EPISODE · Jan 16, 2024 · 4 MIN
Cyber Morning Call - #464 - 16/01/2024
from Cyber Morning Call · host Tempest Security Intelligence
[Referências do Episódio] “MyFlaw” — Cross Platform 0-Day RCE Vulnerability Discovered in Opera’s Browser Guardio - https://labs.guard.io/myflaw-cross-platform-0-day-rce-vulnerability-discovered-in-operas-browsers-099361a808ab CVE-2023-36025 Exploited for Defense Evasion in Phemedrone Stealer Campaign - https://www.trendmicro.com/en_us/research/24/a/cve-2023-36025-exploited-for-defense-evasion-in-phemedrone-steal.html Vulnerabilidade de Bypass de Recurso de Segurança do Windows SmartScreen - https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-36025 It’s 2024 and Over 178,000 SonicWall Firewalls are Publicly Exploitable - https://bishopfox.com/blog/its-2024-and-over-178-000-sonicwall-firewalls-are-publicly-exploitable UNAUTHENTICATED STACK-BASED BUFFER OVERFLOW VULNERABILITY IN SONICOS - https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2022-0003 SONICOS UNAUTHENTICATED STACK-BASED BUFFER OVERFLOW VULNERABILITY - https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2023-0004 Ivanti Connect Secure VPN Exploitation Goes Global - https://www.volexity.com/blog/2024/01/15/ivanti-connect-secure-vpn-exploitation-goes-global/ KB CVE-2023-46805 (Authentication Bypass) & CVE-2024-21887 (Command Injection) for Ivanti Connect Secure and Ivanti Policy Secure Gateways - https://forums.ivanti.com/s/article/KB-CVE-2023-46805-Authentication-Bypass-CVE-2024-21887-Command-Injection-for-Ivanti-Connect-Secure-and-Ivanti-Policy-Secure-Gateways?language=en_US Roteiro e apresentação: Carlos Cabral e Bianca Oliveira Edição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia
Embed this episode
NOW PLAYING
Cyber Morning Call - #464 - 16/01/2024
No transcript for this episode yet
Similar Episodes
No similar episodes found.