X

Vous n'êtes pas connecté

Rubriques :

Maroc Maroc - ITSECURITYNEWS.INFO - A La Une - 10/Jul 11:11

Blast RADIUS Attack can Bypass Authentication for Clients

This vulnerability, known as Blast RADIUS and rated 7.5 out of 10 on the severity scale, affects the RADIUS networking protocol, potentially granting unauthorized access to network devices and services without credentials. This article has been indexed from Cyware News…

Articles similaires

Sorry! Image not available at this time

Unfixed Microsoft Entra ID Authentication Bypass Threatens Hybrid IDs

itsecuritynews.info - 19/Aug 11:02

Cymulate’s proof-of-concept attack demonstrates how multiple on-premises domains syncing to a single Azure tenant can lead to credential...

Sorry! Image not available at this time

Qilin Ransomware Caught Stealing Credentials Stored in Google Chrome

itsecuritynews.info - 23/Aug 16:32

A recent Qilin ransomware attack targeted several endpoints, stealing VPN credentials and Chrome browser data. This attack, detected in July 2024,...

Sorry! Image not available at this time

SonicWall Issues Urgent Patch for Critical Firewall Vulnerability

itsecuritynews.info - 23/Aug 16:32

SonicWall has released an urgent patch to address a critical vulnerability (CVE-2024-40766) in SonicOS, which could allow unauthorized access to their...

Sorry! Image not available at this time

Ingress-NGINX Annotation Validation Bypass Flaw (CVE-2024-7646) Allows Command Injection

itsecuritynews.info - 22/Aug 11:02

The vulnerability allows attackers to inject malicious content into annotations, leading to arbitrary command injection and potential access to...

Sorry! Image not available at this time

CISA Adds Dahua IP Camera, Linux Kernel, and Microsoft Exchange Server Bugs to its KEV Catalog

itsecuritynews.info - 24/Aug 10:06

The CISA has added new vulnerabilities to its Known Exploited Vulnerabilities catalog, including Dahua IP Camera authentication bypass flaws, a Linux...

Sorry! Image not available at this time

Vesra File Type Upload Vulnerability Lets Attackers Gain Sys-Admin Access from MSP

itsecuritynews.info - 07:32

A critical vulnerability has been identified in Versa Director, a vital component of the company’s SD-WAN solution. The vulnerability, officially...

Sorry! Image not available at this time

Critical wpa_supplicant Vulnerability Addressed

itsecuritynews.info - 12:32

A serious vulnerability has been discovered in the widely used wpa_supplicant package, potentially leaving millions of devices at risk. This flaw,...

Sorry! Image not available at this time

Critical SAP Flaw Allows Remote Attackers to Bypass Authentication

itsecuritynews.info - 14/Aug 10:02

SAP has released a security patch package for August 2024, addressing 17 vulnerabilities, including a critical authentication bypass flaw...

Sorry! Image not available at this time

PG_MEM Malware Targets PostgreSQL Databases for Crypto Mining

itsecuritynews.info - 23/Aug 15:32

Cryptojacking attackers are targeting poorly secured PostgreSQL databases on Linux systems. According to Aqua Security researchers, the attack begins...

Sorry! Image not available at this time

Another Critical SolarWinds Web Help Desk Bug Fixed (CVE-2024-28987)

itsecuritynews.info - 26/Aug 09:02

SolarWinds has fixed another critical bug in Web Help Desk, known as CVE-2024-28987. This flaw involves hardcoded credentials that can be exploited by...