The CISA announced two known exploited vulnerabilities active attacks targeting Google Chrome & own cloud vulnerabilities in their catalog.
As the national coordinator for critical infrastructure security and resilience, CISA oversees government cybersecurity operations.
StorageGuard scans, detects, and fixes security misconfigurations and vulnerabilities across hundreds of storage and backup devices.
A remote attacker who had infiltrated the renderer process could have been able to carry out a sandbox escape using a malicious file thanks to an integer overflow in Skia in Google Chrome versions before 119.0.6045.199.
The severity range of this vulnerability is High. The vulnerability is currently being investigated process.
This relies on a third-party GetPhpInfo.php library that provides a URL, and it reveals the configuration information of the PHP environment. The information contains the most sensitive data such as ownCloud admin password, mail server credentials, and license key.
Furthermore, phpinfo makes many other potentially sensitive configuration details available that an attacker could use to learn more about the system. Thus, this vulnerability should still be of concern even if ownCloud is not operating in a containerized context.
The severity range of this vulnerability is critical(10.0) and is also under the investing process.
Experience how StorageGuard eliminates the security blind spots in your storage systems by trying a 14-day free trial.
The Sekoia TDR (Threat Detection & Research) team has reported on a sophisticated network infrastructure…
The Socket Threat Research Team has unearthed a trio of malicious packages, two hosted on…
Hackers are now exploiting a legitimate Microsoft utility, mavinject.exe, to inject malicious DLLs into unsuspecting…
Small and midsized businesses (SMBs) continue to be prime targets for cybercriminals, with network edge…
Joining Criminal IP at Booth S-634 | South Expo, Moscone Center | April 28 –…
Cybersecurity researchers have uncovered critical SQL injection vulnerabilities in four TP-Link router models, enabling attackers…