Security
Headlines
HeadlinesLatestCVEs

Tag

#windows

G And G Corporate CMS 1.0 Cross Site Scripting

G and G Corporate CMS version 1.0 suffers from a cross site scripting vulnerability.

Packet Storm
#sql#xss#csrf#vulnerability#web#ios#mac#windows#apple#google#ubuntu#linux#debian#cisco#java#php#perl#auth#ruby#firefox
Forum Fire Soft Board 0.3.0 Cross Site Scripting

Forum Fire Soft Board version 0.3.0 suffers from a cross site scripting vulnerability.

Forma LMS 1.4 Database Disclosure

Forma LMS version 1.4 suffers from a database disclosure vulnerability.

Foodiee CMS 1.0.1 Insecure Direct Object Reference

Foodiee CMS version 1.0.1 suffers from an insecure direct object reference vulnerability.

Foodiee Online Food Ordering Web Application 1.0.0 Insecure Settings

Foodiee Online Food Ordering Web Application version 1.0.0 suffers from an ignored default credential vulnerability.

FlightPath LMS 4.8.2 Cross Site Scripting

FlightPath LMS version 4.8.2 suffers from a cross site scripting vulnerability.

FixBook Repair Shop Management Tool 3.0 Hash Disclosure

FixBook Repair Shop Management Tool version 3.0 suffers from an information leakage vulnerability.

DarkGate reloaded via malvertising and SEO poisoning campaigns

Categories: Threat Intelligence Tags: darkgate Tags: autoit Tags: malvertising Tags: seo poisoning The new version of the DarkGate malware is currently actively being distributed via malspam, malicious ads and SEO poisoning. (Read more...) The post DarkGate reloaded via malvertising and SEO poisoning campaigns appeared first on Malwarebytes Labs.

Syrian Threat Actor EVLF Unmasked as Creator of CypherRAT and CraxsRAT Android Malware

A Syrian threat actor named EVLF has been outed as the creator of malware families CypherRAT and CraxsRAT. "These RATs are designed to allow an attacker to remotely perform real-time actions and control the victim device's camera, location, and microphone," Cybersecurity firm Cyfirma said in a report published last week. CypherRAT and CraxsRAT are said to be offered to other cybercriminals as