A month in the life of a social engineer - part three | IT PRO
With the master plan now well underway, we learn how the hacker exploits their target's βunpatchableβ human flaws to gain access to corporate systems
π’ Skills 'deficit' forces Student Loans Company to spend heavily on temp staff π’
π Read
via "ITPro".
The organisation has spent Β£2.6 million on agency staff as it struggles to retain technical employeesπ Read
via "ITPro".
IT PRO
Skills 'deficit' forces Student Loans Company to spend heavily on temp staff | IT PRO
The organisation has spent Β£2.6 million on agency staff as it struggles to retain technical employees
π’ Microsoft warns full scope of Ukraine cyber attacks βnot fully realisedβ π’
π Read
via "ITPro".
The company's investigation into the attacks targeting Ukraine revealed atypical characteristics of the "destructive" campaign that disguises itself as ransomwareπ Read
via "ITPro".
ITPro
Microsoft warns full scope of Ukraine cyber attacks βnot fully realisedβ
The company's investigation into the attacks targeting Ukraine revealed atypical characteristics of the "destructive" campaign that disguises itself as ransomware
π’ The UK's IoT proposals are riddled with βastonishingβ gaps π’
π Read
via "ITPro".
The Product Security and Telecommunications Infrastructure (PTSI) Bill aims to address the connected devices security nightmare, but experts agree it doesnβt go far enoughπ Read
via "ITPro".
IT PRO
The UK's IoT proposals are riddled with βastonishingβ gaps | IT PRO
The Product Security and Telecommunications Infrastructure (PTSI) Bill aims to address the connected devices security nightmare, but experts agree it doesnβt go far enough
π’ Windows Server admins agree to forgo broken patches π’
π Read
via "ITPro".
Many administrators have agreed to wait until February's round of patches to avoid operational disruption caused by broken fixesπ Read
via "ITPro".
ITPro
Windows Server admins agree to forgo broken patches
Many administrators have agreed to wait until February's round of patches to avoid operational disruption caused by broken fixes
π’ Russia's "politically motivated" REvil raid could be used as leverage, experts warn π’
π Read
via "ITPro".
The cyber security industry says the FSB's arrests are βunlikelyβ to signal a change in Russiaβs policyπ Read
via "ITPro".
IT PRO
Russia's "politically motivated" REvil raid could be used as leverage, experts warn | IT PRO
The cyber security industry says the FSB's arrests are βunlikelyβ to signal a change in Russiaβs policy
π’ FireEye and McAfee Enterprise relaunch as Trellix π’
π Read
via "ITPro".
The new pure-play cyber security firmβs platform combines automation, machine learning, and threat intelligenceπ Read
via "ITPro".
IT PRO
FireEye and McAfee Enterprise relaunch as Trellix | IT PRO
The new pure-play cyber security firmβs platform combines automation, machine learning, and threat intelligence
π’ White House issues memorandum to bolster national security systems π’
π Read
via "ITPro".
Agencies must now implement multi-factor authentication within 180 days, along with encryption for data at rest and in transitπ Read
via "ITPro".
IT PRO
White House issues memorandum to bolster national security systems | IT PRO
Agencies must now implement multi-factor authentication within 180 days, along with encryption for data at rest and in transit
π’ Red Cross "appalled" by data breach targeting 515,000 vulnerable people π’
π Read
via "ITPro".
The charitable organisation has begged cyber attackers not to leak the data online in emotional pleaπ Read
via "ITPro".
IT PRO
Red Cross "appalled" by data breach targeting 515,000 vulnerable people | IT PRO
The charitable organisation has begged cyber attackers not to leak the data online in emotional plea
π’ DHL overtakes Microsoft as the most imitated brand in phishing attacks π’
π Read
via "ITPro".
Check Point Research reveals that the logistics giant accounted for almost a quarter of global phishing attacks in 2021π Read
via "ITPro".
ITPro
DHL overtakes Microsoft as the most imitated brand in phishing attacks
Check Point Research reveals that the logistics giant accounted for almost a quarter of global phishing attacks in 2021