🛡 Cybersecurity & Privacy 🛡 - News
25.8K subscribers
89.2K links
🗞 The finest daily news on cybersecurity and privacy.

🔔 Daily releases.

💻 Is your online life secure?

📩 lalilolalo.dev@gmail.com
Download Telegram
‼ CVE-2023-24954 ‼

Microsoft SharePoint Server Information Disclosure Vulnerability

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-24955 ‼

Microsoft SharePoint Server Remote Code Execution Vulnerability

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-29325 ‼

Windows OLE Remote Code Execution Vulnerability

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-29341 ‼

AV1 Video Extension Remote Code Execution Vulnerability

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-29335 ‼

Microsoft Word Security Feature Bypass Vulnerability

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-31474 ‼

An issue was discovered on GL.iNet devices before 3.216. Through the software installation feature, it is possible to inject arbitrary parameters in a request to cause opkg to obtain a list of files in a specific directory, by using the regex feature in a package name.

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-29338 ‼

Visual Studio Code Information Disclosure Vulnerability

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-28290 ‼

Microsoft Remote Desktop app for Windows Information Disclosure Vulnerability

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-29324 ‼

Windows MSHTML Platform Security Feature Bypass Vulnerability

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-28251 ‼

Windows Driver Revocation List Security Feature Bypass Vulnerability

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-29333 ‼

Microsoft Access Denial of Service Vulnerability

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-29343 ‼

SysInternals Sysmon for Windows Elevation of Privilege Vulnerability

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-2609 ‼

NULL Pointer Dereference in GitHub repository vim/vim prior to 9.0.1531.

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-24953 ‼

Microsoft Excel Remote Code Execution Vulnerability

📖 Read

via "National Vulnerability Database".
🕴 FBI Disarms Russian FSB 'Snake' Malware Network 🕴

Operation "Medusa" disabled Turla's Snake malware with an FBI-created tool called Perseus.

📖 Read

via "Dark Reading".
🕴 Privoro and Samsung Partner to Provide Trusted Control Over Smartphone Radios and Sensors 🕴

New hardware-to-hardware integration between SafeCase and Galaxy's Hardware Device Manager fortifies mobile security, protecting customers from spyware attacks.

📖 Read

via "Dark Reading".
🕴 Microsoft Patches Two Zero-Day Vulnerabilities 🕴

The 49 CVE's in Microsoft's May security update is the lowest volume in nearly two years.

📖 Read

via "Dark Reading".
🕴 Keeper Security Announces Minority Growth Equity Investment From Summit Partners 🕴

Investment marks the second significant funding round from a leading technology growth equity firm.

📖 Read

via "Dark Reading".
‼ CVE-2021-46759 ‼

Improper syscall input validation in AMD TEE(Trusted Execution Environment) may allow an attacker with physical access andcontrol of a Uapp that runs under the bootloader to reveal the contents of theASP (AMD Secure Processor) bootloader accessible memory to a serial port,resulting in a potential loss of integrity.

📖 Read

via "National Vulnerability Database".
‼ CVE-2021-46755 ‼

Failure to unmap certain SysHub mappings inerror paths of the ASP (AMD Secure Processor) bootloader may allow an attackerwith a malicious bootloader to exhaust the SysHub resources resulting in apotential denial of service.

📖 Read

via "National Vulnerability Database".
‼ CVE-2021-46754 ‼

Insufficient input validation in the ASP (AMDSecure Processor) bootloader may allow an attacker with a compromised Uapp orABL to coerce the bootloader into exposing sensitive information to the SMU(System Management Unit) resulting in a potential loss of confidentiality andintegrity.

📖 Read

via "National Vulnerability Database".