CVE-2020-24187
An issue was discovered in ecma-helpers.c in jerryscript version 2.3.0, allows local attackers to cause a denial of service (DoS) (Null Pointer Dereference). Read More
CVE-2020-24075
Cross Site Scripting (XSS) vulnerability in Name Input Field in Contact Us form in Laborator Kalium before 3.0.4, allows remote attackers to execute arbitrary code....
CVE-2020-23595
Cross Site Request Forgery (CSRF) vulnerability in yzmcms version 5.6, allows remote attackers to escalate privileges and gain sensitive information sitemodel/add.html endpoint. Read More
CVE-2020-20523
Cross Site Scripting (XSS) vulnerability in adm_user parameter in Gila CMS version 1.11.3, allows remote attackers to execute arbitrary code during the Gila CMS installation....
CVE-2020-19952
Cross Site Scripting (XSS) vulnerability in Rendering Engine in jbt Markdown Editor thru commit 2252418c27dffbb35147acd8ed324822b8919477, allows remote attackers to execute arbirary code via crafted payload...
CVE-2022-3403
** REJECT ** Duplicate, please use CVE-2023-28931 instead. Read More
The Inability to Simultaneously Verify Sentience, Location, and Identity
Really interesting “systematization of knowledge” paper: “SoK: The Ghost Trilemma” Abstract: Trolls, bots, and sybils distort online discourse and compromise the security of networked platforms....
#BHUSA: Security Risks to Boom in the Era of Widespread Generative AI Adoption
Enterprise usages of generative AI are what is going to turn the threat model of many organizations upside down, Maria Markstedter argued during her speech...
Image steganography: Concealing secrets within pixels
The content of this post is solely the responsibility of the author. AT&T does not adopt or endorse any of the views, positions, or information...
UK Government Slammed For Encryption Mistruths
Technology secretary branded “delusion” Read More