RivanorthProblog.rivanorth.com·Nov 5, 2024Vulnerability Report: November 2024Welcome to the monthly Vulnerability Report. In this report, we provide an overview of the most significant security vulnerabilities identified in the past month. Our focus is on vulnerabilities that are being actively exploited, which pose the bigge...DiscussSecurity AdvisoryCVE
Rao Waqas Akramraowaqasakram.hashnode.dev·Oct 24, 2024🌐 Celebrating 25 Years of CVEs! 🌐🌐 Celebrating 25 Years of CVEs! 🌐 Tenable has released an insightful article on the evolution of vulnerabilities, marking 25 years of CVE. From the first 321 records in 1999 to over 240,000 today, this milestone highlights the critical impact of ...Discuss·33 readsvulnerabilities
doppahuydoppa.hashnode.dev·Oct 10, 2024Analyst CVE-2024-8698 on KeyCloakSummary : A flaw exists in the SAML signature validation method within the Keycloak XMLSignatureUtil class. The method incorrectly determines whether a SAML signature is for the full document or only for specific assertions based on the position of t...LaGon HackTrick and 1 other are discussing this2 people are discussing thisDiscuss·6 likes·1.8K readskeycloak
RivanorthProblog.rivanorth.com·Oct 8, 2024Vulnerability Report: October 2024Welcome to the monthly Vulnerability Report. In this report, we provide an overview of the most significant security vulnerabilities identified in the past month. Our focus is on vulnerabilities that are being actively exploited, which pose the bigge...DiscussSecurity AdvisoryCVE
Rosecurifylog.rosecurify.com·Oct 5, 2024Seclog - #94📚 SecMisc Tools Index | Hackers of India - A comprehensive index of hacking tools. Read More Unleash the Power of Censys Search - A guide for using Censys search effectively. Read More Lambda Watchdog - A monitoring tool for AWS Lambda functions....DiscussseclogCVE-2024-45409
Tran Hoang PhongforFIS Securityblog.fiscybersec.com·Sep 29, 2024Lỗ hổng nghiêm trọng trên GitLab khiến kẻ tấn công bỏ qua xác thực SAMLLỗ hổng CVE-2023-7028 là một lỗ hổng bảo mật nghiêm trọng trong GitLab, ảnh hưởng đến cả phiên bản Enterprise Edition (EE) và Community Edition (CE). Nếu khai thác thành công, kẻ tấn công có thể chiếm quyền kiểm soát tài khoản quản trị của hệ thống G...Discuss·45 readsNewslettersGitLab
Abishek Kafledevops.abisec.xyz·Sep 13, 2024WordPress Community Plugin PeepSo Vulnerability: CVE-2024-31251Introduction Hey there! I'm Abishek Kafle, a security researcher with the Patchstack Alliance. Today, I want to tell you how I found a big security flaw in a popular WordPress plugin, which got the CVE-2024-31251. This story shows why detailed securi...DiscussInfoseccve-2024-31251
Ngô Thiên Anancorn.hashnode.dev·Sep 4, 2024[CVE-2024-24842] Unauthenticated PHP Object Injection in plugin Knowledge Base for Documentation, FAQs with AI Assistance <= 11.30.2✋ Table of content About Knowledge Base for Documentation, FAQs with AI Assistance plugin The security vulnerability The patch Conclusion About Knowledge Base for Documentation, FAQs with AI Assistance plugin The plugin Knowledge Base for Docum...DiscussCVE-2024-24842
RivanorthProblog.rivanorth.com·Sep 2, 2024Vulnerability Report: September 2024Welcome to the monthly Vulnerability Report. In this report, we provide an overview of the most significant security vulnerabilities identified in the past month. Our focus is on vulnerabilities that are being actively exploited, which pose the bigge...DiscussSecurity AdvisorySecurity
Nicolás GeorgerforSREDevOps.orgsredevopsorg.hashnode.dev·Aug 23, 2024OpenCTI: The Open-Source Cyber Threat Intelligence PlatformTL/DR OpenCTI is an open-source platform designed to help organizations manage their cyber threat intelligence (CTI) data and observables. Developed by Filigran, it uses a knowledge schema built on the STIX2 standards and features a modern web appli...Discussapps