Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
axsharma
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
9 ms
·
31.
▲
by
axsharma
6y ago
Anyone know if any of the repositories or source code/commits were altered as a result of this?
32.
▲
PyPI, Gitlab spammed with garbage content this weekend
(zdnet.com)
1 points
by
axsharma
6y ago
|
0 comments
33.
▲
by
axsharma
6y ago
Added more information to the article from both Signal and the researchers.
34.
▲
by
axsharma
6y ago
Internally tracked as CVE-2020-13959.
35.
▲
by
axsharma
6y ago
Earlier this week a hacker claimed to sell data of 1.3 million Hyundai Russia customers on a forum. The sample records link customers' personal information to vehicle data (e.g. VINs).
36.
▲
by
axsharma
6y ago
Danger. Accessing c:\:$i30:$bitmap will corrupt your NTFS drive MFT on Windows 10
37.
▲
by
axsharma
6y ago
"At this point, our only concern is informing the affected users. Particularly, Aubrey Cottle A.K.A. Kirtaner had noted that if it was this easy to obtain the data, threat actors likely already have the data," Sakura Samurai co-fo
38.
▲
by
axsharma
6y ago
The Proof of Concept (PoC) exploits posted by the researcher show how CVE-2021-3007 can be exploited to gain remote code execution (RCE) on vulnerable PHP applications built with Zend Framework aka Laminas.
39.
▲
by
axsharma
6y ago
The exploit has been publicly known since 2019 but remains unpatched.
40.
▲
by
axsharma
6y ago
"On 16th December Amey became aware of a complex IT security incident during which a portion of our data was compromised. We have reported the incident to the Information Commissioner’s Office, the National Centre for Cyber Security, a
41.
▲
by
axsharma
6y ago
The Golang malware breaches Windows, Linux servers and exploits popular vulnerabilities such as a critical RCE in Oracle WebLogic, CVE-2020-14882.
42.
▲
by
axsharma
6y ago
Kaggle, an online community of data scientists and machine learning practitioners has been exposing private competition data in a breach due to a misconfigured API.
43.
▲
by
axsharma
6y ago
The leaked database dump contains ICCID, SIM PUK code, authentication hashes, and customer PII that can be used in SIM swapping attacks and for bypassing 2FA (such as in online banking).
44.
▲
by
axsharma
6y ago
Multiple researchers have linked this strain to MuddyWater (aka SeedWorm and TEMP.Zagros), a government-backed advanced persistent threat (APT) group, first observed in 2017 while mainly targeting Middle Eastern entities.
45.
▲
by
axsharma
6y ago
QR codes lead to public URLs that contain an enumerable report ID field, making it possible for an attacker to scrape all COVID-19 test reports for virtually any passenger.
46.
▲
American Bank Systems sued for not timely disclosing ransomware attack
(securityreport.com)
2 points
by
axsharma
6y ago
|
1 comments
47.
▲
by
axsharma
6y ago
related to https://news.ycombinator.com/item?id=25091717
48.
▲
Bouncy Castle cryptography bug enables easy password brute-force and auth bypass
(bleepingcomputer.com)
15 points
by
axsharma
6y ago
|
0 comments
49.
▲
WordPerss Contact Form 7 plugin with 5M installs has a critical vulnerability
(bleepingcomputer.com)
3 points
by
axsharma
6y ago
|
0 comments
50.
▲
Critical Golang vulnerabilities revealed;SAML authentication bypass possible
(bleepingcomputer.com)
1 points
by
axsharma
6y ago
|
0 comments
51.
▲
DHS-CISA urges admins to patch severe OpenSSL DoS vulnerability
(bleepingcomputer.com)
4 points
by
axsharma
6y ago
|
0 comments
52.
▲
Foxconn electronics giant hit by ransomware, $34M ransom
(bleepingcomputer.com)
3 points
by
axsharma
6y ago
|
0 comments
53.
▲
by
axsharma
6y ago
Still not sure if this person/community is also behind the one in Romania, they've only suggested Utah and Cali via pics. https://www.bleepingcomputer.com/news/technology/monolith-my...
54.
▲
Source code used by Central Banks and Stock Exchanges leaked online
(securityreport.com)
2 points
by
axsharma
6y ago
|
0 comments
55.
▲
CBS Last.fm leaked admin creds via Symfony Profiler logs
(bleepingcomputer.com)
2 points
by
axsharma
6y ago
|
0 comments
56.
▲
Steam gaming Windows privilege escalation attacks from writable install folder
(securityreport.com)
1 points
by
axsharma
6y ago
|
1 comments
57.
▲
by
axsharma
6y ago
Steam gaming platform creates world-writable installation directories that can make it easy for malware and malicious actors to escalate privileges and gain persistence on Windows PCs.
58.
▲
Passwords exposed for 50k Fortinet VPNs including govt orgs and banks
(bleepingcomputer.com)
3 points
by
axsharma
6y ago
|
1 comments
59.
▲
by
axsharma
6y ago
The gift that keeps on giving, from exploits to full usernames and passwords.
60.
▲
50k FortiNet VPNs vulnerable to critical flaw, including gov and banks
(bleepingcomputer.com)
1 points
by
axsharma
6y ago
|
0 comments
More ›