Akira Ransomware Group Rakes in $42m, 250 Organizations Impacted
A joint advisory from Europol and US and Dutch government agencies estimated that Akira made around $42m in ransomware proceeds from March 2023 to January...
flatpak-1.15.8-1.fc39
FEDORA-2024-c8d21fe399 Packages in this update: flatpak-1.15.8-1.fc39 Update description: Update to 1.15.8 Fix CVE-2024-32462 Read More
flatpak-1.15.8-1.fc40
FEDORA-2024-43ea98691e Packages in this update: flatpak-1.15.8-1.fc40 Update description: Update to 1.15.8 Fixes CVE-2024-32462 Read More
ZDI-24-368: GStreamer AV1 Video Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability
This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. Interaction with this library is required to exploit this vulnerability but...
DSA-5667-1 tomcat9 – security update
Several security vulnerabilities have been discovered in the Tomcat servlet and JSP engine. CVE-2023-46589 Tomcat 9 did not correctly parse HTTP trailer headers. A trailer...
DSA-5666-1 flatpak – security update
Gergo Koteles discovered that sandbox restrictions in Flatpak, an application deployment framework for desktop apps, could by bypassed in combination with xdg-desktop-portal. https://security-tracker.debian.org/tracker/DSA-5666-1 Read More
chromium-124.0.6367.60-1.fc38
FEDORA-2024-5d8f4f86b0 Packages in this update: chromium-124.0.6367.60-1.fc38 Update description: update to 124.0.6367.60 High CVE-2024-3832: Object corruption in V8 High CVE-2024-3833: Object corruption in WebAssembly High CVE-2024-3914:...
chromium-124.0.6367.60-2.fc39
FEDORA-2024-12edb9dec8 Packages in this update: chromium-124.0.6367.60-2.fc39 Update description: update to 124.0.6367.60 High CVE-2024-3832: Object corruption in V8 High CVE-2024-3833: Object corruption in WebAssembly High CVE-2024-3914:...
Quishing Attacks Jump Tenfold, Attachment Payloads Halve
The figures come from Egress’s latest report, which also suggests secure email gateways lag behind tech advancements Read More
Russia’s Sandworm Upgraded to APT44 by Google’s Mandiant
Mandiant has confirmed that Sandworm is responsible for many cyber-attacks against Ukraine has close ties with a Russian hacktivist group Read More