CosmicStrand: the discovery of a sophisticated UEFI firmware rootkit

![](https://media.kasperskycontenthub.com/wp-content/uploads/sites/43/2022/07/25084950/abstract_cosmic_strand-990x400.jpg) ## Introduction Rootkits are malware implants which burrow themselves in the ...

Continue Reading
Exploit for Vulnerability in Microsoft

# CVE-2022-26809-POC metasploit module for CVE-2022-26809 window...Read More ...

Continue Reading
Privilege Escalation

Zulip is vulnerable to Privilege Escalation. An attacker may exploit the vulnerability by sending a maliciously crafted API call that grants administrator privileges to a bot in control.Read More ...

Continue Reading
CVE-2018-25045

Django REST framework (aka django-rest-framework) before 3.9.1 allows XSS because the default DRF Browsable API view templates disable autoescaping.Read More ...

Continue Reading
SUSE SLES12 Security Update : python-M2Crypto (SUSE-SU-2022:2527-1)

The remote SUSE Linux SLES12 host has packages installed that are affected by a vulnerability as referenced in the SUSE- SU-2022:2527-1 advisory. - A flaw was found in all released versions of m2cry ...

Continue Reading
SUSE SLED15 / SLES15 Security Update : python-M2Crypto (SUSE-SU-2022:2532-1)

The remote SUSE Linux SLED15 / SLES15 host has a package installed that is affected by a vulnerability as referenced in the SUSE-SU-2022:2532-1 advisory. - A flaw was found in all released versions ...

Continue Reading
Drupal core – Moderately critical – Access Bypass – SA-CORE-2022-013

Under certain circumstances, the Drupal core form API evaluates form element access incorrectly. This may lead to a user being able to alter data they should not have access to. No forms provided by D ...

Continue Reading
Debian DSA-5187-1 : chromium – security update

The remote Debian 11 host has packages installed that are affected by multiple vulnerabilities as referenced in the dsa-5187 advisory. - Use after free in Cast UI and Toolbar. (CVE-2022-2163) - : ...

Continue Reading

Back to Main

Subscribe for the latest news: