Certik Uncovers Security Vulnerability in Worldcoin’s Verification Process - On May 29, 2023, Certik, a blockchain and smart contract auditing firm, reported a... - https://news.bitcoin.com/certik-uncovers-security-vulnerability-in-worldcoins-verification-process/ #alternativeforgermany #identificationprocess #securityvulnerability #verificationprocess #whitehatdisclosure #maliciousattacker #irisinformation #privacyconcerns #datacollection #christinabaum #smartcontract #orboperator #kenya
#kenya #orboperator #smartcontract #christinabaum #datacollection #privacyconcerns #irisinformation #maliciousattacker #whitehatdisclosure #verificationprocess #securityvulnerability #identificationprocess #alternativeforgermany
@gadearray
Also #CyberSecurity, because if they've built a common pipeline to access all that into something that's going to be on a lot of people's phones, they've built in a common #SecurityVulnerability for #hackers to exploit.
I would say, If you are a hacker looking to steal bank accounts, disrupt communications networks, get into government networks, or any sort of mass destruction, figuring out how to hijack #Threads is going to be a great investment right now.
This is a #CyberTerrorism wet dream.
#cybersecurity #securityvulnerability #hackers #threads #cyberterrorism
The aCropalypse vulnerability clearly demonstrates the need for vigilance when it comes to security, even in the most trusted of tools. #PixelMarkup #SecurityVulnerability #StayVigilant #Android13 #March2023SecurityUpdate http://www.techmeme.com/230319/p2#a230319p2
#pixelmarkup #securityvulnerability #stayvigilant #android13 #march2023securityupdate
Not a thing I expected to read, but something that should be expected nowadays.
Nintendo patches a security vulnerability that could give hackers "full console takeover" https://www.eurogamer.net/nintendo-patches-a-security-vulnerability-that-could-give-hackers-full-console-takeover
#Nintendo #Patch #SecurityVulnerability #InfoSec #Exploit #Switch #3DS #WiiU
#Nintendo #patch #securityvulnerability #infosec #exploit #switch #3ds #wiiu
RT @BrianVerm@twitter.com
SnakeYaml, a YAML parser and emitter for Java, has a vulnerability that allows arbitrary code execution. The flaw in its Constructor class doesn't restrict deserialized types. Learn more about this vulnerability: https://buff.ly/3iQxvqy
#Java #SnakeYaml #securityvulnerability
🐦🔗: https://twitter.com/BrianVerm/status/1602954048080158721
#java #SnakeYAML #securityvulnerability
SnakeYaml, a YAML parser and emitter for Java, has a vulnerability that allows arbitrary code execution. The flaw in its Constructor class doesn't restrict deserialized types. Learn more about this vulnerability: https://t.co/iPENynt41h
#Java #SnakeYaml #securityvulnerability https://t.co/3Kbq1IaZM3
#java #SnakeYAML #securityvulnerability
Looks like I'm about to submit my first ever #SecurityVulnerability to #Microsoft :blobnervous:
#securityvulnerability #microsoft
#securityvulnerability
OpenSSL 3.0.x affected by two high severity vulnerabilities - 202211030001
https://wagov.github.io/wasocshared/#/advisories/20221103001-openSSL-vulnerability.md
Good write-up of the recent #OpenSSL #SecurityVulnerability. https://github.com/colmmacc/CVE-2022-3602 #OpenSource
#OpenSource #securityvulnerability #OpenSSL
#securityvulnerability
VMware Cloud Foundation Unauthenticated Remote Code Execution - 20221031002
https://wagov.github.io/wasocshared/#/advisories/20221031002-vmware-cloudfoundation-vulnerability.md
Nach den Upload Filtern wird sich weiterhin mit Ruhm bekleckert von Seiten der CDU.
https://www.heise.de/news/Sicherheitsluecken-in-CDU-connect-App-Strafverfahren-gegen-Entdeckerin-6154663.html
https://www.ccc.de/de/updates/2021/ccc-meldet-keine-sicherheitslucken-mehr-an-cdu
> Der CCC bedauert ausdrücklich, dass damit das Risiko anonymer Full-Disclosure-Veröffentlichungen für die CDU und ihre freiwilligen Unterstützerinnen steigt. Die Verantwortung für zukünftige derartige Veröffentlichungen weisen wir vorsorglich von uns.
