X

Vous n'êtes pas connecté

Maroc Maroc - BLEEPINGCOMPUTER.COM - A La Une - 24/Jun 19:03

New attack uses MSC files and Windows XSS flaw to breach networks

A novel command execution technique dubbed 'GrimResource' uses specially crafted MSC (Microsoft Saved Console) and an unpatched Windows XSS flaw to perform code execution via the Microsoft Management Console. [...]

Articles similaires

Sorry! Image not available at this time

CosmicSting flaw impacts 75% of Adobe Commerce, Magento sites

bleepingcomputer.com - 20/Jun 20:02

A vulnerability dubbed "CosmicSting" impacting Adobe Commerce and Magento websites remains largely unpatched nine days after the security update has...

Sorry! Image not available at this time

New Orcinius Trojan Uses VBA Stomping to Mask Infection

itsecuritynews.info - 13:32

This multi-stage trojan utilizes Dropbox and Google Docs to update and deliver payloads. It uses the VBA stomping technique, removing the VBA source...

Sorry! Image not available at this time

An unpatched bug allows anyone to impersonate Microsoft corporate email accounts

itsecuritynews.info - 20/Jun 08:33

A researcher discovered a flaw that allows attackers to impersonate Microsoft corporate email accounts and launch phishing attacks. The security...

Sorry! Image not available at this time

An unpatched bug allows anyone to impersonate Microsoft corporate email accounts

securityaffairs.co - 20/Jun 08:19

A researcher discovered a flaw that allows attackers to impersonate Microsoft corporate email accounts and launch phishing attacks. The security...

Why you should never connect to public WiFi networks

thestar.com.my - 19/Jun 02:00

While Microsoft has announced the existence of a major WiFi security flaw in Windows, it's important to note that it's always best to avoid connecting...

Sorry! Image not available at this time

Critical unauthenticated remote code execution flaw in OpenSSH server

itsecuritynews.info - 01/Jul 15:09

A critical flaw in the OpenSSH server can be exploited to achieve unauthenticated remote code execution with root privileges in glibc-based Linux...

South Korean Telecommunications Company Uses Malware on Its Own Customers

thecekodok.com - 27/Jun 12:32

When it comes to malware attacks, these are usually only done by hacker groups looking for a quick, malicious profit. It's a different story in South...

Sorry! Image not available at this time

Mitigating Skeleton Key, a New Type of Generative AI Jailbreak Technique

itsecuritynews.info - 28/Jun 08:32

Microsoft has discovered a new type of jailbreak attack called Skeleton Key. This technique uses a multi-turn strategy to make the model ignore its...

Sorry! Image not available at this time

Hundreds of PC, Server Models Possibly Affected by Serious Phoenix UEFI Vulnerability

itsecuritynews.info - 20/Jun 14:10

Hundreds of PC and server models may be affected by CVE-2024-0762, a privilege escalation and code execution flaw in Phoenix SecureCore UEFI firmware....

Sorry! Image not available at this time

VMware fixed RCE and privilege escalation bugs in vCenter Server

itsecuritynews.info - 18/Jun 17:34

VMware addressed vCenter Server vulnerabilities that can allow remote code execution or privilege escalation. VMware addressed multiple vCenter Server...