Vulnerabilities | News, how-tos, features, reviews, and videos
Attackers can abuse YAML configuration files to execute malicious commands in Windows hosts.
NerbianRAT, a remote access malware used by Magnet Goblin, is downloaded on systems initially compromised with critical Ivanti Connect Secure flaws.
Not yet exploited, these flaws could allow malicious code to be placed on host systems from inside a virtual machine.
Many TeamCity instances remain unpatched, allowing hackers to generate rogue admin accounts at a massive scale.
The vulnerabilities have been exploited to bypass kernel memory protections, according to Apple.
The bugs can be used to gain administrative control over TeamCity's on-premises service, allowing software supply chain attacks.
The new exploit allowed Windows kernel privilege escalation, indicating increased sophistication from Lazarus APT group.
Researchers identify methods that could allow attackers to bypass Ivanti integrity checks for recent attacks, perhaps surviving factory resets.
SAML authentication certificates, generated with tools other than dedicated cloud identity solutions, can be forged by hackers, according to a new proof of concept.
Vulnerabilities created by insecure code could lead to data leakage or corruption, and the burden is on Salesforce customers to mitigate.