Aggregator
Oracle customers confirm data stolen in alleged cloud breach is valid
MailChimp Under Attack: How Cybercriminals Are Exploiting Email Marketing Platforms
At Constella, we’ve spent years analyzing how cybercriminals execute attacks that affect organizations of all sizes, whether they’re startups, local businesses, or global enterprises. One of the most revealing recent cases involves the abuse of Email Marketing Platforms like MailChimp, whose accounts are being compromised through account takeover (ATO), phishing, and social engineering tactics. These …
The post MailChimp Under Attack: How Cybercriminals Are Exploiting Email Marketing Platforms appeared first on Security Boulevard.
CVE-2019-9874 | Sitecore CMS/XP Sitecore.Security.AntiCSRF __CSRFTOKEN deserialization
CVE-2019-9875 | Sitecore CMS up to 9.1 CSRF Module POST Parameter deserialization
CVE-2022-48021 | Zammad 5.3.0 Message privilege escalation
CVE-2022-48022 | Zammad 5.3.0 Ticket /api/v1/mentions permission
CVE-2023-23635 | Jellyfin up to 10.8.3 Collection Name cross site scripting (Issue 3788)
CVE-2023-23636 | Jellyfin up to 10.8.3 Playlist Name cross site scripting (Issue 3788)
Cybersecurity Gaps Leave Doors Wide Open
2025-03-26: SmartApeSG traffic for fake browser update leads to NetSupport RAT and StealC
Splunk 高危漏洞:攻击者可通过文件上传执行任意代码
CVE-2024-4344 | Shield Security Plugin up to 19.1.13 on WordPress cross-site request forgery
CVE-2024-35645 | vinoth06 Random Banner Plugin up to 4.2.8 on WordPress cross site scripting
CVE-2024-35646 | Smartarget Message Bar Plugin up to 1.3 on WordPress cross site scripting
CVE-2024-35647 | Global Notification Bar Plugin up to 1.0.1 on WordPress cross site scripting
CVE-2024-36392 | MileSight DeviceHub cross site scripting
CVE-2023-42427 | Japan System Techniques Universal Passport RX 1.0.7 cross site scripting
CVE-2023-51436 | Japan System Techniques Universal Passport RX up to 1.0.8 cross site scripting
Production Line Cameras Vulnerabilities Let Attackers Stop The Recordings
Critical security vulnerabilities have been identified in industrial camera systems widely deployed across Japanese manufacturing facilities, allowing malicious actors to remotely access live footage and disrupt essential production monitoring. These flaws, present in the Inaba Denki Sangyo Co., Ltd. IB-MCT001 camera system known as “CHOCO TEI WATCHER mini,” enable attackers to bypass authentication mechanisms and […]
The post Production Line Cameras Vulnerabilities Let Attackers Stop The Recordings appeared first on Cyber Security News.