Asylum Ambuscade: A Cybercrime Group with Espionage Ambitions

[![Cybercrime Group](data:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAQAAAC1HAwCAAAAC0lEQVR42mP8Xw8AAoMBgDTD2qgAAAAASUVORK5CYII=)]() The threat actor known as **Asylum Ambuscade** has been obse ...

Continue Reading

CVSS3 - HIGH

CVSS2 - HIGH

Important: xmlrpc

**Issue Overview:** An untrusted deserialization was found in the org.apache.xmlrpc.parser.XmlRpcResponseParser:addResult method of Apache XML-RPC (aka ws-xmlrpc) library. A malicious XML-RPC server c ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - HIGH

Security Bulletin: There is a vulnerability in GraphQL used by IBM Maximo Asset Management (CVE-2022-37734)

## Summary There is a vulnerability in GraphQL used by IBM Maximo Asset Management. ## Vulnerability Details **CVEID: **[CVE-2022-37734]() **DESCRIPTION: **GraphQL Java is vulnerable to a denial of se ...

Continue Reading

CVSS3 - HIGH

CVSS2 - MEDIUM

(RHSA-2023:3409) Important: OpenShift Container Platform 4.12.20 packages and security update

Red Hat OpenShift Container Platform is Red Hat's cloud computing Kubernetes application platform solution designed for on-premise or private cloud deployments. This advisory contains the RPM packages ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - HIGH

Metasploit Weekly Wrap-Up

## Cloud Fun With EC2 ![Metasploit Weekly Wrap-Up](https://blog.rapid7.com/content/images/2023/06/metasploit-sky-1-1-1.png) New ground was broken today with the addition of two PRs from community cont ...

Continue Reading

CVSS2 - HIGH

Metasploit Weekly Wrap-Up

## Cloud Fun With EC2 ![Metasploit Weekly Wrap-Up](https://blog.rapid7.com/content/images/2023/06/metasploit-sky-1-1-1.png) New ground was broken today with the addition of two PRs from community cont ...

Continue Reading

CVSS2 - HIGH

CVE-2019-19791

In LemonLDAP::NG (aka lemonldap-ng) before 2.0.7, the default Apache HTTP Server configuration does not properly restrict access to SOAP/REST endpoints (when some LemonLDAP::NG setup options are used) ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - HIGH

Exploit for Authentication Bypass by Spoofing in Python-Jwt Project Python-Jwt

# CVE-2022-39227 CVE-2022-39227 : Proof of Concept Proof of co...Read More ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - MEDIUM

Back to Main

Subscribe for the latest news: