βΌ CVE-2022-36429 βΌ
π Read
via "National Vulnerability Database".
A command execution vulnerability exists in the ubus backend communications functionality of Netgear Orbi Satellite RBS750 4.6.8.5. A specially-crafted JSON object can lead to arbitrary command execution. An attacker can send a sequence of malicious packets to trigger this vulnerability.π Read
via "National Vulnerability Database".
βΌ CVE-2022-45636 βΌ
π Read
via "National Vulnerability Database".
An issue discovered in MEGAFEIS, BOFEI DBD+ Application for IOS & Android v1.4.4 allows attacker to unlock model(s) without authorization via arbitrary API requests.π Read
via "National Vulnerability Database".
βΌ CVE-2022-38452 βΌ
π Read
via "National Vulnerability Database".
A command execution vulnerability exists in the hidden telnet service functionality of Netgear Orbi Router RBR750 4.6.8.5. A specially-crafted network request can lead to arbitrary command execution. An attacker can send a network request to trigger this vulnerability.π Read
via "National Vulnerability Database".
βΌ CVE-2022-37337 βΌ
π Read
via "National Vulnerability Database".
A command execution vulnerability exists in the access control functionality of Netgear Orbi Router RBR750 4.6.8.5. A specially-crafted HTTP request can lead to arbitrary command execution. An attacker can make an authenticated HTTP request to trigger this vulnerability.π Read
via "National Vulnerability Database".
π΄ Normalyze Granted Patent for Data Security Posture Management (DSPM) π΄
π Read
via "Dark Reading".
π Read
via "Dark Reading".
Dark Reading
Normalyze Granted Patent for Data Security Posture Management (DSPM)
SAN FRANCISCO, March 21, 2023 /PRNewswire/ -- Normalyze, a pioneering provider of cloud data security solutions, was granted the most fundamental patent to date for Data Security Posture Management (DSPM) by the U.S. Patent and Trademark Office. The patentβ¦
β€1
π΄ BlackBerry Announces New Patent Sale Transaction With Patent Monetization Company for Up to $900M π΄
π Read
via "Dark Reading".
π Read
via "Dark Reading".
Dark Reading
BlackBerry Announces New Patent Sale Transaction With Patent Monetization Company for Up to $900M
WATERLOO, ON, March 21, 2023 /PRNewswire/ -- BlackBerry Limited (NYSE: BB; TSX: BB) announced today that it has entered into an agreement to sell substantially all of its non-core patents and patent applications to Malikie Innovations Limited ("Malikie")β¦
π΄ BigID's Data Security Posture Management Solution Integrates With SOAR Platforms π΄
π Read
via "Dark Reading".
π Read
via "Dark Reading".
Dark Reading
BigID's Data Security Posture Management Solution Integrates With SOAR Platforms
NEW YORK, March 21, 2023 /PRNewswire/ -- BigID, the leading platform for data security, compliance, privacy, and governance,, announced today that native integrations with leading Security Orchestration, Automation, and Response (SOAR) platforms, includingβ¦
π΄ Renowned Researcher Kelly Lum Passes Away π΄
π Read
via "Dark Reading".
The application security expert, who went by "@aloria," is being remembered for her brilliance and generosity, as tributes start to pour in honoring her life.π Read
via "Dark Reading".
Dark Reading
Renowned Researcher Kelly Lum Passes Away
The application security expert, who went by "@aloria," is being remembered for her brilliance and generosity, as tributes start to pour in honoring her life.
π΄ Cyberpion Rebrands As IONIX π΄
π Read
via "Dark Reading".
IONIX illuminates exploitable risks across the real attack surface and its digital supply chain providing security teams with critical focus to accelerate risk reduction.π Read
via "Dark Reading".
Dark Reading
Cyberpion Rebrands As IONIX
IONIX illuminates exploitable risks across the real attack surface and its digital supply chain providing security teams with critical focus to accelerate risk reduction.
π΄ .NET Devs Targeted With Malicious NuGet Packages π΄
π Read
via "Dark Reading".
In a possible first for the NuGet repository, more than a dozen components in the .NET code repository run a malicious script upon installation, with no warning or alert.π Read
via "Dark Reading".
Dark Reading
.NET Devs Targeted With Malicious NuGet Packages
In a possible first for the NuGet repository, more than a dozen components in the .NET code repository run a malicious script upon installation, with no warning or alert.
βΌ CVE-2023-1261 βΌ
π Read
via "National Vulnerability Database".
Missing MAC layer security in Silicon Labs Wi-SUN SDK v1.5.0 and earlier allows malicious node to route malicious messages through network.π Read
via "National Vulnerability Database".
βΌ CVE-2023-1531 βΌ
π Read
via "National Vulnerability Database".
Use after free in ANGLE in Google Chrome prior to 111.0.5563.110 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)π Read
via "National Vulnerability Database".
βΌ CVE-2023-0391 βΌ
π Read
via "National Vulnerability Database".
MGT-COMMERCE CloudPanel ships with a static SSL certificate to encrypt communications to the administrative interface, shared across every installation of CloudPanel. This behavior was observed in version 2.2.0. There has been no indication from the vendor this has been addressed in version 2.2.1.π Read
via "National Vulnerability Database".
βΌ CVE-2023-1533 βΌ
π Read
via "National Vulnerability Database".
Use after free in WebProtect in Google Chrome prior to 111.0.5563.110 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)π Read
via "National Vulnerability Database".
βΌ CVE-2023-1528 βΌ
π Read
via "National Vulnerability Database".
Use after free in Passwords in Google Chrome prior to 111.0.5563.110 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)π Read
via "National Vulnerability Database".
βΌ CVE-2023-1530 βΌ
π Read
via "National Vulnerability Database".
Use after free in PDF in Google Chrome prior to 111.0.5563.110 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)π Read
via "National Vulnerability Database".
βΌ CVE-2023-1529 βΌ
π Read
via "National Vulnerability Database".
Out of bounds memory access in WebHID in Google Chrome prior to 111.0.5563.110 allowed a remote attacker to potentially exploit heap corruption via a malicious HID device. (Chromium security severity: High)π Read
via "National Vulnerability Database".
βΌ CVE-2023-1262 βΌ
π Read
via "National Vulnerability Database".
Missing MAC layer security in Silicon Labs Wi-SUN Linux Border Router v1.5.2 and earlier allows malicious node to route malicious messages through network.π Read
via "National Vulnerability Database".
βΌ CVE-2023-1532 βΌ
π Read
via "National Vulnerability Database".
Out of bounds read in GPU Video in Google Chrome prior to 111.0.5563.110 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)π Read
via "National Vulnerability Database".
βΌ CVE-2023-1534 βΌ
π Read
via "National Vulnerability Database".
Out of bounds read in ANGLE in Google Chrome prior to 111.0.5563.110 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)π Read
via "National Vulnerability Database".
π’ What is 'steal now, crack later'? π’
π Read
via "ITPro".
The rise in quantum computing this decade is pushing cyber criminals into stealing encrypted business data with the hopes of cracking it in the futureπ Read
via "ITPro".
ITPro
What is the βsteal now, crack laterβ quantum computing threat?
The rise in quantum computing this decade is pushing cyber criminals into stealing encrypted business data with the hopes of cracking it in the future