Luca Donetti Dontin Il sito di un pazzo sistemista! - page 139

Sanata vulnerabilità nel prodotto ManageEngine OpManager (AL04/230104/CSIRT-ITA)

Zoho ha rilasciato un aggiornamento di sicurezza che risolve una vulnerabilità, identificata tramite la CVE-2022-43473, presente nel prodotto ManageEngine OpManager. Source link Author: csirt@pec.acn.gov.it Article used for cyber security disclosure.

Continue reading →

La Settimana Cibernetica del 1 gennaio 2023

Scarica il riepilogo delle notizie pubblicate dallo CSIRT Italia dal 26 dicembre 2022 al 1 gennaio 2023. Source link Author: csirt@pec.acn.gov.it Article used for cyber security disclosure.

Continue reading →

Who sends TCP RSTs?

At SharkFest’22 EU, the Annual Wireshark User and Developer Conference, I attended a beginners’ course called “Network Troubleshooting from Scratch”, taught by the great Jasper Bongertz. In the end, we had some high-level discussions concerning various things, one of them was the insight that… Source…

Continue reading →

CISA Adds One Known Exploited Vulnerability to Catalog

Original release date: December 14, 2022 CISA has added one new vulnerability to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. This type of vulnerability is a frequent attack vector for malicious cyber actors and poses a significant risk to the federal enterprise….

Continue reading →

Risolta vulnerabilità in Apache Karaf (AL01/221230/CSIRT-ITA)

Rilasciati aggiornamenti di sicurezza che sanano una vulnerabilità con gravità “critica” nel prodotto Apache Karaf. Source link Author: csirt@pec.acn.gov.it Article used for cyber security disclosure.

Continue reading →

CISA Adds Two Known Exploited Vulnerabilities to Catalog

Original release date: December 29, 2022 CISA has added two new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are frequent attack vectors for malicious cyber actors and pose significant risks to the federal enterprise. Note: To…

Continue reading →

Rilevato nuovo exploit OWASSRF in grado di aggirare le mitigazioni per ProxyNotShell (AL01/221227/CSIRT-ITA)

Rilevato un nuovo metodo di exploitation, denominato “OWASSRF”, in grado di aggirare le contromisure proposte da Microsoft come mitigazione alla vulnerabilità di Exchange denominata ProxyNotShell. Source link Author: csirt@pec.acn.gov.it Article used for cyber security disclosure.

Continue reading →

RADIUS & TACACS+ PCAP

Again two more commonly used network protocols for the Ultimate PCAP: the Remote Authentication Dial-In User Service (RADIUS) and the Terminal Access Controller Access-Control System Plus (TACACS+) protocols. Captured with quite some details: You can either download the Ultimate PCAP… Source link Author: legendary Johannes…

Continue reading →

Page 139 of 177 ← First ... 137 138 139 140 141 ... Last →