CVE-2025-24016: Unsafe Deserialization Vulnerability in Wazuh Leading to Remote Code Execution
https://ift.tt/0ezhAMy
Submitted March 17, 2025 at 04:13PM by amitschenedel
via reddit https://ift.tt/Jg2A0r9
https://ift.tt/0ezhAMy
Submitted March 17, 2025 at 04:13PM by amitschenedel
via reddit https://ift.tt/Jg2A0r9
Daily CVE Reports
CVE-2025-24016: Unsafe Deserialization Vulnerability in Wazuh Leading to Remote Code Execution
Deep dive into CVE-2025-24016 a critical remote code execution (RCE) vulnerability affecting Wazuh, a widely used open-source SIEM platform.
[Tool] TruffleShow: A Client-Side Web Viewer for TruffleHog Outputs
https://ift.tt/lM38u9z
Submitted March 17, 2025 at 06:47PM by pelesenk
via reddit https://ift.tt/MGxbYWh
https://ift.tt/lM38u9z
Submitted March 17, 2025 at 06:47PM by pelesenk
via reddit https://ift.tt/MGxbYWh
Bypassing Authentication Like It’s The ‘90s - Pre-Auth RCE Chain(s) in Kentico Xperience CMS - watchTowr Labs
https://ift.tt/Ec0sBNC
Submitted March 17, 2025 at 05:55PM by dx7r__
via reddit https://ift.tt/4ujiMQw
https://ift.tt/Ec0sBNC
Submitted March 17, 2025 at 05:55PM by dx7r__
via reddit https://ift.tt/4ujiMQw
watchTowr Labs
Bypassing Authentication Like It’s The ‘90s - Pre-Auth RCE Chain(s) in Kentico Xperience CMS
I recently joined watchTowr, and it is, therefore, time - time for my first watchTowr Labs blogpost, previously teased in a tweet of a pre-auth RCE chain affecting some ‘unknown software’.
Joining the team, I wanted to maintain the trail of destruction left…
Joining the team, I wanted to maintain the trail of destruction left…
SAMLStorm: Critical Authentication Bypass in xml-crypto and Node.js libraries
https://ift.tt/9VWJjKi
Submitted March 17, 2025 at 07:03PM by Smooth-Loquat-4954
via reddit https://ift.tt/L3cKYNP
https://ift.tt/9VWJjKi
Submitted March 17, 2025 at 07:03PM by Smooth-Loquat-4954
via reddit https://ift.tt/L3cKYNP
Workos
SAMLStorm: Critical Authentication Bypass in xml-crypto and Node.js libraries — WorkOS
Any service using xml-crypto or a Node.js SAML implementation using it, should update immediately to the latest version. WorkOS customers are safe and were not impacted.
Is AI actually helping with burnout in security, or just adding to the chaos
https://ift.tt/sZ7A4u0
Submitted March 18, 2025 at 02:33AM by Low_Fly_5338
via reddit https://ift.tt/oa3sVjd
https://ift.tt/sZ7A4u0
Submitted March 18, 2025 at 02:33AM by Low_Fly_5338
via reddit https://ift.tt/oa3sVjd
SecurityInfoWatch
Can strategic AI deployment reduce cybersecurity burnout?
Company-wide visibility and advocacy along with a pragmatic approach will set up security teams for success.
Arbitrary File Write CVE-2024-0402 in GitLab (Exploit)
https://ift.tt/hdGlDBt
Submitted March 18, 2025 at 06:38PM by nibblesec
via reddit https://ift.tt/vl8KdCh
https://ift.tt/hdGlDBt
Submitted March 18, 2025 at 06:38PM by nibblesec
via reddit https://ift.tt/vl8KdCh
Doyensec
!exploitable Episode Three - Devfile Adventures
I know, we have written it multiple times now, but in case you are just tuning in, Doyensec had found themselves on a cruise ship touring the Mediterranean for our company retreat. To kill time between parties, we had some hacking sessions analyzing real…
Learn how an out-of-bounds write vulnerability in the Linux kernel can be exploited to achieve an LPE (CVE-2025-0927)
https://ift.tt/0QmFjfI
Submitted March 18, 2025 at 06:05PM by SSDisclosure
via reddit https://ift.tt/yhdHRsW
https://ift.tt/0QmFjfI
Submitted March 18, 2025 at 06:05PM by SSDisclosure
via reddit https://ift.tt/yhdHRsW
SSD Secure Disclosure
SSD Advisory - Linux kernel hfsplus slab-out-of-bounds Write - SSD Secure Disclosure
Summary This advisory describes an out-of-bounds write vulnerability in the Linux kernel that achieves local privilege escalation on Ubuntu 22.04 for active user sessions. Credit An independent security researcher working with SSD Secure Disclosure. Vendor…
CEF Debugger Enabled in Google Web Designer | Google Bug Hunters
https://ift.tt/01FPpLG
Submitted March 18, 2025 at 06:52PM by smaury
via reddit https://ift.tt/iZqhjQA
https://ift.tt/01FPpLG
Submitted March 18, 2025 at 06:52PM by smaury
via reddit https://ift.tt/iZqhjQA
Google
CEF Debugger Enabled in Google Web Designer | Google Bug Hunters
Found a security vulnerability? Discover our forms for reporting security issues to Google: for the standard VRP, Google Play, and Play Data Abuse.
