π΄ Known macOS Vulnerabilities Led Researcher to Root Out New Flaws π΄
π Read
via "Dark Reading".
Researcher shares how he unearthed newer bugs in Apple's operating system by closer scrutiny of previous research, including vulnerabilities that came out of the Pwn2Own competition.π Read
via "Dark Reading".
Darkreading
Known macOS Vulnerabilities Led Researcher to Root Out New Flaws
Researcher shares how he unearthed newer bugs in Apple's operating system by closer scrutiny of previous research, including vulnerabilities that came out of the Pwn2Own competition.
β Malware Builder Leverages Discord Webhooks β
π Read
via "Threat Post".
Researchers discovered a simple malware builder designed to steal credentials, then pinging them to Discord webhooks.π Read
via "Threat Post".
Threat Post
Malware Builder Leverages Discord Webhooks
Researchers discovered a simple malware builder designed to steal credentials, then pinging them to Discord webhooks.
π΄ How Can Your Business Defend Itself Against Fraud-as-a-Service? π΄
π Read
via "Dark Reading".
By understanding how FaaS works and following best practices to prevent it, your business can protect its customers, revenue, and brand reputation.π Read
via "Dark Reading".
Darkreading
How Can Your Business Defend Itself Against Fraud-as-a-Service?
By understanding how FaaS works and following best practices to prevent it, your business can protect its customers, revenue, and brand reputation.
ποΈ Researcher stops REvil ransomware in its tracks with DLL-hijacking exploit ποΈ
π Read
via "The Daily Swig".
Conti, Lockbit, and other prolific ransomware strains apparently have similar vulnerabilitiesπ Read
via "The Daily Swig".
The Daily Swig | Cybersecurity news and views
Researcher stops REvil ransomware in its tracks with DLL-hijacking exploit
Conti, Lockbit, and other prolific ransomware strains apparently have similar vulnerabilities
βΌ CVE-2021-42863 βΌ
π Read
via "National Vulnerability Database".
A buffer overflow in ecma_builtin_typedarray_prototype_filter() in JerryScript version fe3a5c0 allows an attacker to construct a fake object or a fake arraybuffer with unlimited size.π Read
via "National Vulnerability Database".
βΌ CVE-2022-28873 βΌ
π Read
via "National Vulnerability Database".
A vulnerability affecting F-Secure SAFE browser was discovered. An attacker can potentially exploit Javascript window.open functionality in SAFE Browser which could lead address bar spoofing attacks.π Read
via "National Vulnerability Database".
βΌ CVE-2022-28872 βΌ
π Read
via "National Vulnerability Database".
A vulnerability affecting F-Secure SAFE browser was discovered. A maliciously crafted website could make a phishing attack with address bar spoofing as the address bar was not correct if navigation fails in a loop.π Read
via "National Vulnerability Database".
ποΈ Marcus Hutchins on halting the WannaCry ransomware attack β βStill to this day it feels like it was all a weird dreamβ ποΈ
π Read
via "The Daily Swig".
Five years since WannaCry exploded onto the scene, ransomware still tops global threat lists ANALYSIS Five years ago today (May 12), a ransomware attack by a North Korean hacking group hit computers rπ Read
via "The Daily Swig".
The Daily Swig | Cybersecurity news and views
Marcus Hutchins on halting the WannaCry ransomware attack β βStill to this day it feels like it was all a weird dreamβ
Five years since WannaCry exploded onto the scene, ransomware still tops global threat lists
β Serious Security: Learning from curlβs latest bug update β
π Read
via "Naked Security".
Learn how to write plain-speaking and purposeful security advisories from one of the most widely-used open source tools in the world.π Read
via "Naked Security".
Naked Security
Serious Security: Learning from curlβs latest bug update
Learn how to write plain-speaking and purposeful security advisories from one of the most widely-used open source tools in the world.
β S3 Ep82: Bugs, bugs, bugs (and Colonial Pipeline again) [Podcast] β
π Read
via "Naked Security".
Latest episode - lots to learn - plain English - fun with a serious side - listen now!π Read
via "Naked Security".
Naked Security
S3 Ep82: Bugs, bugs, bugs (and Colonial Pipeline again) [Podcast]
Latest episode β lots to learn β plain English β fun with a serious side β listen now!
βΌ CVE-2022-29989 βΌ
π Read
via "National Vulnerability Database".
Online Sports Complex Booking System 1.0 is vulnerable to SQL Injection via \scbs\classes\Master.php?f=delete_booking.π Read
via "National Vulnerability Database".
βΌ CVE-2022-29982 βΌ
π Read
via "National Vulnerability Database".
Simple Client Management System 1.0 is vulnerable to SQL Injection via /cms/admin/maintenance/manage_service.php?id=.π Read
via "National Vulnerability Database".
βΌ CVE-2022-29751 βΌ
π Read
via "National Vulnerability Database".
Simple Client Management System 1.0 is vulnerable to SQL Injection via /cms/classes/Master.php?f=delete_client.π Read
via "National Vulnerability Database".
βΌ CVE-2022-29992 βΌ
π Read
via "National Vulnerability Database".
Online Sports Complex Booking System 1.0 is vulnerable to SQL Injection via /scbs/admin/categories/manage_category.php?id=.π Read
via "National Vulnerability Database".
βΌ CVE-2022-29980 βΌ
π Read
via "National Vulnerability Database".
Simple Client Management System 1.0 is vulnerable to SQL Injection via /cms/admin/?page=user/manage_user&id=.π Read
via "National Vulnerability Database".
βΌ CVE-2022-29986 βΌ
π Read
via "National Vulnerability Database".
Online Sports Complex Booking System 1.0 is vulnerable to SQL Injection via \scbs\classes\Master.php?f=delete_facility.π Read
via "National Vulnerability Database".
βΌ CVE-2022-29988 βΌ
π Read
via "National Vulnerability Database".
Online Sports Complex Booking System 1.0 is vulnerable to SQL Injection via \scbs\classes\Master.php?f=delete.π Read
via "National Vulnerability Database".
βΌ CVE-2022-29983 βΌ
π Read
via "National Vulnerability Database".
Simple Client Management System 1.0 is vulnerable to SQL Injection via /cms/admin/?page=invoice/view_invoice&id=.π Read
via "National Vulnerability Database".
βΌ CVE-2022-29995 βΌ
π Read
via "National Vulnerability Database".
Online Sports Complex Booking System 1.0 is vulnerable to SQL Injection via /scbs/admin/?page=clients/manage_client&id=.π Read
via "National Vulnerability Database".
βΌ CVE-2022-29981 βΌ
π Read
via "National Vulnerability Database".
Simple Client Management System 1.0 is vulnerable to SQL Injection via /cms/classes/Users.php?f=delete.π Read
via "National Vulnerability Database".
βΌ CVE-2022-29987 βΌ
π Read
via "National Vulnerability Database".
Online Sports Complex Booking System 1.0 is vulnerable to SQL Injection via /scbs/admin/?page=user/manage_user&id=.π Read
via "National Vulnerability Database".