πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.8K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
🦿 Generative AI: Cybersecurity Weapon, But Not Without Adaptable, Creative (Human) Thinkers 🦿

Cybersecurity expert Kayne McGladrey speaks about why AI cannot do what creative people can, and the important role of generative AI in SOCs.

πŸ“– Read

via "Tech Republic".
πŸ•΄ Study: More Than Half of Browser Extensions Pose Security Risks πŸ•΄

Spin.AI's risk assessment of some 300,000 browser extensions had overly permissive access and could execute potentially malicious behaviors.

πŸ“– Read

via "Dark Reading".
β€Ό CVE-2023-33850 β€Ό

IBM GSKit-Crypto could allow a remote attacker to obtain sensitive information, caused by a timing-based side channel in the RSA Decryption implementation. By sending an overly large number of trial messages for decryption, an attacker could exploit this vulnerability to obtain sensitive information. IBM X-Force ID: 257132.

πŸ“– Read

via "National Vulnerability Database".
πŸ‘1
β€Ό CVE-2023-38734 β€Ό

IBM Robotic Process Automation 21.0.0 through 21.0.7.1 and 23.0.0 through 23.0.1 is vulnerable to incorrect privilege assignment when importing users from an LDAP directory. IBM X-Force ID: 262481.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2023-38733 β€Ό

IBM Robotic Process Automation 21.0.0 through 21.0.7.1 and 23.0.0 through 23.0.1 server could allow an authenticated user to view sensitive information from installation logs. IBM X-Force Id: 262293.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2023-40370 β€Ό

IBM Robotic Process Automation 21.0.0 through 21.0.7.1 runtime is vulnerable to information disclosure of script content if the remote REST request computer policy is enabled. IBM X-Force ID: 263470.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2020-24113 β€Ό

Directory Traversal vulnerability in Contacts File Upload Interface in Yealink W60B version 77.83.0.85, allows attackers to gain sensitive information and cause a denial of service (DoS).

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2023-39026 β€Ό

Directory Traversal vulnerability in FileMage Gateway Windows Deployments v.1.10.8 and before allows a remote attacker to obtain sensitive information via a crafted request to the /mgmt/ component.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2023-41098 β€Ό

An issue was discovered in MISP 2.4.174. In app/Controller/DashboardsController.php, a reflected XSS issue exists via the id parameter upon a dashboard edit.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2023-4041 β€Ό

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow'), Out-of-bounds Write, Download of Code Without Integrity Check vulnerability in Silicon Labs Gecko Bootloader on ARM (Firmware Update File Parser modules) allows Code Injection, Authentication Bypass.This issue affects "Standalone" and "Application" versions of Gecko Bootloader.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2023-41105 β€Ό

An issue was discovered in Python 3.11 through 3.11.4. If a path containing '\0' bytes is passed to os.path.normpath(), the path will be truncated unexpectedly at the first '\0' byte. There are plausible cases in which an application would have rejected a filename for security reasons in Python 3.10.x or earlier, but that filename is no longer rejected in Python 3.11.x.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2023-41104 β€Ό

libvmod-digest before 1.0.3, as used in Varnish Enterprise 6.0.x before 6.0.11r5, has an out-of-bounds memory access during base64 decoding, leading to both authentication bypass and information disclosure; however, the exact attack surface will depend on the particular VCL (Varnish Configuration Language) configuration in use.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2023-41100 β€Ό

An issue was discovered in the hcaptcha (aka hCaptcha for EXT:form) extension before 2.1.2 for TYPO3. It fails to check that the required captcha field is submitted in the form data. allowing a remote user to bypass the CAPTCHA check.

πŸ“– Read

via "National Vulnerability Database".
πŸ“’ Shrinking cyber attack β€œdwell times” highlight growing war of attrition with threat actors πŸ“’

While teams are becoming more proficient at detecting threats, attackers are augmenting their strategies

πŸ“– Read

via "ITPro".
β€Ό CVE-2023-3899 β€Ό

A vulnerability was found in subscription-manager that allows local privilege escalation due to inadequate authorization. The D-Bus interface com.redhat.RHSM1 exposes a significant number of methods to all users that could change the state of the registration. By using the com.redhat.RHSM1.Config.SetAll() method, a low-privileged local user could tamper with the state of the registration, by unregistering the system or by changing the current entitlements. This flaw allows an attacker to set arbitrary configuration directives for /etc/rhsm/rhsm.conf, which can be abused to cause a local privilege escalation to an unconfined root.

πŸ“– Read

via "National Vulnerability Database".
πŸ”₯1
πŸ•΄ 5 Early Warning Indicators That Are Key to Protecting National Secrets πŸ•΄

The Defense Department must modernize user activity monitoring by prioritizing data that can be used early to proactively mitigate insider risk.

πŸ“– Read

via "Dark Reading".
πŸ‘1
β€Ό CVE-2023-4042 β€Ό

A flaw was found in ghostscript. The fix for CVE-2020-16305 in ghostscript was not included in RHSA-2021:1852-06 advisory as it was claimed to be. This issue only affects the ghostscript package as shipped with Red Hat Enterprise Linux 8.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2023-32119 β€Ό

Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in WPO365 | Mail Integration for Office 365 / Outlook plugin <=Γ‚ 1.9.0 versions.

πŸ“– Read

via "National Vulnerability Database".
πŸ•΄ Attackers Dangle AI-Based Facebook Ad Lures to Hijack Business Accounts πŸ•΄

The offending ads and pages leveraged interest in AI to spread a malicious credential-stealing browser extension.

πŸ“– Read

via "Dark Reading".
β€Ό CVE-2023-32497 β€Ό

Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Supersoju Block Referer Spam plugin <=Γ‚ 1.1.9.4 versions.

πŸ“– Read

via "National Vulnerability Database".