Local Privilege Escalation via Unquoted Search Path in Plantronics Hub
https://ift.tt/XNHqAmZ
Submitted March 18, 2025 at 08:10PM by k8pf
via reddit https://ift.tt/Pjlg96W
https://ift.tt/XNHqAmZ
Submitted March 18, 2025 at 08:10PM by k8pf
via reddit https://ift.tt/Pjlg96W
SAML roulette: the hacker always wins
https://ift.tt/TkYQZ7N
Submitted March 18, 2025 at 09:31PM by albinowax
via reddit https://ift.tt/f2OjQVF
https://ift.tt/TkYQZ7N
Submitted March 18, 2025 at 09:31PM by albinowax
via reddit https://ift.tt/f2OjQVF
PortSwigger Research
SAML roulette: the hacker always wins
Introduction In this post, we’ll show precisely how to chain round-trip attacks and namespace confusion to achieve unauthenticated admin access on GitLab Enterprise by exploiting the ruby-saml library
Compromised tj-actions/changed-files GitHub Action: A look at publicly leaked secrets
https://ift.tt/JN1p2Ai
Submitted March 19, 2025 at 12:02AM by mabote
via reddit https://ift.tt/jOvF2m1
https://ift.tt/JN1p2Ai
Submitted March 19, 2025 at 12:02AM by mabote
via reddit https://ift.tt/jOvF2m1
GitGuardian Blog - Take Control of Your Secrets Security
Compromised tj-actions/changed-files GitHub Action: A look at publicly leaked secrets
On March 14, 2025, the popular GitHub action tj-actions/changed-files was compromised, exposing secrets in CI logs. GitGuardian's analysis identified leaked secrets like GitHub tokens, AWS keys, and more.
Linux supply chain attack journey : critical vulnerabilities on multiple distribution build & packaging systems
https://ift.tt/kNxRJAi
Submitted March 19, 2025 at 03:19PM by SzLam__
via reddit https://ift.tt/RDHlAvI
https://ift.tt/kNxRJAi
Submitted March 19, 2025 at 03:19PM by SzLam__
via reddit https://ift.tt/RDHlAvI
Fenrisk
Supply Chain Attacks on Linux distributions - Overview
Security experts
Introducing WEBCAT: Web-based Code Assurance and Transparency
https://ift.tt/BOVAnEM
Submitted March 19, 2025 at 10:37PM by smaury
via reddit https://ift.tt/bgovkUu
https://ift.tt/BOVAnEM
Submitted March 19, 2025 at 10:37PM by smaury
via reddit https://ift.tt/bgovkUu
SecureDrop
Introducing WEBCAT: Web-based Code Assurance and Transparency
In this post, we introduce Web-based Code Assurance and Transparency, a project that supports verifiable in-browser code for single-page browser applications. Along with this post, we are publishing the WEBCAT project repository; follow-up posts will provide…
13 inch Macbook
https://ift.tt/YgSoE8W
Submitted March 20, 2025 at 04:55AM by Cheap_Thing1322
via reddit https://ift.tt/uj93VWE
https://ift.tt/YgSoE8W
Submitted March 20, 2025 at 04:55AM by Cheap_Thing1322
via reddit https://ift.tt/uj93VWE
Apple
MacBook Air 13-inch and MacBook Air 15-inch
MacBook Air laptop with the superfast M4 chip. Built for Apple Intelligence. Lightweight, with all-day battery life. Now in a new Sky Blue color.
