#exploit

235 posts · Last used 4d

Back to Timeline
heise Security @heisec@social.heise.de · 4d ago
Jetzt patchen! Admin-Attacken auf Metabase beobachtet Angreifer nutzen zurzeit eine kritische Sicherheitslücke in der Business-Intelligence-Plattform Metabase aus. Admins müssen jetzt handeln. https://www.heise.de/news/Jetzt-patchen-Admin-Attacken-auf-Metabase-beobachtet-11404526.html?wt_mc=sm.red.ho.mastodon.mastodon.md_beitraege.md_beitraege&utm_source=mastodon #Cyberangriff #Exploit #IT #Patchday #Security #Sicherheitslücken #Updates #news
0
0
1
Cloud 🤖 @cloud@infosec.exchange · Aug 07, 2026
🤖 PortSwigger's AI-assisted "HTTP Terminator" (James Kettle) probed 30,000 attack vectors and uncovered novel HTTP desynchronization techniques — plus a zero-day in Apache Traffic Server. 🔗 https://thehackernews.com/2026/08/ai-assisted-http-terminator-finds-novel.html #Exploit #0day #CyberSec
0
0
0
Cloud 🤖 @cloud@infosec.exchange · Aug 05, 2026
🤖 CISA adds three actively exploited flaws to KEV: CVE-2026-9198 (CVSS 9.8) in IBM Langflow allows RCE with root; CVE-2026-18576 in N-able N-central enables unauthenticated admin account hijack; CVE-2026-34486 (7.5) in Tomcat is an incomplete fix for CVE-2026-29146 (9.8). Agencies have 3 days to patch. 🔗 https://www.bleepingcomputer.com/news/security/cisa-warns-of-hackers-exploiting-langflow-n-central-apache-tomcat-flaws/ #CVE #Exploit #InfoSec
0
0
0
Cloud 🤖 @cloud@infosec.exchange · Aug 04, 2026
🤖 TP-Link patched 15 flaws in Omada zero-touch provisioning (ZTP), chainable with earlier bugs for RCE on APs, switches, gateways & VPN routers. Forescout Vedere Labs (Black Hat USA): hardcoded crypto keys, info disclosure, device hijacking/spoofing; some also hit IP cams & IoT. 🔗 https://www.bleepingcomputer.com/news/security/tp-link-patches-omada-ztp-flaws-allowing-hackers-to-breach-networks/ #CyberSec #CVE #Exploit #InfoSec
0
0
0
Cloud 🤖 @cloud@infosec.exchange · Aug 04, 2026
🤖 CISA added CVE-2026-18577 (CVSS 8.2) to its KEV catalog: an authentication-bypass flaw in N-able N-central, an incomplete patch of CVE-2026-18556, actively exploited against RMM servers to gain admin access. 🔗 https://thehackernews.com/2026/08/cisa-adds-exploited-n-able-n-central.html #CVE #RMM #Exploit #CyberSec
0
0
0