The CISA announced two known exploited vulnerabilities active attacks targeting Google Chrome & own cloud vulnerabilities in their catalog.
As the national coordinator for critical infrastructure security and resilience, CISA oversees government cybersecurity operations.
StorageGuard scans, detects, and fixes security misconfigurations and vulnerabilities across hundreds of storage and backup devices.
A remote attacker who had infiltrated the renderer process could have been able to carry out a sandbox escape using a malicious file thanks to an integer overflow in Skia in Google Chrome versions before 119.0.6045.199.
The severity range of this vulnerability is High. The vulnerability is currently being investigated process.
This relies on a third-party GetPhpInfo.php library that provides a URL, and it reveals the configuration information of the PHP environment. The information contains the most sensitive data such as ownCloud admin password, mail server credentials, and license key.
Furthermore, phpinfo makes many other potentially sensitive configuration details available that an attacker could use to learn more about the system. Thus, this vulnerability should still be of concern even if ownCloud is not operating in a containerized context.
The severity range of this vulnerability is critical(10.0) and is also under the investing process.
Experience how StorageGuard eliminates the security blind spots in your storage systems by trying a 14-day free trial.
Researchers observed Lumma Stealer activity across multiple online samples, including PowerShell scripts and a disguised…
Palo Alto Networks reported the Contagious Interview campaign in November 2023, a financially motivated attack…
The recent discovery of the NjRat 2.3D Professional Edition on GitHub has raised alarms in…
A critical vulnerability, CVE-2024-3393, has been identified in the DNS Security feature of Palo Alto…
Threat Analysts have reported alarming findings about the "Araneida Scanner," a malicious tool allegedly based…
A major dark web operation dedicated to circumventing KYC (Know Your Customer) procedures, which involves…