You are here |
eligrey.com | ||
| | | |
malgregator.com
|
|
| | | | Dutch security researcher Victor Gevers found misconfigured MongoDB database containing facial recognition and other sensitive information about the Uyghur Muslim minority in China. Looks like the company behind the database is Chinese surveillance company SenseNets. | |
| | | |
www.wiz.io
|
|
| | | | The Wiz Research team dives into CVE-2023-4863 and CVE-2023-5217, two critical vulnerabilities in libwebp and libvpx, and offers actions security teams can take | |
| | | |
m417z.com
|
|
| | | | This is a write-up of a vulnerability that I discovered in Windows. The vulnerability was patched in Decembers Patch Tuesday, and the CVE assigned to it is CVE-2023-36003. The vulnerability allows a non-elevated process to inject a DLL into an elevated or otherwise inaccessible process, allowing for privilege escalation. The vulnerability is caused by a lack of security checks in the InitializeXamlDiagnosticsEx API, which is used for inspecting applications that use Extensible Application Markup Language... | |
| | | |
www.runzero.com
|
|
| | Microsoft disclosed multiple vulnerabilities in their RDS product that allows for remote code execution. Here's how to find affected services on your... |