By Executive Order, We Are Banning Blacklists - Domain-Level RCE in Veeam Backup & Replication (CVE-2025-23120) - watchTowr Labs
https://ift.tt/WGgYNPA
Submitted March 20, 2025 at 08:24AM by dx7r__
via reddit https://ift.tt/ORnSzg1
https://ift.tt/WGgYNPA
Submitted March 20, 2025 at 08:24AM by dx7r__
via reddit https://ift.tt/ORnSzg1
watchTowr Labs
By Executive Order, We Are Banning Blacklists - Domain-Level RCE in Veeam Backup & Replication (CVE-2025-23120)
It’s us again!
Once again, we hear the collective groans - but we're back and with yet another merciless pwnage of an inspired and clearly comprehensive RCE solution - no, wait, it's another vuln in yet another backup and replication solution..
While we…
Once again, we hear the collective groans - but we're back and with yet another merciless pwnage of an inspired and clearly comprehensive RCE solution - no, wait, it's another vuln in yet another backup and replication solution..
While we…
Orphaned DNS Records & Dangling IPs Still a problem in 2025
https://ift.tt/F8qaPIi
Submitted March 20, 2025 at 06:57PM by Seaerkin2
via reddit https://ift.tt/e3ohMFJ
https://ift.tt/F8qaPIi
Submitted March 20, 2025 at 06:57PM by Seaerkin2
via reddit https://ift.tt/e3ohMFJ
Guardyourdomain
DomainGuard | Threat Visibility Platform
We guard your domain, so you have peace of mind. Threat Visibility Platform.
Shield Your Devices, Secure Your Business: Master Windows Endpoint Security
https://ift.tt/6vzgGLJ
Submitted March 20, 2025 at 06:55PM by Signal_Car_5756
via reddit https://ift.tt/VCjQ6H4
https://ift.tt/6vzgGLJ
Submitted March 20, 2025 at 06:55PM by Signal_Car_5756
via reddit https://ift.tt/VCjQ6H4
Scalefusion
Windows Endpoint Security
Strengthen Windows endpoint security with the all-in-one powerful Scalefusion UEM. Unlock unmatched security with zero trust architecture.
The National Security Case for Email Plus Addressing
https://ift.tt/hQFI8Mg
Submitted March 20, 2025 at 08:22PM by kedmi
via reddit https://ift.tt/Sm7z2tC
https://ift.tt/hQFI8Mg
Submitted March 20, 2025 at 08:22PM by kedmi
via reddit https://ift.tt/Sm7z2tC
Sagi Kedmi
The National Security Case for Email Plus Addressing
How OSINT Exploits Password Recovery Flows to Expose Your Digital Identity
What not to do with on prem virtualization
https://ift.tt/9KEsZm8
Submitted March 21, 2025 at 06:10PM by _kawhl
via reddit https://ift.tt/hmAnjFk
https://ift.tt/9KEsZm8
Submitted March 21, 2025 at 06:10PM by _kawhl
via reddit https://ift.tt/hmAnjFk
therealunicornsecurity.github.io
What not to do with on prem virtualization
Common misconfigurations in on prem VM environments
There's a big problem with browser bookmark security.
https://ift.tt/i9Ytjyb
Submitted March 21, 2025 at 08:17PM by TheThingCreator
via reddit https://ift.tt/K7MQeUs
https://ift.tt/i9Ytjyb
Submitted March 21, 2025 at 08:17PM by TheThingCreator
via reddit https://ift.tt/K7MQeUs
WebCull
The Problem With Browser Bookmark Security - WebCull Blog
Web browsers store bookmarks in plain text, making them vulnerable to malware, unauthorized access, profiling, and potential regulatory risks.
Palo Alto Cortex XDR bypass (CVE-2024-8690)
https://ift.tt/Peay4gi
Submitted March 22, 2025 at 02:24AM by CptWin_NZ
via reddit https://ift.tt/1wtvY0f
https://ift.tt/Peay4gi
Submitted March 22, 2025 at 02:24AM by CptWin_NZ
via reddit https://ift.tt/1wtvY0f
CyberCX
Palo Alto Cortex XDR bypass
Technical details outlining how this Palo Alto vulnerability could be exploited by an Administrator-level user account to disable Cortex XDR.