OpenSSL 3.0.7 is a security-fix release.
This release will be made available on Tuesday 1st November 2022 between 1300-1700 UTC.
⚠️ The highest severity issue fixed in this release is 🚨 CRITICAL
#vuln #openssl #software #threats #informatique
https://mta.openssl.org/pipermail/openssl-announce/2022-October/000238.html
🤖 The security risks faced by
CNC machines in Industry 4.0
#industrial #cnc #devices #iot #factories #ddos #industries #cyber #facilities #sofware #smart #threats #critical #management #vuln #plants #systems #manufacturers #networks #technologies #future #informatique
(CVE-2022-37454) SHA-3 Buffer Overflow #vuln #threats #crypto #informatique
🛠 CVE-2022-42889
Text4Shell scanner for
Burp Suite
#vuln #software #tools #infosec #informatique
🇧🇪 Hex-Rays (hex-rays.com
) has been acquired by 🌐 Smartfin #europe #belgium #capital #venture #investors #infosec #software #belgique #cyber #consortium #technologies #business #malware #analysis #tools #security #solutions #vuln #management #disassembler #debugger #ida #decompiler #investment #partnership #vault #digital #development #engineers #informatique
⦿ CVE-2022-40684 : Critical authentication bypass vulnerability in FortiOS, FortiProxy & FortiSwitchManager. This vulnerability gives an attacker the ability to login as an administrator #vuln #fortinet #security #web #software #management #informatique
📰 Several security & privacy vulnerabilities in Mozilla Thunderbird #vuln #mail #client #application #software #thunderbird #messages #email #informatique
https://pseudorandom.resistant.tech/disclosing-security-and-privacy-issues-in-thunderbird.html
🇳🇴 Un rapport accablant alerte sur des failles dans les SI des armées norvégiennes et du Ministère de la Défense #europe #norway #military #cyber #vuln #defence #databreach #digital #threats #numérique #norvège #informatique
🚨 Threat actors are exploiting yet-to-be-disclosed Microsoft Exchange 0-day bugs allowing for Remote Code Execution #vuln #wormable #itw #microsoft #windows #exchange #mail #software #zeroday #servers #emails #businesses #exploits #cyber #automation #worms #enterprises #backdoors #threats #organizations #databreach #networks #malware #botnet #business #ransomware #informatique
🇺🇸 Les opérateurs Black Cat revendiquent une attaque informatique à l'encontre de NJVC (njvc.com
) #usa #automation #ransomware #corporate #federal #geoint #software #businesses #virtual #government #infrastructure #innovative #cloud #systems #solutions #databreach #experts #threats #cyber #security #blackcat #leadership #enterprises #geospacial #engineers #data #careers #economic #cybersecurity #digital #scale #clearances #technologies #compliant #staff #hybrid #seamless #integration #symposium #management #strategic #department #services #numérique #products #defense #communities #insights #critical #vital #resources #servicefront #missions #marketplace #monitoring #commercial #contractors #clients #vendors #networks #sponsorship #migration #productivity #optimization #vuln #afcea #market #deep #transformation #business #customers #interception #scalability #partnership #informatique
Client Citrix Independent Computing Architecture / Citrix Single Sign-On
🥝 Mimikatz by Benjamin Delpy
misc::citrix::logonpasswords
wfcrun32.exe
AuthManSvr.exe
ssonsvr.exe
https://video.twimg.com/tweet_video/Fcudz49XoAAfNHO.mp4
#citrix #vuln #software #bisounours #application #threats #informatique
An attack path enables malicious actors with file system access to steal credentials for any Microsoft Teams user who is signed in #microsoft #team #software #windows #linux #commercial #storage #vuln #tokens #mac #accounts #informatique
https://www.vectra.ai/blogpost/undermining-microsoft-teams-security-by-mining-tokens
🚨 CVE-2022-34718 : Microsoft Windows TCP/IP RCE
An unauthenticated attacker could send a specially crafted IPv6 packet to a Windows node where IPSec is enabled, which could enable a remote code execution exploitation on that machine #vuln #microsoft #windows #threats #networks #ipsec #informatique
https://msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2022-34718
Metaverse
#metaverse #online #devices #hardware #software #malware #networks #worms #espionage #systems #cyber #smart #physical #threats #cloud #malicious #interactive #warfare #ai #idtheft #technologies #internet #city #ia #malware #medical #fraudes #market #disasters #numérique #power #criminal #assaults #services #education #social #hate #commercial #harassment #blockchain #health #money #terrorisme #rage #firms #retails #arnaques #cryptocurrencies #scams #customers #economic #corporation #ransomware #advertising #brokers #marketplace #digital #industries #cyberbullying #shops #hacking #corporate #stores #payments #reputation #contractors #products #financial #remote #careers #frauds #isc #sabotage #iot #vuln #scada #terrorism #supply #industrial #grid #exploits #objects #cctv #privacy #databreach #interfaces #darkverse #espionnage #infrastructure #ddos #extortions #equipment #sovereignty #government #sensors #surveillance #emotional #influence #business #informatique
🛠 FISSURE
An open-source RF & reverse engineering framework for all skill levels with hooks for signal detection and classification, protocol discovery, attack execution, IQ manipulation, vulnerability analysis, automation and AI/ML #tools #infosec #opensource #radio #python #vuln #informatique
sc(r)apy | full metal packets
> We Are the Borg
> You Will be Assimilated
> Resistance is Futile