APPLE-SA-11-30-2023-1 Safari 17.1.2
Posted by Apple Product Security via Fulldisclosure on Dec 12 APPLE-SA-11-30-2023-1 Safari 17.1.2 Safari 17.1.2 addresses the following issues. Information about the security content is...
[KIS-2023-13] ISPConfig <= 3.2.11 (language_edit.php) PHP Code Injection Vulnerability
Posted by Egidio Romano on Dec 12 ------------------------------------------------------------------------ ISPConfig <= 3.2.11 (language_edit.php) PHP Code Injection Vulnerability ------------------------------------------------------------------------ [-] Software Link: https://www.ispconfig.org [-] Affected Versions: Version...
[CFP] BSides San Francisco – May 2024
Posted by BSidesSF CFP via Fulldisclosure on Dec 12 BSidesSF is still soliciting submissions for the annual BSidesSF conference on May 4-5, 2024. Call for...
Microsoft Defender Anti-Malware PowerShell API – Arbitrary Code Execution
Posted by hyp3rlinx on Dec 12 [+] Credits: John Page (aka hyp3rlinx) [+] Website: hyp3rlinx.altervista.org [+] Source: http://hyp3rlinx.altervista.org/advisories/MICROSOFT_DEFENDER_ANTI_MALWARE_POWERSHELL_API_UNINTENDED_CODE_EXECUTION.txt [+] twitter.com/hyp3rlinx [+] x.com/hyp3rlinx [+] ISR: ApparitionSec...
Lazarus RAT Attack (CVE-2021-44228)
What is the Attack? A new attack campaign led by the Lazarus threat actor group is seen employing new DLang-based Remote Access Trojan (RAT) malware....
Microsoft Patch Tuesday, December 2023 Edition
The final Patch Tuesday of 2023 is upon us, with Microsoft Corp. today releasing fixes for a relatively small number of security holes in its...
Multiple Vulnerabilities in Atlassian Products Could Allow for Remote Code Execution
Multiple vulnerabilities have been discovered in Atlassian products which could allow for remote code execution. Confluence is a collaboration tool that brings people, knowledge, and...
USN-6548-2: Linux kernel vulnerabilities
It was discovered that Spectre-BHB mitigations were missing for Ampere processors. A local attacker could potentially use this to expose sensitive information. (CVE-2023-3006) It was...
A Vulnerability in the Backup Migration Plugin for WordPress Could Allow for Remote Code Execution
A vulnerability has been discovered in the Backup Migration Plugin for WordPress, which could allow for remote code execution. The Backup Migration Plugin helps admins...
Critical Patches Issued for Microsoft Products, December 12, 2023
Multiple vulnerabilities have been discovered in Microsoft products, the most severe of which could allow for remote code execution in the context of the logged...