The CISA announced two known exploited vulnerabilities active attacks targeting Google Chrome & own cloud vulnerabilities in their catalog.
As the national coordinator for critical infrastructure security and resilience, CISA oversees government cybersecurity operations.
StorageGuard scans, detects, and fixes security misconfigurations and vulnerabilities across hundreds of storage and backup devices.
A remote attacker who had infiltrated the renderer process could have been able to carry out a sandbox escape using a malicious file thanks to an integer overflow in Skia in Google Chrome versions before 119.0.6045.199.
The severity range of this vulnerability is High. The vulnerability is currently being investigated process.
This relies on a third-party GetPhpInfo.php library that provides a URL, and it reveals the configuration information of the PHP environment. The information contains the most sensitive data such as ownCloud admin password, mail server credentials, and license key.
Furthermore, phpinfo makes many other potentially sensitive configuration details available that an attacker could use to learn more about the system. Thus, this vulnerability should still be of concern even if ownCloud is not operating in a containerized context.
The severity range of this vulnerability is critical(10.0) and is also under the investing process.
Experience how StorageGuard eliminates the security blind spots in your storage systems by trying a 14-day free trial.
Authorities have delivered a major blow to the cybercrime world by dismantling two of the…
Microsoft has announced updates to its Microsoft 365 (M365) Bug Bounty Program, offering expanded services,…
Tata Technologies, a leading provider of engineering and IT services, has reported a ransomware attack…
A groundbreaking technique for Kerberos relaying over HTTP, leveraging multicast poisoning, has been recently detailed…
Since mid-2024, cybersecurity researchers have been monitoring a sophisticated Android malware campaign dubbed "Tria Stealer,"…
Proton, the globally recognized provider of privacy-focused services such as Proton VPN and Proton Pass,…