πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.9K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
β€Ό CVE-2020-26856 β€Ό

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2020. Notes: none.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2020-26862 β€Ό

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2020. Notes: none.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-42156 β€Ό

D-Link COVR 1200,1203 v1.08 was discovered to contain a command injection vulnerability via the tomography_ping_number parameter at function SetNetworkTomographySettings.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-42159 β€Ό

D-Link COVR 1200,1202,1203 v1.08 was discovered to have a predictable seed in a Pseudo-Random Number Generator.

πŸ“– Read

via "National Vulnerability Database".
πŸ•΄ Feature-Rich 'Alchimist' Cyberattack Framework Targets Windows, Mac, Linux Environments πŸ•΄

The comprehensive, multiplatform framework comes loaded with weapons, and it is likely another effort by a China-based threat group to develop an alternative to Cobalt Strike and Sliver.

πŸ“– Read

via "Dark Reading".
πŸ•΄ Comprehensive Network Visibility Is Imperative for Zero-Trust Maturity πŸ•΄

Distrust and verify, because you can't protect what you can't see.

πŸ“– Read

via "Dark Reading".
πŸ‘1
πŸ•΄ Novel npm Timing Attack Allows Corporate Targeting πŸ•΄

A timing attack helps cyberattackers lob malicious code-bombs at corporate targets by cloning private package names.

πŸ“– Read

via "Dark Reading".
πŸ•΄ Quarter of Healthcare Ransomware Victims Forced to Halt Operations πŸ•΄

Trend Micro research reveals supply chains are key source of risk.

πŸ“– Read

via "Dark Reading".
πŸ•΄ Nexusguard Research Shows Total Number of DDoS Attacks Increased during First Half of 2022 While Maximum Attack Size Decreased Compared to Second Half of 2021 πŸ•΄

Nexusguard DDoS Statistical Report reveals key attack observations and analysis from the first half of 2022.

πŸ“– Read

via "Dark Reading".
πŸ•΄ Armis Now Available on Google Cloud Marketplace πŸ•΄

Enterprises seeking asset visibility and security enabled to simplify the procurement process of Armis.

πŸ“– Read

via "Dark Reading".
πŸ•΄ HSBC and Silent Eight Expand Machine Learning Partnership πŸ•΄

Silent Eight announced an extension to its existing partnership with HSBC to tackle financial crime.

πŸ“– Read

via "Dark Reading".
πŸ•΄ Google Cloud Advances Partnerships with 20-Plus Software Companies Focused on Digital Sovereignty and Cybersecurity πŸ•΄

At Next '22, Google Cloud announces updates to its trusted cloud ecosystem with new Sovereign Solutions initiative and partnerships spanning critical areas of cybersecurity.

πŸ“– Read

via "Dark Reading".
β€Ό CVE-2022-42719 β€Ό

A use-after-free in the mac80211 stack when parsing a multi-BSSID element in the Linux kernel 5.2 through 5.19.14 could be used by attackers (able to inject WLAN frames) to crash the kernel and potentially execute code.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-35612 β€Ό

A cross-site scripting (XSS) vulnerability in MQTTRoute v3.3 and below allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the dashboard name text field.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-35944 β€Ό

October is a self-hosted Content Management System (CMS) platform based on the Laravel PHP Framework. This vulnerability only affects installations that rely on the safe mode restriction, commonly used when providing public access to the admin panel. Assuming an attacker has access to the admin panel and permission to open the "Editor" section, they can bypass the Safe Mode (`cms.safe_mode`) restriction to introduce new PHP code in a CMS template using a specially crafted request. The issue has been patched in versions 2.2.34 and 3.0.66.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-39300 β€Ό

node SAML is a SAML 2.0 library based on the SAML implementation of passport-saml. A remote attacker may be able to bypass SAML authentication on a website using passport-saml. A successful attack requires that the attacker is in possession of an arbitrary IDP signed XML element. Depending on the IDP used, fully unauthenticated attacks (e.g without access to a valid user) might also be feasible if generation of a signed message can be triggered. Users should upgrade to node-saml version 4.0.0-beta5 or newer. Disabling SAML authentication may be done as a workaround.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-39201 β€Ό

Grafana is an open source observability and data visualization platform. Starting with version 5.0.0-beta1 and prior to versions 8.5.14 and 9.1.8, Grafana could leak the authentication cookie of users to plugins. The vulnerability impacts data source and plugin proxy endpoints under certain conditions. The destination plugin could receive a user's Grafana authentication cookie. Versions 9.1.8 and 8.5.14 contain a patch for this issue. There are no known workarounds.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-34022 β€Ό

SQL injection vulnerability in ResIOT IOT Platform + LoRaWAN Network Server through 4.1.1000114 via a crafted POST request to /ResiotQueryDBActive.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-35136 β€Ό

Boodskap IoT Platform v4.4.9-02 allows attackers to make unauthenticated API requests.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-39303 β€Ό

Ree6 is a moderation bot. This vulnerability allows manipulation of SQL queries. This issue has been patched in version 1.7.0 by using Javas PreparedStatements, which allow object setting without the risk of SQL injection. There are currently no known workarounds.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-34021 β€Ό

Multiple Cross Site Scripting (XSS) vulnerabilities in ResIOT IOT Platform + LoRaWAN Network Server through 4.1.1000114 via the form fields.

πŸ“– Read

via "National Vulnerability Database".