X

Vous n'êtes pas connecté

Rubriques :

Maroc Maroc - ITSECURITYNEWS.INFO - A La Une - 27/Jan 09:11

Windows Charset Conversion Feature Exploited to Execute Remote Code

Security researchers have uncovered a critical vulnerability in Windows stemming from its “Best-Fit” character conversion feature, which has been exploited to execute remote code.  This newly identified attack surface, dubbed “WorstFit,” leverages certain features of Windows’ internal character encoding system…

Articles similaires

Sorry! Image not available at this time

Kubernetes Cluster RCE Vulnerability Let Attacker Takeover All Windows Nodes

itsecuritynews.info - 26/Jan 04:06

A critical vulnerability in Kubernetes, designated as CVE-2024-9042, has been discovered, enabling attackers to execute remote code with SYSTEM...

Sorry! Image not available at this time

CVE-2025-0107 PoC Exploit Code Released for PaloAlto Flaw

thecyberthrone.in - 19/Jan 00:56

Background: CVE-2025-0107 is a critical OS command injection vulnerability discovered in Palo Alto Networks’ Expedition Tool, version 1.2.101...

Sorry! Image not available at this time

CVE-2025-21298 Exploit Code Released

thecyberthrone.in - 24/Jan 13:19

CVE-2025-21298 is a critical use-after-free vulnerability in Microsoft Outlook. This vulnerability can be exploited to achieve remote code execution...

Sorry! Image not available at this time

CVE-2025-0411 impacts 7-Zip with Code Execution

thecyberthrone.in - 21/Jan 13:27

Background of CVE-2025-0411 CVE-2025-0411 is a security flaw identified in 7-Zip, a widely-used open-source file archiver. This vulnerability allows...

Sorry! Image not available at this time

Meta’s Llama Framework Flaw Exposes AI Systems to Remote Code Execution Risks

itsecuritynews.info - 26/Jan 11:33

A high-severity security flaw has been disclosed in Meta’s Llama large language model (LLM) framework that, if successfully exploited, could allow...

Sorry! Image not available at this time

PANdora Box Vulnerabilities in PaloAlto Firewalls

thecyberthrone.in - 25/Jan 01:25

Overview of PANdora’s Box PANdora’s Box is a term used to describe a series of critical vulnerabilities identified in various models of...

Sorry! Image not available at this time

7-Zip fixes bug that bypasses Windows MoTW security warnings, patch now

bleepingcomputer.com - 21/Jan 16:05

​A high-severity vulnerability in the 7-Zip file archiver allows attackers to bypass the Mark of the Web (MotW) Windows security feature and execute...

Sorry! Image not available at this time

CVE-2025-23006 impacts SonicWall SMA 1000 Series

thecyberthrone.in - 24/Jan 01:34

CVE-2025-23006 is a critical pre-authentication deserialization of untrusted data vulnerability identified in SonicWall’s Secure Mobile Access...

Meta Llama LLM security flaw could let hackers easily breach systems and spread malware

lovablevibes.co - 27/Jan 16:08

Security researchers find way to abuse Meta’s Llama LLM for remote code execution Meta addressed the problem in early October 2024 The problem...

Sorry! Image not available at this time

PHP package Voyager flaws expose to one-click RCE exploits

securityaffairs.co - 12:21

The open-source PHP package Voyager is affected by three vulnerabilities that could be exploited to achieve one-click remote code execution on...