Il Blog di Michele Pinassi – Telegram
Il Blog di Michele Pinassi
311 subscribers
364 photos
16 videos
118 files
8.16K links
Parliamo di tecnologia, politica e cybersecurity.

Post automatici e rassegna personale.
Download Telegram
Aggiornamenti per Ruby-SAML
(AL05/240918/CSIRT-ITA)

Rilevata vulnerabilità – già risolta dal vendor – che interessa la libreria ruby-saml del noto linguaggio di programmazione Ruby, tipicamente utilizzata per implementare le modalità di autorizzazione SAML lato client. Tale vulnerabilità, qualora sfruttata, potrebbe consentire, a un attaccante non autenticato, di bypassare i meccanismi di sicurezza e accedere al [...]

by CSIRT - https://r.zerozone.it/post/3Th27VbZF9U0Ckfb1
"The 15 min City platform lets you explore how much worldwide cities are close to this ideal, by merging open data about venues within cities, population grids and routing algorithms. With 15 min City, you can check which activities or places are accessible to a neighbourhood on foot and by bike, and compare it to other urban areas. You can also check which city is the closest to the 15 minutes ideal looking at our city rankings in the map. In the following we address the main tools that are present in the platform."

https://whatif.sonycsl.it/15mincity/15mincity.php
🏴‍☠️ Qilin has just published a new victim: agricola
For over half a century we offer our buyers and customers quality products and responsible services, with professionalism. The company refuses to pay, tomorrow we will post the data of the company.

by Ransomware live - https://r.zerozone.it/post/NzmdDaSFZAbZE1nNw
🏴‍☠️ Ransomhub has just published a new victim: www.plumbersstock.com
PlumbersStock is an online retailer specializing in plumbing, HVAC, and irrigation supplies. It offers a wide range of products including faucets, toilets, pipe fittings, and tools from leading brands. The company caters to both homeowners and professionals, providing quality products at competitive prices with a focus on customer service and [...]

by Ransomware live - https://r.zerozone.it/post/wbaS72PvfpJ8rFKYp
🏴‍☠️ Ransomhub has just published a new victim: www.quenotedeporten.com
www.quenotedeporten.com is a company specializing in the delivery of personalized gift experiences. They offer a wide range of unique and memorable gifts, including adventure activities, gourmet experiences, and wellness packages. The company focuses on creating lasting memories through tailored experiences, ensuring that each gift is special and unforgettable.

by Ransomware live - https://r.zerozone.it/post/j9msXv4PcXthgFVDs
Sanata vulnerabilità su GitLab CE/EE
(AL04/240918/CSIRT-ITA)

Rilasciati aggiornamenti di sicurezza che risolvono una vulnerabilità con gravità “critica” in GitLab Community Edition (CE) ed Enterprise Edition (EE).

by CSIRT - https://r.zerozone.it/post/HVRVQBegfVUTgrEhA
🏴‍☠️ Medusa has just published a new victim: Compass Group
Compass Group is Australia’s largest food and support services company driving. Compass Group Australia corporate office is located in 35-51 Mitchell St, Mcmahons Point, New South Wales, 2060, Australia and has 13,000 employees. The total amount of data leakage is 785.5 GB

by Ransomware live - https://r.zerozone.it/post/3pUPBHTMkMCcUFsJH
🏴‍☠️ Medusa has just published a new victim: AZPIRED
AZPIRED is outsourcing service center with a number of locations in the Philippines, three offices in Cebu and Cagayan De Oro City. Azpired corporate office is located in 12260 Trail Spring Ct, Las Vegas, Nevada, 89138, United States and has 124 employees. The total amount of data leakage is 205.70 [...]

by Ransomware live - https://r.zerozone.it/post/Z1J0N95e6JJydc80y
🏴‍☠️ Handala has just published a new victim: IIB ( Israeli Industrial Batteries )
Handala Hacked IIB ( Israeli Industrial Batteries ) IIB is one of the companies affiliated to the Ministry of Defense of the regime, which is responsible for the design and production of many vital energy storage infrastructures for the military and defense industries of the Zionist regime, such as radars, [...]

by Ransomware live - https://r.zerozone.it/post/bgzFp8mGje6wNe3JE
🏴‍☠️ Qilin has just published a new victim: Bertelkamp Automation
Bertelkamp Automation, Inc. (BAI) is a leading Industrial Automation Solutions provider in the Southeastern United States. For more than 40 years, we have provided our customers with solutions that have increased their efficiency and producti ...

by Ransomware live - https://r.zerozone.it/post/0tCuHhFRNrJTVzuJy
🏴‍☠️ Medusa has just published a new victim: Providence Public School Department
The Providence Public School Department is the administrative force behind the primary public school district of Providence, Rhode Island. It serves about 21,700 students in pre-K through 12th grade. It has 21 elementary schools, seven middle schools and nine high schools, along with two public charter schools. The total amount [...]

by Ransomware live - https://r.zerozone.it/post/Z7MPVMW43kX3dxzqQ
Lumma Stealer diffuso tramite notifica di falsa vulnerabilità di sicurezza sul proprio progetto GitHub
In queste ore molti utenti di GitHub stanno ricevendo un'email allarmante con il titolo "IMPORTANT! Security Vulnerability Detected in your Repository (Issue #1)". Il messaggio, apparentemente inviato dal "GitHub Security Team", avvisa i destinatari di una presunta vulnerabilità di sicurezza nei loro repository e invita a contattare un link sospetto.

by CERT-AgID - https://r.zerozone.it/post/0TPbtg1qgqf3uzrvK
🏴‍☠️ Handala has just published a new victim: Vidisco
Handala Hacked Vidisco Vidisco is an Israeli based developer and manufacturer of portable digital X-ray inspection systems. This company is affiliated with the 8200 unit of the regime and now 84% of airports in the world use the products of this company in their security gates. Basically, Mossad passes through [...]

by Ransomware live - https://r.zerozone.it/post/2nvEgm0sz4WmX2036