Phishing attack vulnerability by uploading malicious HTML file

### Impact Phishing attack vulnerability by uploading malicious files. A malicious user could upload a HTML file to Parse Server via its public API. That HTML file would then be accessible at the inte ...

Continue Reading
CVE-2023-33180

Xibo is a content management system (CMS). An SQL injection vulnerability was discovered starting in version 3.2.0 and prior to version 3.3.2 in the `/display/map` API route inside the CMS. This allow ...

Continue Reading
CVE-2023-33181

Xibo is a content management system (CMS). Starting in version 3.0.0 and prior to version 3.3.5, some API routes will print a stack trace when called with missing or invalid parameters revealing sensi ...

Continue Reading
Kyverno vulnerable due to usage of insecure cipher

### Summary Insecure 3DES ciphers are used which may lead to exploitation of the [Sweet32 vulnerability](https://sweet32.info/). Specifically, the ciphers TLS_ECDHE_RSA_WITH_3DES_EDE_CBC_SHA (secp256r ...

Continue Reading
Kyverno vulnerable due to usage of insecure cipher

### Summary Insecure 3DES ciphers are used which may lead to exploitation of the [Sweet32 vulnerability](https://sweet32.info/). Specifically, the ciphers TLS_ECDHE_RSA_WITH_3DES_EDE_CBC_SHA (secp256r ...

Continue Reading

CVSS3 - HIGH

CVSS2 - MEDIUM

Why Attackers Target the Gaming Industry

## Key Takeaways: * The gaming industry is a common target for cyberattacks due to its financial success and vast user base. * Volumetric [DDoS attacks]() can disrupt service, distract from more s ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - HIGH

CAPTCHA-Breaking Services with Human Solvers Helping Cybercriminals Defeat Security

[![CAPTCHA](data:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAQAAAC1HAwCAAAAC0lEQVR42mP8Xw8AAoMBgDTD2qgAAAAASUVORK5CYII=)]() Cybersecurity researchers are warning about CAPTCHA-breaking services ...

Continue Reading
Critical OAuth Vulnerability in Expo Framework Allows Account Hijacking

[![Vulnerability](data:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAQAAAC1HAwCAAAAC0lEQVR42mP8Xw8AAoMBgDTD2qgAAAAASUVORK5CYII=)]() A critical security vulnerability has been disclosed in the Ope ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - MEDIUM

Back to Main

Subscribe for the latest news: