Anonymous hacked Yandex taxi causing a massive traffic jam in Moscow
The popular collective Anonymous and the IT Army of Ukraine hacked the Yandex Taxi app causing a massive traffic jam...
The popular collective Anonymous and the IT Army of Ukraine hacked the Yandex Taxi app causing a massive traffic jam...
BeatRev Version 2Disclaimer/LiabilityThe work that follows is a POC to enable malware to "key" itself to a particular victim in...
The Internal Revenue Service (IRS) mistakenly leaked confidential information for approximately 120,000 taxpayers. Bad news for approximately 120,000 taxpayers who...
The author of the remote access trojan (RAT) CodeRAT has leaked the source code of its malware on GitHub. The...
Daily Vulnerability Trends (sourced from VulnMon) CVE NAMECVE DescriptionCVE-2022-28799The TikTok application before 23.7.3 for Android allows account takeover. A crafted...
A new round of the weekly SecurityAffairs newsletter arrived! Every week the best security articles from Security Affairs free for...
Programme HackerOne Nextcloud Nextcloud Submitted by anna_larch anna_larch Report Password disclosure in initial setup of Mail App Full Report A...
Programme HackerOne Nextcloud Nextcloud Submitted by nickvergessen nickvergessen Report Brute force protections don't work Full Report A considerable amount of...
Programme HackerOne Nextcloud Nextcloud Submitted by rtod rtod Report Federated share accepting/declining is not logged in audit log Full Report...
Programme HackerOne Nextcloud Nextcloud Submitted by eg42 eg42 Report Unauthenticated SSRF in 3rd party module "cerdic/csstidy" Full Report A considerable...
Programme HackerOne MTN Group MTN Group Submitted by harrisoft harrisoft Report Weak/Auto Fill Password Full Report A considerable amount of...
Programme HackerOne MTN Group MTN Group Submitted by a-heybati a-heybati Report path traversal vulnerability in Grafana 8.x allows " local...
Google rolled out emergency fixes to address a vulnerability in the Chrome web browser that is being actively exploited in...
A python script to scan for Apache Tomcat server vulnerabilities. FeaturesMultithreaded workers to search for Apache tomcat servers.Multiple target source...
NAME Apache OFBiz code execution Platforms Affected:Apache OFBiz 18.12.05Risk Level:9.8Exploitability:UnprovenConsequences:Gain Access DESCRIPTION Apache OFBiz could allow a remote attacker to...
NAME Node.js lit-payment-form module code execution Platforms Affected:Node.js lit-payment-formRisk Level:9.8Exploitability:UnprovenConsequences:Gain Access DESCRIPTION Node.js lit-payment-form module could allow a remote attacker...
NAME Node.js priv-depen module code execution Platforms Affected:Node.js priv-depenRisk Level:9.8Exploitability:UnprovenConsequences:Gain Access DESCRIPTION Node.js priv-depen module could allow a remote attacker...
NAME PowerCMS command execution Platforms Affected:Alfasado PowerCMS 5.19 Alfasado PowerCMS 4.49 Alfasado PowerCMS 3.295Risk Level:9.8Exploitability:UnprovenConsequences:Gain Access DESCRIPTION PowerCMS could allow...
NAME Node.js sketch-pexels module code execution Platforms Affected:Node.js sketch-pexelsRisk Level:9.8Exploitability:UnprovenConsequences:Gain Access DESCRIPTION Node.js sketch-pexels module could allow a remote attacker...
NAME Apache Airflow session hijacking Platforms Affected:Apache Airflow 2.2.4 Apache Airflow 2.3.3Risk Level:9.1Exploitability:UnprovenConsequences:Gain Access DESCRIPTION Apache Airflow could allow a...
NAME Node.js osds module code execution Platforms Affected:Node.js osdsRisk Level:9.8Exploitability:UnprovenConsequences:Gain Access DESCRIPTION Node.js osds module could allow a remote attacker...
NAME Node.js request-slack-invite module code execution Platforms Affected:Node.js request-slack-inviteRisk Level:9.8Exploitability:UnprovenConsequences:Gain Access DESCRIPTION Node.js request-slack-invite module could allow a remote attacker...
NAME Apache OFBiz code execution Platforms Affected:Apache OFBiz 18.12.05Risk Level:9.8Exploitability:UnprovenConsequences:Gain Access DESCRIPTION Apache OFBiz could allow a remote attacker to...
NAME Node.js pqc.js module code execution Platforms Affected:Node.js pqc.jsRisk Level:9.8Exploitability:UnprovenConsequences:Gain Access DESCRIPTION Node.js pqc.js module could allow a remote attacker...