πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.9K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
β€Ό CVE-2022-41482 β€Ό

Tenda AC1200 US_AC6V2.0RTL_V15.03.06.51_multi_TDE01 was discovered to contain a buffer overflow in the 0x47c5dc function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted request.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2020-26839 β€Ό

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2020. Notes: none.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-42161 β€Ό

D-Link COVR 1200,1202,1203 v1.08 was discovered to contain a command injection vulnerability via the /SetTriggerWPS/PIN parameter at function SetTriggerWPS.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2020-26866 β€Ό

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2020. Notes: none.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2020-26840 β€Ό

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2020. Notes: none.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-41485 β€Ό

Tenda AC1200 US_AC6V2.0RTL_V15.03.06.51_multi_TDE01 was discovered to contain a buffer overflow in the 0x47ce00 function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted request.

πŸ“– Read

via "National Vulnerability Database".
πŸ‘1
β€Ό CVE-2020-26849 β€Ό

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2020. Notes: none.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-42160 β€Ό

D-Link COVR 1200,1202,1203 v1.08 was discovered to contain a command injection vulnerability via the system_time_timezone parameter at function SetNTPServerSettings.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-41481 β€Ό

Tenda AC1200 US_AC6V2.0RTL_V15.03.06.51_multi_TDE01 was discovered to contain a buffer overflow in the 0x47de1c function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted request.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2020-26856 β€Ό

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2020. Notes: none.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2020-26862 β€Ό

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2020. Notes: none.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-42156 β€Ό

D-Link COVR 1200,1203 v1.08 was discovered to contain a command injection vulnerability via the tomography_ping_number parameter at function SetNetworkTomographySettings.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-42159 β€Ό

D-Link COVR 1200,1202,1203 v1.08 was discovered to have a predictable seed in a Pseudo-Random Number Generator.

πŸ“– Read

via "National Vulnerability Database".
πŸ•΄ Feature-Rich 'Alchimist' Cyberattack Framework Targets Windows, Mac, Linux Environments πŸ•΄

The comprehensive, multiplatform framework comes loaded with weapons, and it is likely another effort by a China-based threat group to develop an alternative to Cobalt Strike and Sliver.

πŸ“– Read

via "Dark Reading".
πŸ•΄ Comprehensive Network Visibility Is Imperative for Zero-Trust Maturity πŸ•΄

Distrust and verify, because you can't protect what you can't see.

πŸ“– Read

via "Dark Reading".
πŸ‘1
πŸ•΄ Novel npm Timing Attack Allows Corporate Targeting πŸ•΄

A timing attack helps cyberattackers lob malicious code-bombs at corporate targets by cloning private package names.

πŸ“– Read

via "Dark Reading".
πŸ•΄ Quarter of Healthcare Ransomware Victims Forced to Halt Operations πŸ•΄

Trend Micro research reveals supply chains are key source of risk.

πŸ“– Read

via "Dark Reading".
πŸ•΄ Nexusguard Research Shows Total Number of DDoS Attacks Increased during First Half of 2022 While Maximum Attack Size Decreased Compared to Second Half of 2021 πŸ•΄

Nexusguard DDoS Statistical Report reveals key attack observations and analysis from the first half of 2022.

πŸ“– Read

via "Dark Reading".
πŸ•΄ Armis Now Available on Google Cloud Marketplace πŸ•΄

Enterprises seeking asset visibility and security enabled to simplify the procurement process of Armis.

πŸ“– Read

via "Dark Reading".
πŸ•΄ HSBC and Silent Eight Expand Machine Learning Partnership πŸ•΄

Silent Eight announced an extension to its existing partnership with HSBC to tackle financial crime.

πŸ“– Read

via "Dark Reading".
πŸ•΄ Google Cloud Advances Partnerships with 20-Plus Software Companies Focused on Digital Sovereignty and Cybersecurity πŸ•΄

At Next '22, Google Cloud announces updates to its trusted cloud ecosystem with new Sovereign Solutions initiative and partnerships spanning critical areas of cybersecurity.

πŸ“– Read

via "Dark Reading".