📬 Twitter sammelt Nutzerdaten von über 70.000 Webseiten
#Datenschutz #Internet #Amazon #Audi #CodeInjection #ElonMusk #RestrictedDataUsage #Spotify #TwitterPixel #Volkswagen https://tarnkappe.info/artikel/datenschutz/twitter-sammelt-nutzerdaten-von-ueber-70-000-webseiten-260669.html
#volkswagen #twitterpixel #spotify #restricteddatausage #elonmusk #codeinjection #audi #amazon #internet #datenschutz
Interesting "Stealing passwords from infosec Mastodon - without bypassing CSP" by @gaz.
https://portswigger.net/research/stealing-passwords-from-infosec-mastodon-without-bypassing-csp
It says at the end that the vulnerability was only exploitable in the #Glitch fork (used by that instance), not #Mastodon itself.
Still, despite the slightly misleading title, that's some good research, and an interesting well-written article. 😄
#glitch #mastodon #InfoSec #cybersecurity #codeinjection #WebSecurity
Hey #infosec/#appsec peeps...
Ever wanted to work on #videogames? :) Cheat devs are using #hypervisor mods to do hard-to-detect #codeinjection and in-memory modification.
#Bungie needs a low-level security engineer to help develop strategies that can be implemented in game clients running on compromised hardware to detect, mitigate, and run psyops on cheaters and cheat devs.
If you like adversarial work, it's pretty awesome. Come talk to me :)
#re #reverseengineering #gamedev #security #bungie #codeinjection #hypervisor #videogames #infosec
WordPress Sites Open to Code Injection Attacks via Welcart e-Commerce Bug - The shopping cart application contains a PHP object-injection bug. https://threatpost.com/wordpress_open_to_attacks_welcart_bug/161037/ #informationdisclosure #securityvulnerability #phpobjectinjection #vulnerabilities #denialofservice #codeinjection #websecurity #e-commerce #wordfence #wordpress #welcart #plugin #patch #bug
#bug #patch #plugin #welcart #wordpress #wordfence #e #websecurity #codeinjection #denialofservice #vulnerabilities #phpobjectinjection #securityvulnerability #informationdisclosure
Texas Gold-Dealer Mined for Payment Details in Months-Long Data Breach - JM Bullion fell victim to a payment-card skimmer, which was in place for five months. https://threatpost.com/texas-gold-dealer-payment-data-breach/160846/ #paymentcardskimmer #vulnerablewebsite #databreachnotice #vulnerabilities #preciousmetals #codeinjection #websecurity #emailnotice #databreach #golddealer #jmbullion #magecart #breach #reddit #hacks
#hacks #reddit #breach #magecart #jmbullion #golddealer #databreach #emailnotice #websecurity #codeinjection #preciousmetals #vulnerabilities #databreachnotice #vulnerablewebsite #paymentcardskimmer
Citrix Bugs Allow Unauthenticated Code Injection, Data Theft - Admins should patch their Citrix ADC and Gateway installs immediately. more: https://threatpost.com/citrix-bugs-allow-unauthenticated-code-injection-data-theft/157214/ #informationdisclosure #criticaladvisory #securityadvisory #vulnerabilities #denialofservice #codeinjection #cve-2020-8187 #cve-2020-8190 #cve-2020-8191 #cve-2020-8193 #cve-2020-8194 #cve-2020-8195 #cve-2020-8196 #cve-2020-8197 #cve-2020-8198 #cve-2020-8199 #adc
#adc #cve #codeinjection #denialofservice #vulnerabilities #securityadvisory #criticaladvisory #informationdisclosure
WordPress, Apache Struts Attract the Most Bug Exploits - An analysis found these web frameworks to be the most-targeted by cybercriminals in 2019. more: https://threatpost.com/wordpress-apache-struts-most-bug-exploits/153927/?utm_source=rss&utm_medium=rss&utm_campaign=wordpress-apache-struts-most-bug-exploits #securityvulnerabilities #weaponizationrate #vulnerabilities #inputvalidation #spotlightreport #codeinjection #cybersecurity #mostexploited #apachestruts #securitybugs #websecurity
#websecurity #securitybugs #apachestruts #mostexploited #cybersecurity #codeinjection #spotlightreport #inputvalidation #vulnerabilities #weaponizationrate #securityvulnerabilities