Aggregator
CVE-2017-5223 | PHPMailer up to 5.2.21 msgHTML information disclosure (EDB-43056 / Nessus ID 96471)
CVE-2017-5515 | GeniXCMS up to 0.0.8 User Prompt cross site scripting (ID 63 / BID-95623)
CVE-2017-5516 | GeniXCMS up to 0.0.8 User Forms cross site scripting (ID 65 / BID-95622)
CVE-2017-5517 | GeniXCMS up to 0.0.8 author.control.php Type sql injection (ID 66 / BID-95455)
CVE-2017-5518 | GeniXCMS up to 0.0.8 Media-File Upload server-side request forgery (ID 64 / BID-95462)
CVE-2017-5519 | GeniXCMS up to 0.0.8 Posts.class.php ID sql injection (ID 67 / BID-95458)
ClickFix Evolves with 10-Year-Old Open-Source Python SOCKS5 Proxy
A cyberattack campaign that tricks users into running malicious commands on their own computers has taken a dangerous new turn. The technique, known as “ClickFix,” has been circulating for some time, but a recent incident revealed that attackers are now pairing it with a 10-year-old open-source Python tool to create a far more resilient form […]
The post ClickFix Evolves with 10-Year-Old Open-Source Python SOCKS5 Proxy appeared first on Cyber Security News.
【安全圈】Exim 新 BDAT 漏洞致 GnuTLS 构建面临代码执行风险
【安全圈】Windows 11遭新型BitUnlocker降级攻击:5分钟内可解密加密磁盘
【安全圈】苹果修复 macOS 和 iOS 系统数十个漏洞
KDE gets over €1 million investment to strengthen security and core infrastructure
European governments and public institutions have been shifting away from proprietary software for years, and the financial infrastructure supporting open-source alternatives is growing to match. Germany’s Sovereign Tech Fund announced today that it is investing more than €1 million in KDE, the open-source project behind the Plasma desktop environment and a broad range of Linux software. The investment will go toward strengthening KDE’s testing infrastructure, security architecture, and the frameworks underpinning its communication services. KDE … More →
The post KDE gets over €1 million investment to strengthen security and core infrastructure appeared first on Help Net Security.