Unit 42 details Screening Serpens’ use of AppDomainManager hijacking and new RAT variants to target tech and...
Vendor Advisories
This category highlights official security advisories and bulletins from vendors, including patch notices, product-specific vulnerabilities, remediation guidance, and important updates affecting supported technologies and platforms.
Open-source framework ROADtools is being misused by threat actors for cloud intrusions. Learn how to identify its...
https://security-tracker.debian.org/tracker/DSA-6290-1
https://security-tracker.debian.org/tracker/DSA-6289-1
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Progress Software Kemp LoadMaster....
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Progress Software Kemp LoadMaster....
It was discovered that PostgreSQL did not correctly enforce authorization for CREATE TYPE. An attacker could possibly...
Vitaly Simonovich discovered that Bind could exhaust memory during GSS-API TKEY negotiation. A remote attacker could possibly...
High Severity Description Open ISES Tickets before 3.44.2 disables TLS certificate verification in rm/incs/mobile_login.inc.php by setting CURLOPT_SSL_VERIFYPEER...
High Severity Description Authen::TOTP versions before 0.1.1 for Perl generate secrets using rand. Secrets were generated using...
