|
You are here |
www.nodejs-security.com | ||
| | | | |
www.sentinelone.com
|
|
| | | | | Analysis suggests that CVE-2024-3094, a backdoor deliberately planted into XZ Utils, may have been only the first on the threat actor's agenda. | |
| | | | |
hardenedvault.net
|
|
| | | | | Open source platform security | |
| | | | |
snyk.io
|
|
| | | | | On the 29th of March 2024, the high-stakes investment and prolonged campaign to plant a backdoor in the Linux software library liblzma to gain access to multiple operating systems via Linux distributions was carried out by a malicious actor. | |
| | | | |
www.zerodayinitiative.com
|
|
| | | [AI summary] A critical remote code execution vulnerability in SolarWinds Access Rights Manager allows attackers to execute arbitrary code with service account privileges if proper data validation is not enforced. | ||