News

NCERT has warned Pakistani enterprises of a S/4HANA vulnerability that can inject a malicious ABAP code via RFC.
While community-hosted servers are a lot of fun, they also provide for a rather large security attack surface, as players could connect to any number of malicious servers unwittingly.
Info-Stealing from the Orion Database The second bug (CVE-2021-25275) was also found in the SolarWinds Orion framework. It allows unprivileged users who can log in locally or via Remote Desktop ...
An ASP.NET feature, ViewState stores the state of a webpage in a hidden HTML field, for persistence. Attackers can target the ...
A double-free bug could allow an attacker to achieve remote code execution; users encouraged to update to patched version of messaging app.
This week a zero-day vBulletin remote code execution vulnerability and exploit was publicly disclosed and is being used by bad actors to attack vBulletin forums.
Open-source credential management systems HashiCorp Vault and CyberArk Conjur had flaws enabled remote code execution among other attacks.
Researchers have discovered a method that could potentially enable an attacker to use the Spectre CPU vulnerabilities over a remote network connection.
Many hosts running popular open-source email service Exim are still open to a remote code execution bug.