Security Bulletin
17 Sep 2024
Biztonsági szemle
CISA Releases Three Industrial Control Systems Advisories
CISA released three Industrial Control Systems (ICS) advisories on September 17, 2024. These advisories provide timely information about current security issues, vulnerabilities, and exploits surrounding ICS. ICSA-24-261-01 Siemens SIMATIC S7-200...
17 Sep 2024
Biztonsági szemle
Millbeck Communications Proroute H685t-w
View CSAF 1. EXECUTIVE SUMMARY CVSS v3 8.8 ATTENTION: Exploitable remotely/low attack complexity Vendor: Millbeck Communications Equipment: Proroute H685t-w Vulnerabilities: Command Injection, Cross-site Scripting 2. RISK EVALUATION Successful...
17 Sep 2024
Biztonsági szemle
CISA and FBI Release Secure by Design Alert on Eliminating Cross-Site Scripting Vulnerabilities
Today, CISA and FBI released a Secure by Design Alert, Eliminating Cross-Site Scripting Vulnerabilities, as a part of our ongoing effort to reduce the prevalence of vulnerability classes at scale. Vulnerabilities like cross-site scripting (XSS)...
17 Sep 2024
Biztonsági szemle
Seven ways to secure open-source software
Securing open-source software will take collaboration, innovation and a commitment to best practices.
17 Sep 2024
Biztonsági szemle
Ukraine, Gaza Wars Inspire DDoS Surge Against Finservs
Hacktivists love to target financial services companies, and their attacks are growing both larger and longer.
17 Sep 2024
Biztonsági szemle
'CloudImposer' Flaw in Google Cloud Affected Millions of Servers
Attackers could have exploited a dependency confusion vulnerability affecting various Google Cloud services to execute a sprawling supply chain attack via just one malicious Python code package.
17 Sep 2024
Biztonsági szemle
23:59, Time to Exfiltrate!, (Tue, Sep 17th)
Last week, I posted a diary about suspicious Python modules. One of them was Firebase [ 1], the cloud service provided by Google[ 2]. Firebase services abused by attackers is not new, usually, it's used to host malicious files that will be...
17 Sep 2024
Biztonsági szemle
ISC Stormcast For Tuesday, September 17th, 2024 https://isc.sans.edu/podcastdetail/9140, (Tue, Sep 17th)
(c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.
17 Sep 2024
Biztonsági szemle
Solving the Cybersecurity Data Problem - Padraic O'Reilly - BSW #364
17 Sep 2024
Biztonsági szemle
D-Link patches 5 vulnerabilities including RCE, hard-coded credential flaws
A hidden feature could enable remote command execution using hard-coded credentials on home routers.
17 Sep 2024
Biztonsági szemle
'Void Banshee' Exploits Second Microsoft Zero-Day
Attackers have been using the Windows MSHTML Platform spoofing vulnerability in conjunction with another zero-day flaw.
16 Sep 2024
Biztonsági szemle
Cambodian Tycoon Sanctioned for Forced Cyber Labor, Trafficking
The sanctions are unlikely to affect the growing network of criminals who lure victims into working for cybercrime sweat shops around the world.
Pagination
- Previous page ‹‹
- Page 598
- Next page ››