Discussion
Loading...

#Tag

  • About
  • Code of conduct
  • Privacy
  • Users
  • Instances
  • About Bonfire
heise online boosted
heise Security
@heisec@social.heise.de  ·  activity timestamp 2 days ago

WSUS-Lücke: Bereits Attacken beobachtet

Microsoft hat am Freitagmorgen Notfallupdates für eine WSUS-Sicherheitslücke veröffentlicht. Die wird nun im Internet angegriffen.

https://www.heise.de/news/WSUS-Luecke-Bereits-Attacken-beobachtet-10899799.html?wt_mc=sm.red.ho.mastodon.mastodon.md_beitraege.md_beitraege&utm_source=mastodon

#Cyberangriff #Cybercrime #Exploit #IT #Security #Sicherheitslücken #Updates #news

Security

WSUS-Lücke: Bereits Attacken beobachtet

Microsoft hat am Freitagmorgen Notfallupdates für eine WSUS-Sicherheitslücke veröffentlicht. Die wird nun im Internet angegriffen.
https://social.heise.de/tags/Sicherheitsl%C3%BCcken
  • Copy link
  • Flag this post
  • Block
heise Security
@heisec@social.heise.de  ·  activity timestamp 2 days ago

WSUS-Lücke: Bereits Attacken beobachtet

Microsoft hat am Freitagmorgen Notfallupdates für eine WSUS-Sicherheitslücke veröffentlicht. Die wird nun im Internet angegriffen.

https://www.heise.de/news/WSUS-Luecke-Bereits-Attacken-beobachtet-10899799.html?wt_mc=sm.red.ho.mastodon.mastodon.md_beitraege.md_beitraege&utm_source=mastodon

#Cyberangriff #Cybercrime #Exploit #IT #Security #Sicherheitslücken #Updates #news

Security

WSUS-Lücke: Bereits Attacken beobachtet

Microsoft hat am Freitagmorgen Notfallupdates für eine WSUS-Sicherheitslücke veröffentlicht. Die wird nun im Internet angegriffen.
https://social.heise.de/tags/Sicherheitsl%C3%BCcken
  • Copy link
  • Flag this post
  • Block
jbz
@jbz@indieweb.social  ·  activity timestamp 2 days ago

⚠️ TARmageddon flaw in abandoned Rust library enables RCE attacks

「 Tracked as CVE-2025-62518, this logic flaw results from a desynchronization issue that allows unauthenticated attackers to inject additional archive entries during TAR file extraction 」

https://www.bleepingcomputer.com/news/security/tarmageddon-flaw-in-abandoned-rust-library-enables-rce-attacks/

#rust #rce #exploit #cybersecurity

BleepingComputer

TARmageddon flaw in abandoned Rust library enables RCE attacks

A high-severity vulnerability in the now-abandoned async-tar Rust library and its forks can be exploited to gain remote code execution on systems running unpatched software.
  • Copy link
  • Flag this post
  • Block
jbz
@jbz@indieweb.social  ·  activity timestamp 3 days ago

⚠️ How Minecraft servers can track you across accounts and IPs using resource packs

「 TrackPack has massive implications for anyone who uses multiple Minecraft accounts. It means that even if you switch accounts or IPs, the server can still recognize you via your device’s resource pack cache. Servers can use this to detect ban evasion, alternative accounts etc 」

https://alaggydev.github.io/posts/cytooxien/

#minecraft #exploit #tracking #cybersecurity

Laggy’s Blog

How Minecraft servers can track you across accounts and IPs using resource packs

How we uncovered a device fingerprinting exploit on cytooxien.net and more
  • Copy link
  • Flag this post
  • Block
jbz
@jbz@indieweb.social  ·  activity timestamp 3 days ago

⚠️ Over 75,000 WatchGuard security devices vulnerable to critical RCE

「 Firebox devices act as a central defense hub that controls traffic between internal and external networks, providing protection through policy management, security services, VPN, and real-time real-time visibility through WatchGuard Cloud 」

https://www.bleepingcomputer.com/news/security/over-75-000-watchguard-security-devices-vulnerable-to-critical-rce/

#watchguard #netbox #rce #exploit #cybersecurity #CVE20259242

BleepingComputer

Over 75,000 WatchGuard security devices vulnerable to critical RCE

Nearly 76,000 WatchGuard Firebox network security appliances are exposed on the public web and still vulnerable to a critical issue (CVE-2025-9242) that could allow a remote attacker to execute code without authentication.
  • Copy link
  • Flag this post
  • Block
Stéphane Bortzmeyer
@bortzmeyer@mastodon.gougere.fr  ·  activity timestamp 2 weeks ago

#exploit
Et pendant ce temps, le gouvernement Lecornu 2 a battu le record de durée de Lecornu 1.

  • Copy link
  • Flag this post
  • Block
theruran 💻 🌐 :cereal_killer: boosted
heise online English
@heiseonlineenglish@social.heise.de  ·  activity timestamp 3 months ago

Pwnie Awards 2025: Documented keys, exploit chains and a SignalGate T-shirt

At the hacker conference, several teams won two pwnie awards for their discoveries. And "SignalGate" creator Mike Waltz also received a T-shirt.

https://www.heise.de/en/news/Pwnie-Awards-2025-Documented-keys-exploit-chains-and-a-SignalGate-T-shirt-10517462.html?wt_mc=sm.red.ho.mastodon.mastodon.md_beitraege.md_beitraege&utm_source=mastodon

#Exploit#IT#Security#Sicherheitslücken #news

  • Copy link
  • Flag this post
  • Block
heise online English
@heiseonlineenglish@social.heise.de  ·  activity timestamp 3 months ago

Pwnie Awards 2025: Documented keys, exploit chains and a SignalGate T-shirt

At the hacker conference, several teams won two pwnie awards for their discoveries. And "SignalGate" creator Mike Waltz also received a T-shirt.

https://www.heise.de/en/news/Pwnie-Awards-2025-Documented-keys-exploit-chains-and-a-SignalGate-T-shirt-10517462.html?wt_mc=sm.red.ho.mastodon.mastodon.md_beitraege.md_beitraege&utm_source=mastodon

#Exploit#IT#Security#Sicherheitslücken #news

  • Copy link
  • Flag this post
  • Block
Log in

bonfire.cafe

A space for Bonfire maintainers and contributors to communicate

bonfire.cafe: About · Code of conduct · Privacy · Users · Instances
Bonfire social · 1.0.0-rc.3.21 no JS en
Automatic federation enabled
  • Explore
  • About
  • Members
  • Code of Conduct
Home
Login