Plus récents

🇰🇷 South Korea President Moon Jae-in on Friday ordered an all-out efforts to be made to protect the Hanul Nuclear Power Plant from a wildfire that broke out in the eastern coastal county of Uljin, the presidential office said in a statement. Of the total, five reactors are currently in operation while one was under maintenance. Authorities have not said how far the fires are from the site of the plant.

reuters.com/world/asia-pacific

🇪🇺 eIDAS - Public consultation to make the EU Digital Identity Wallets. The European Digital Identity will be available to EU citizens, residents, and businesses who want to identify themselves or provide confirmation of certain personal information.

twitter.com/DigitalEU/status/1

🇫🇷 Les représentants FCPE du collège Charlemagne Paris 4e rapportent sur Twitter une possible fuite de données : « Il semble que Le réseau social éducatif des lycéens franciliens (monlycee.net) a été victime d'une informatique avec accès aux données de connexion. Il est recommandé de changer son mot de passe en attendant d'en savoir un peu plus sur les datas exploitées. » (@75004Fcpe)

🇺🇸 Cogent cuts off 🇷🇺 Russian clients. Cogent, based in Washington, D.C., is one of the world's largest providers of what's known as Internet backbone - roughly comparable to the interstate highway system, providing the primary conduit for data flows that local companies then route to individual domains.

washingtonpost.com/technology/

🇫🇷 Clôture de l'exercice spatial militaire européen AsterX 2022 par le Commandement de l'espace (CDE). L'exercice militaire européen de guerre spatiale, coordonné depuis Toulouse, vise à tester la défense des satellites.

france3-regions.francetvinfo.f

🇫🇷 Des clients gersois de l’opérateur NordNet sont actuellement privés de réseau. La conséquence d’une cyberattaque selon le général Michel Friedling.

ladepeche.fr/2022/03/04/gers-u

Most of (anti-) malware researchers focus on malware samples, because it's only natural in this line of work. For a while now I try to focus on the opposite ; good files (primarily PE file format). While it may sound boring & mundane, maybe even somehow trivial, this is actually a very difficult task!

hexacorn.com/blog/2022/03/04/g

Pwning Hashnode blogging platform using Markdown. Even the smallest of low severity issues can be escalated when chained with other vulnerabilities.

blog.dixitaditya.com/pwning-a-

🔥 CVE-2022-24724 - A vulnerability, discovered by Felix Wilhelm, exists in the table markdown extensions of cmark-gfm. If cmark-gfm is used for rendering remote user controlled markdown, this vulnerability may lead to Remote Code Execution (RCE) in applications employing affected versions of the cmark-gfm library.

github.com/github/cmark-gfm/se

A coverage-guided fuzzer targeting Hyper-V emulated devices, in the userland of Hyper-V root partition. Vulnerabilities in that layer coud lead to a guest to root partition escape.

github.com/googleprojectzero/H

Nice write-up that describes how to simplify Alexander Popov PoC exploit for CVE-2021-26708 in the kernel

hardenedvault.net/2022/03/01/p

Plus anciens