Security
Headlines
HeadlinesLatestCVEs

Tag

#apple

CVE-2022-3148: XSS at app.diagrams.net in drawio

Cross-site Scripting (XSS) - Generic in GitHub repository jgraph/drawio prior to 20.3.0.

CVE
#xss#web#windows#apple#git#chrome#webkit
Apple’s Killing the Password. Here’s Everything You Need to Know

With iOS 16 and macOS Ventura, Apple is introducing passkeys—a more convenient and secure alternative to passwords.

CVE-2022-36539: ‎Eigen&Wijzer Ouderapp

WeDayCare B.V Ouderapp before v1.1.22 allows attackers to alter the ID value within intercepted calls to gain access to data of other parents and children.

FE File Explorer 11.0.4 Local File Inclusion

FE File Explorer version 11.0.4 suffers from a local file inclusion vulnerability.

FTPManager 8.2 Local File Inclusion / Directory Traversal

FTPManager version 8.2 suffers from local file inclusion and directory traversal vulnerabilities.

CVE-2022-35513: Releases · todbot/Blink1Control2

The Blink1Control2 application <= 2.2.7 uses weak password encryption and an insecure method of storage.

The 3 Fundamentals of Building an Effective IoMT Security Strategy

The high stakes and unique priorities for Internet of Medical Things devices require specialized cybersecurity strategies.

Wifi HD Wireless Disk Drive 11 Local File Inclusion

Wifi HD Wireless Disk Drive version 11 suffers from a local file inclusion vulnerability.

EvilProxy Commodifies Reverse-Proxy Tactic for Phishing, Bypassing 2FA

The phishing-as-a-service offering targets accounts from tech giants, and also has connections to PyPI phishing and the Twilio supply chain attack.

The Lessons to Learn from Nomad Crypto Hack

By Owais Sultan Nomad Crypto incident was reported in August 2022 in which $190 million were stolen in a series of hacks. This is a post from HackRead.com Read the original post: The Lessons to Learn from Nomad Crypto Hack