Aggregator
敲敲成为更好的自己:快来组队打卡
1 year 8 months ago
这是我们的另一个“反人性”的小实验,想试试,是不是有好玩一点的习惯养成方式,解决我们自己的问题。
这是个 App 名叫“敲敲”,主角还是这只木鱼猫,还是佛系地敲着木鱼,Slogon 是:敲敲成为更好的自己(也是:悄悄成为更好的自己)。
Маятник против квантов: новая теория объяснила сбои в работе кубитов
1 year 8 months ago
Новое объяснение двухдесятилетней проблемы сверхпроводников.
Four REvil Ransomware Members Sentenced in Rare Russian Cybercrime Convictions
1 year 8 months ago
Four members of the now-defunct REvil ransomware operation have been sentenced to several years in prison in Russia, marking one of the rare instances where cybercriminals from the country have been convicted of hacking and money laundering charges.
Russian news publication Kommersant reported that a court in St. Petersburg found Artem Zaets, Alexei Malozemov, Daniil Puzyrevsky, and Ruslan
The Hacker News
CVE-2024-9933 | WatchTowerHQ Plugin up to 3.9.6 on WordPress improper authentication
1 year 8 months ago
A vulnerability classified as critical was found in WatchTowerHQ Plugin up to 3.9.6 on WordPress. This vulnerability affects unknown code. The manipulation leads to improper authentication.
This vulnerability was named CVE-2024-9933. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-9931 | Wux Blog Editor Plugin up to 3.0.0 on WordPress improper authentication
1 year 8 months ago
A vulnerability, which was classified as critical, has been found in Wux Blog Editor Plugin up to 3.0.0 on WordPress. This issue affects some unknown processing. The manipulation leads to improper authentication.
The identification of this vulnerability is CVE-2024-9931. The attack may be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-10092 | Download Monitor Plugin up to 5.0.12 on WordPress API Key authorization
1 year 8 months ago
A vulnerability was found in Download Monitor Plugin up to 5.0.12 on WordPress and classified as problematic. Affected by this issue is some unknown functionality of the component API Key Handler. The manipulation leads to missing authorization.
This vulnerability is handled as CVE-2024-10092. The attack may be launched remotely. There is no exploit available.
vuldb.com
河南两公司违反《数据安全法》被罚10万元
1 year 8 months ago
网络面板-在线流量消耗器
1 year 8 months ago
网络面板介绍
网络面板 (NetworkPanel) 是一个在线流量消耗器,可以测试你的网速,监测你的网络环境,提供丰富测试节点,并且长期维护更新,支持国内外多运营商测速节点,提供测速图表等等数...
黑海洋
Хакеры vs Минюст США: $20 млн похищены и возвращены за 24 часа
1 year 8 months ago
Инцидент показал слабые места в защите активов США.
CVE-2016-1000031 | Oracle Enterprise Data Quality 11.1.1.9.0 General access control (ID 316356 / BID-93604)
1 year 8 months ago
A vulnerability was found in Oracle Enterprise Data Quality 11.1.1.9.0. It has been rated as very critical. This issue affects some unknown processing of the component General. The manipulation leads to improper access controls.
The identification of this vulnerability is CVE-2016-1000031. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
豆包MarsCode AI 红人共创计划启动,参与活动拿万元现金激励等你来!
1 year 8 months ago
豆包MarsCode AI 红人共创计划启动,参与活动拿 5w元现金激励!启动仪式直播间还有多重好礼等你拿!
CVE-2024-9475 | Poll Maker Plugin up to 5.4.6 on WordPress Order_by sql injection
1 year 8 months ago
A vulnerability classified as critical was found in Poll Maker Plugin up to 5.4.6 on WordPress. This vulnerability affects unknown code. The manipulation of the argument Order_by leads to sql injection.
This vulnerability was named CVE-2024-9475. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-48579 | Best House Rental Management System 1.0 Login username sql injection
1 year 8 months ago
A vulnerability was found in Best House Rental Management System 1.0. It has been rated as critical. This issue affects some unknown processing of the component Login. The manipulation of the argument username leads to sql injection.
The identification of this vulnerability is CVE-2024-48579. The attack may be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-48580 | Best Courier Management System 1.0 Login email sql injection
1 year 8 months ago
A vulnerability classified as critical was found in Best Courier Management System 1.0. Affected by this vulnerability is an unknown functionality of the component Login. The manipulation of the argument email leads to sql injection.
This vulnerability is known as CVE-2024-48580. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-9930 | HocWP Extensions Plugin up to 0.2.3.2 on WordPress improper authentication
1 year 8 months ago
A vulnerability was found in HocWP Extensions Plugin up to 0.2.3.2 on WordPress. It has been declared as critical. Affected by this vulnerability is an unknown functionality. The manipulation leads to improper authentication.
This vulnerability is known as CVE-2024-9930. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-9626 | Sovrn Editorial Assistant Plugin up to 1.3.3 on WordPress Attachment Upload authorization
1 year 8 months ago
A vulnerability, which was classified as critical, was found in Sovrn Editorial Assistant Plugin up to 1.3.3 on WordPress. Affected is an unknown function of the component Attachment Upload Handler. The manipulation leads to missing authorization.
This vulnerability is traded as CVE-2024-9626. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
CVE-2024-9890 | User Toolkit Plugin up to 1.2.3 on WordPress improper authentication
1 year 8 months ago
A vulnerability has been found in User Toolkit Plugin up to 1.2.3 on WordPress and classified as critical. Affected by this vulnerability is an unknown functionality. The manipulation leads to improper authentication.
This vulnerability is known as CVE-2024-9890. The attack can be launched remotely. There is no exploit available.
vuldb.com
一周全球重大网络安全事件速递(第四十三期)
1 year 8 months ago
勒索软件攻击残疾人非营利组织,UnitedHealth被盗1亿个数据……
物竞天择,进化版银狐全链路攻击三部曲(下篇)
1 year 8 months ago
银狐家族主要目标是窃取个人和财务信息,这些数据可能被用于网络诈骗和身份盗窃等非法活动。此次发现的银狐家族在公开的银狐家族中属于比较突出的存在,其还包含利用受害者设备进行挖矿获利。天擎客户无需太担心,目前天擎已支持对该家族的全面查杀和拦截。