The same statement disclosed that forensic work had found further data outflows in the portfolio of the Senate Department for Mobility, Transport, Climate Protection and Environment
Cosmos EVM Flaw Exploited After Cosmos Labs Knew Every Blockchain Running It Was Vulnerable
The vulnerability, designated GHSA-7g4w-cg88-2cq2, is rated Critical by Cosmos Labs and was published without a CVE identifier, a weakness classification, or a CVSS score.
Affected versions are < 0.6.2 and >=
PaperCut releases second emergency patch for exploited flaws
GiveWP WordPress donation plugin flaw lets hackers execute server commands
Attackers Chain Two PaperCut Flaws to Execute Code Without Authentication
“This vulnerability gives an unauthenticated attacker remote control over PaperCut’s trusted configuration, which could be used to execute arbitrary Java code inside the application’s
68-year-old imprisoned after making $1.3 million by pirating IPTV services
Android 17 Adds OS-Wide ECH to Hide Website Visits From Network Providers
Topping the list is support for Encrypted Client Hello (ECH), a privacy standard that prevents networks from eavesdropping on which websites a user is visiting.
“This new privacy standard works in tandem
ownCloud Flaw Exploited to Steal Nuclear Records From Philippine Research Body
The vulnerability, tracked as CVE-2023-49105 (CVSS score: 9.8), is a case of
In Other News: Log4j RCE Scare, Minimus Shutdown, Iranian Hacker Sanctions
Noteworthy stories that might have slipped under the radar: Manchester Airports Group cyberattack, Carhartt breach data was partly fake, U.S. Bank responds to ransomware gang’s claims.
The post In Other News: Log4j RCE Scare, Minimus Shutdown, Iranian Hacker Sanctions appeared first on SecurityWeek.
19 Chrome and Edge Extensions Found With Wallet-Stealing and Crypto-Draining Code
The extensions, per Socket security researcher Karlo Zanki, share similarities in code and tradecraft, with evidence indicating that the campaign may have been active
