Security
Headlines
HeadlinesLatestCVEs

Tag

#mac

CVE-2022-31190

DSpace open source software is a repository application which provides durable access to digital resources. dspace-xmlui is a UI component for DSpace. In affected versions metadata on a withdrawn Item is exposed via the XMLUI "mets.xml" object, as long as you know the handle/URL of the withdrawn Item. This vulnerability only impacts the XMLUI. Users are advised to upgrade to version 6.4 or newer.

CVE
#vulnerability#web#mac#js#git
Credential Canaries Create Minefield for Attackers

Canary tokens — also known as honey tokens — force attackers to second-guess their potential good fortune when they come across user and application secrets.

Millions of Arris routers are vulnerable to path traversal attacks

A researcher has found a serious vulnerability in the muhttpd webserver that is used in millions of routers and modems. A patch is available but ISPs are often slow to push out firmware updates. The post Millions of Arris routers are vulnerable to path traversal attacks appeared first on Malwarebytes Labs.

Wrestling star Mick Foley’s Twitter compromised, selling PS5 consoles

We take a look at some very peculiar tweets from wrestling legend Mick Foley, who claims to have PS5 consoles for sale. The post Wrestling star Mick Foley’s Twitter compromised, selling PS5 consoles appeared first on Malwarebytes Labs.

Wrestling star Mick Foley's Twitter compromised, selling PS5 consoles

Categories: Scams Tags: charity Tags: compromised Tags: hijack Tags: security Tags: twitter We take a look at some very peculiar tweets from wrestling legend Mick Foley, who claims to have PS5 consoles for sale. (Read more...) The post Wrestling star Mick Foley's Twitter compromised, selling PS5 consoles appeared first on Malwarebytes Labs.

Millions of Arris routers are vulnerable to path traversal attacks

Categories: Exploits and vulnerabilities A researcher has found a serious vulnerability in the muhttpd webserver that is used in millions of routers and modems. A patch is available but ISPs are often slow to push out firmware updates. (Read more...) The post Millions of Arris routers are vulnerable to path traversal attacks appeared first on Malwarebytes Labs.

Have we lost the fight for data privacy? Lock and Code S03E16

This week on Lock and Code, we talk with some of the team behind Malwarebytes Labs about whether we've lost the fight for data privacy. The post Have we lost the fight for data privacy? Lock and Code S03E16 appeared first on Malwarebytes Labs.

Omnia MPX 1.5.0+r1 Path Traversal

Omnia MPX version 1.5.0+r1 suffers from a path traversal vulnerability.

WordPress SeatReg 1.23.0 Open Redirect

WordPress SeatReg plugin version 1.23.0 suffers from an open redirection vulnerability.

Have we lost the fight for data privacy? Lock and Code S03E16

Categories: Podcast Tags: Data privacy Tags: facebook Tags: Google Tags: lock and code Tags: lock and code podcast Tags: malwarebytes labs Tags: podcast This week on Lock and Code, we talk with some of the team behind Malwarebytes Labs about whether we've lost the fight for data privacy. (Read more...) The post Have we lost the fight for data privacy? Lock and Code S03E16 appeared first on Malwarebytes Labs.