#CCC #CDU #uploadfilter #securityvulnerability
#ccc #cdu #uploadfilter #securityvulnerability
PGMiner, Innovative Monero-Mining Botnet, Surprises Researchers - The malware takes aim at PostgreSQL database servers with never-before-seen techniques. https://threatpost.com/pgminer-monero-mining-botnet/162209/ #securityvulnerability #remotecodeexecution #vulnerabilities #databaseservers #malwareanalysis #cloudsecurity #cve-2019-9193 #cryptomining #postgresql #paloalto #malware #pgminer #botnet #monero #unit42 #linux #rce
#rce #linux #unit42 #monero #botnet #pgminer #malware #paloalto #postgresql #cryptomining #cve #cloudsecurity #malwareanalysis #databaseservers #vulnerabilities #remotecodeexecution #securityvulnerability
Critical, Unpatched Bug Opens GE Radiological Devices to Remote Code Execution - A CISA alert is flagging a critical default credentials issue that affects 100+ types of devices f... https://threatpost.com/critical-unpatched-bug-ge-radiological-devices/162012/ #criticalinfrastructure #securityvulnerability #radiologicaldevices #remotecodeexecution #defaultcredentials #vulnerabilities #devicesecurity #medicaldevices #medicalimaging #gehealthcare #mrimachines #healthcare #cisaalert #privacy
#privacy #cisaalert #healthcare #mrimachines #gehealthcare #medicalimaging #medicaldevices #devicesecurity #vulnerabilities #defaultcredentials #remotecodeexecution #radiologicaldevices #securityvulnerability #criticalinfrastructure
VMware Rolls a Fix for Formerly Critical Zero-Day Bug - VMware has issued a full patch and revised the severity level of the NSA-reported vulnerability to... https://threatpost.com/vmware-fix-critical-zero-day-bug/161896/ #securityvulnerability #privilegeescalation #commandinjection #securityadvisory #vulnerabilities #severityrating #cve-2020-4006 #cybersecurity #workaround #cisaalert #critical #zeroday #vmware #patch #nsa
#nsa #patch #vmware #zeroday #critical #cisaalert #workaround #cybersecurity #cve #severityrating #vulnerabilities #securityadvisory #commandinjection #privilegeescalation #securityvulnerability
Cayman Islands Bank Records Exposed in Open Azure Blob - An offshore Cayman Islands bank’s backups, covering a $500 million investment portfolio, were left... https://threatpost.com/cayman-islands-bank-records-exposed-azure-blob/161729/ #cloudmisconfiguration #securityvulnerability #personalinformation #microsoftazureblob #amazonawss3bucket #vulnerabilities #offshorebanking #investmentfirm #cloudsecurity #caymanislands #azureblob #dataleak #privacy #breach
#breach #privacy #dataleak #azureblob #caymanislands #cloudsecurity #investmentfirm #offshorebanking #vulnerabilities #amazonawss3bucket #microsoftazureblob #personalinformation #securityvulnerability #cloudmisconfiguration
Blackrota Golang Backdoor Packs Heavy Obfuscation Punch - Blackrota is targeting a security bug in Docker, but is nearly impossible to reverse-analyze. https://threatpost.com/blackrota-golang-backdoor-obfuscation/161544/ #securityvulnerability #unauthorizedaccess #dockerremoteapi #ekansransomware #reverseanalysis #obfuscation #dockerflaw #golanguage #gobfuscate #blackrota #backdoor #honeypot #malware #golang #snake #elf
#elf #snake #golang #malware #honeypot #backdoor #blackrota #gobfuscate #golanguage #dockerflaw #obfuscation #reverseanalysis #ekansransomware #dockerremoteapi #unauthorizedaccess #securityvulnerability
Critical VMware Zero-Day Bug Allows Command Injection; Patch Pending - VMware explained it has no patch for a critical escalation-of-privileges bug that impacts both Win... https://threatpost.com/vmware-zero-day-patch-pending/161523/ #vmwareworkspaceoneaccess #securityvulnerability #vmwareidentitymanager #privilegeescalation #commandinjection #vulnerabilities #vmwarezero-day #cloudsecurity #cve-2020-4006 #zero-day #0-day
#zero #cve #cloudsecurity #vmwarezero #vulnerabilities #commandinjection #privilegeescalation #vmwareidentitymanager #securityvulnerability #vmwareworkspaceoneaccess
German COVID-19 Contact-Tracing Vulnerability Allowed RCE - Bug hunters at GitHub Security Labs help shore up German contact tracing app security, crediting o... https://threatpost.com/german-covid-19-contact-tracing-vulnerability-rce/161419/ #securityvulnerability #remotecodeexecution #javabeanvalidation #contacttracingapp #vulnerabilities #contacttracing #coronawarnapp #websecurity #dataprivacy #opensource #bughunter #covid-19 #germany #rceflaw #github #cwa
#cwa #github #rceflaw #germany #covid #bughunter #opensource #dataprivacy #websecurity #CoronaWarnApp #contacttracing #vulnerabilities #ContactTracingApp #javabeanvalidation #remotecodeexecution #securityvulnerability
GO SMS Pro Android App Exposes Private Photos, Videos and Messages - The vulnerable version of the app, which has 100 million users, uses easily predictable URLs to li... https://threatpost.com/go-sms-pro-android-app-exposes-private-photos/161407/ #informationdisclosure #securityvulnerability #mediacontentexposure #trustwavespiderlabs #mobilemessagingapp #vulnerabilities #predictableurls #mobilesecurity #privatephotos #websecurity #googleplay #gosmspro #privacy #android #patch
#patch #android #privacy #gosmspro #googleplay #websecurity #privatephotos #mobilesecurity #predictableurls #vulnerabilities #mobilemessagingapp #trustwavespiderlabs #mediacontentexposure #securityvulnerability #informationdisclosure
Dating Site Bumble Leaves Swipes Unsecured for 100M Users - Bumble fumble: An API bug exposed personal information of users like political leanings, astrologi... https://threatpost.com/dating-site-bumble-swipes-unsecured-100m-users/161276/ #securityvulnerability #informationexposure #personalinformation #vulnerabilities #mobilesecurity #bumbleboost #datingsite #swiperight #thebeeline #datingapp #hackerone #privacy #apibug #bumble
#bumble #apibug #privacy #hackerone #datingapp #thebeeline #swiperight #datingsite #bumbleboost #mobilesecurity #vulnerabilities #personalinformation #informationexposure #securityvulnerability