๐ด Pro-Iranian Hacktivists Set Sights on Israeli Industrial Control Systems ๐ด
๐ Read
via "Dark Reading".
The hacktivists known as SiegedSec identify ICS targets, but there's no evidence of attacks yet.๐ Read
via "Dark Reading".
Dark Reading
Pro-Iranian Hacktivists Set Sights on Israeli Industrial Control Systems
The hacktivists known as SiegedSec identify ICS targets, but there's no evidence of attacks yet.
๐ด The Need for a Cybersecurity-Centric Business Culture ๐ด
๐ Read
via "Dark Reading".
Building a culture of cybersecurity is achievable by acknowledging its importance and consistently reinforcing that message.๐ Read
via "Dark Reading".
Dark Reading
The Need for a Cybersecurity-Centric Business Culture
Building a culture of cybersecurity is achievable by acknowledging its importance and consistently reinforcing that message.
โ๏ธ The Fake Browser Update Scam Gets a Makeover โ๏ธ
๐ Read
via "Krebs on Security".
One of the oldest malware tricks in the book -- hacked websites claiming visitors need to update their Web browser before they can view any content -- has roared back to life in the past few months. New research shows the attackers behind one such scheme have developed an ingenious way of keeping their malware from being taken down by security experts or law enforcement: By hosting the malicious files on a decentralized, anonymous cryptocurrency blockchain.๐ Read
via "Krebs on Security".
Krebs on Security
The Fake Browser Update Scam Gets a Makeover
One of the oldest malware tricks in the book -- hacked websites claiming visitors need to update their Web browser before they can view any content -- has roared back to life in the past few months. New research showsโฆ
โผ CVE-2023-45072 โผ
๐ Read
via "National Vulnerability Database".
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Kardi Order auto complete for WooCommerce plugin <=ร 1.2.0 versions.๐ Read
via "National Vulnerability Database".
โผ CVE-2023-46007 โผ
๐ Read
via "National Vulnerability Database".
Sourcecodester Best Courier Management System 1.0 is vulnerable to SQL Injection via the parameter id in /edit_staff.php.๐ Read
via "National Vulnerability Database".
โผ CVE-2023-32087 โผ
๐ Read
via "National Vulnerability Database".
Pega Platform versions 8.1 to Infinity 23.1.0 are affected by an XSS issue with task creation๐ Read
via "National Vulnerability Database".
โผ CVE-2023-45070 โผ
๐ Read
via "National Vulnerability Database".
Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in 10Web Form Builder Team Form Maker by 10Web รขโฌโ Mobile-Friendly Drag & Drop Contact Form Builder plugin <=ร 1.15.18 versions.๐ Read
via "National Vulnerability Database".
โผ CVE-2023-46005 โผ
๐ Read
via "National Vulnerability Database".
Sourcecodester Best Courier Management System 1.0 is vulnerable to SQL Injection via the parameter id in /edit_branch.php.๐ Read
via "National Vulnerability Database".
โผ CVE-2023-45065 โผ
๐ Read
via "National Vulnerability Database".
Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Mad Fish Digital Bulk NoIndex & NoFollow Toolkit plugin <=ร 1.42 versions.๐ Read
via "National Vulnerability Database".
โผ CVE-2023-45071 โผ
๐ Read
via "National Vulnerability Database".
Unauth. Stored Cross-Site Scripting (XSS) vulnerability in 10Web Form Builder Team Form Maker by 10Web รขโฌโ Mobile-Friendly Drag & Drop Contact Form Builder plugin <=ร 1.15.18 versions.๐ Read
via "National Vulnerability Database".
โผ CVE-2023-45073 โผ
๐ Read
via "National Vulnerability Database".
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Michael Koch Mendeley Plugin plugin <=ร 1.3.2 versions.๐ Read
via "National Vulnerability Database".
โผ CVE-2023-32088 โผ
๐ Read
via "National Vulnerability Database".
Pega Platform versions 8.1 to Infinity 23.1.0 are affected by an XSS issue with ad-hoc case creation๐ Read
via "National Vulnerability Database".
โผ CVE-2023-31217 โผ
๐ Read
via "National Vulnerability Database".
Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in MyTechTalky User Location and IP plugin <=ร 1.6 versions.๐ Read
via "National Vulnerability Database".
โผ CVE-2023-46004 โผ
๐ Read
via "National Vulnerability Database".
Sourcecodester Best Courier Management System 1.0 is vulnerable to Arbitrary file upload in the update_user function.๐ Read
via "National Vulnerability Database".
โผ CVE-2023-45067 โผ
๐ Read
via "National Vulnerability Database".
Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Ashish Ajani WordPress Simple HTML Sitemap plugin <=ร 2.1 versions.๐ Read
via "National Vulnerability Database".
โผ CVE-2023-46006 โผ
๐ Read
via "National Vulnerability Database".
Sourcecodester Best Courier Management System 1.0 is vulnerable to SQL Injection via the parameter id in /edit_user.php.๐ Read
via "National Vulnerability Database".
โผ CVE-2023-32089 โผ
๐ Read
via "National Vulnerability Database".
Pega Platform versions 8.1 to 8.8.2 are affected by an XSS issue with Pin description๐ Read
via "National Vulnerability Database".
โผ CVE-2023-45608 โผ
๐ Read
via "National Vulnerability Database".
Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Nicola Modugno Smart Cookie Kit plugin <=ร 2.3.1 versions.๐ Read
via "National Vulnerability Database".
๐ฆฟ What Australian IT Leaders Need to Focus on Ahead of Privacy Act Reforms ๐ฆฟ
๐ Read
via "Tech Republic".
The Australian federal government aims to deliver changes to privacy laws in 2024. Organisations are being warned to prepare ahead of time by creating a comprehensive map of organisational data.๐ Read
via "Tech Republic".
TechRepublic
What Australian IT Leaders Need to Focus on Ahead of Privacy Reforms
Australian organisations can prepare for privacy law changes from the government by creating a comprehensive map of organisational data.
โผ CVE-2023-45607 โผ
๐ Read
via "National Vulnerability Database".
Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Hector Cabrera WordPress Popular Posts plugin <=ร 6.3.2 versions.๐ Read
via "National Vulnerability Database".
โผ CVE-2023-45630 โผ
๐ Read
via "National Vulnerability Database".
Unauth. Stored Cross-Site Scripting (XSS) vulnerability in wpdevart Gallery รขโฌโ Image and Video Gallery with Thumbnails plugin <=ร 2.0.3 versions.๐ Read
via "National Vulnerability Database".