CVE-2021-36160
Summary: A carefully crafted request uri-path can cause mod_proxy_uwsgi to read above the allocated memory and crash (DoS). This issue...
Summary: A carefully crafted request uri-path can cause mod_proxy_uwsgi to read above the allocated memory and crash (DoS). This issue...
Security expert Dhiraj Mishra published an NMAP script for the CVE-2021-41773 Path Traversal vulnerability affecting Apache Web Server version 2.4.49. Security...
CyberNews researchers found an exposed configuration file hosted on a Sky.com subdomain containing production data. Original post @ https://cybernews.com/news/sky-com-servers-exposed-via-misconfiguration/ CyberNews...
AF-ShellHunter: Auto shell lookupAF-ShellHunter its a script designed to automate the search of WebShell's in AF TeamHow topip3 install -r...
American media conglomerate Cox Media Group (CMG) was hit by a ransomware attack that took down live TV and radio...
It’s that time of year again! This means it’s the season for Halloween, Oktoberfest, and HACKTOBERFEST! So what is Hacktoberfest?...
Mozilla is trying a novel experiment into striking a balance between ad revenue generation and privacy protection by implementing a...
Microsoft revealed that Russia-linked cyberespionage groups are behind the majority of the nation-state cyber attacks on US government agencies. Microsoft...
Viper is a graphical intranet penetration tool, which modularizes and weaponizes the tactics and technologies commonly used in the process...
Sometimes good news in the security world comes unexpectedly. This is one of those times. After three decades of macro...
Summary: Grafana is an open source data visualization platform. In affected versions unauthenticated and authenticated users are able to view...
Summary: A denial-of-service (DoS) vulnerability was discovered in the web user interface of F-Secure Internet Gatekeeper. The vulnerability occurs because...
Summary: A vulnerability was discovered in the web user interface of F-Secure Internet Gatekeeper. An authenticated user can modify settings...
Summary: The Alias feature in SnakeYAML 1.18 allows entity expansion during a load operation, a related issue to CVE-2003-1564. Reference...
Summary: Kingdee KIS Professional Edition has a privilege escalation vulnerability. Attackers can use the vulnerability to gain computer administrator rights...
The Dutch government will not tolerate ransomware attacks that could threaten national security, it will use intelligence or military services...
A program to control systems remotely by uploading videos to Youtube using Python to create the videos and the listener,...
If you hadn’t noticed by now, we are in the first week of National Cybersecurity Awareness Month, which, according to...
Summary: CVE-2021-1810 is an unspecified vulnerability impacting Apple macOS Big Sur versions 11.2.3 and earlier and Apple macOS Catalina. A...
Google warned more than 14,000 Gmail users that they have been the target of nation-state spear-phishing campaigns. On Wednesday, Google...
A number of bogus offers are doing the rounds in Discord land at the moment. Discord, a group text chat/VoiP...
Despite advance warnings that a root certificate provided by Let’s Encrypt would expire on September 30, users reported issues with...
Apache Software Foundation has released HTTP Web Server 2.4.51 to completely address a vulnerability that has been actively exploited in...
Introduction These days, when speaking of cyberthreats, most people have in mind ransomware, specifically cryptomalware. In 2020–2021, with the outbreak...