Tag: open-source
-
Open-Source-CDN JSDelivr: Ausfall trifft zahlreiche Sites weltweit
Tags: open-sourceFirst seen on heise.de Jump to article: www.heise.de/news/Content-Delivery-Network-JSDelivr-Ausfall-trifft-zahlreiche-Websites-9705222.html
-
reNgine: Open-source automated reconnaissance framework for web applications
reNgine is an open-source automated reconnaissance framework for web applications that focuses on a highly configurable and streamlined recon process…. First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2024/05/02/rengine-open-source-automated-reconnaissance-framework/
-
Key Areas Where Open-Source Security Needs to Evolve
Cybersecurity experts agree open-source software (OSS) needs to evolve in some key areas, both concerning how organizations govern the OSS they consum… First seen on securityboulevard.com Jump to article: securityboulevard.com/2024/05/key-areas-where-open-source-security-needs-to-evolve/
-
Attackers Leverage Sidecar Container Injection Technique To Stay Stealthy
Kubernetes (K8s) is an open-source container orchestration platform designed to automate application container deployment, scaling, and running. Cont… First seen on gbhackers.com Jump to article: gbhackers.com/sidecar-container-injection-technique/
-
Tracecat: Open-source SOAR
Tracecat is an open-source automation platform for security teams. The developers believe security automation should be accessible to everyone, especi… First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2024/04/30/tracecat-open-source-automation-platform-soar/
-
Open source programming language R patches gnarly arbitrary code exec flaw
First seen on theregister.com Jump to article: www.theregister.com/2024/05/01/r_programming_language_ace_vuln/
-
Critical Vulnerabilities in Judge0 Lead to Sandbox Escape, Host Takeover
Three vulnerabilities in the Judge0 open source service could allow attackers to escape the sandbox and obtain root privileges on the host. The post l… First seen on securityweek.com Jump to article: www.securityweek.com/critical-vulnerabilities-in-judge0-lead-to-sandbox-escape-host-takeover/
-
What is the Open-Source Software Security Initiative (OS3I)?
The Open-Source Software Security Initiative (OS3I) recently released Securing the Open-Source Software Ecosystem report, which details the members&rs… First seen on securityintelligence.com Jump to article: securityintelligence.com/news/open-source-software-security-initiative/
-
XZ backdoor discovery reveals Linux supply chain attack
A maintainer for XZ, a popular open source compression library for Linux distributions, compromised the open source project over the course of two yea… First seen on techtarget.com Jump to article: www.techtarget.com/searchsecurity/news/366577602/XZ-backdoor-discovery-reveals-Linux-supply-chain-attack
-
Prompt Fuzzer: Open-source tool for strengthening GenAI apps
Prompt Fuzzer is an open-source tool that evaluates the security of your GenAI application’s system prompt against dynamic LLM-based threats. Prompt F… First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2024/04/29/prompt-fuzzer-open-source-genai-applications-security/
-
Typosquatting campaign, malicious packages slam PyPi
Threat actors used automated typosquatting attacks to lead victims to malicious python packages in yet another campaign targeting the open-source soft… First seen on techtarget.com Jump to article: www.techtarget.com/searchsecurity/news/366577455/Typosquatting-campaign-malicious-packages-slam-PyPi
-
Open source alert over intentionally placed backdoor
A backdoor in the open source XZ Utils data compression library could have led to widespread compromise across the Linux ecosystem – and the community… First seen on computerweekly.com Jump to article: www.computerweekly.com/news/366577513/Open-source-alert-over-intentionally-placed-backdoor
-
Debian 12: Redefining Stability and Innovation in Open-Source Operating Systems
Debian holds a distinguished position. Recognized as one of the oldest and most trusted distributions within the Linux ecosystem, Debian continues to … First seen on securityboulevard.com Jump to article: securityboulevard.com/2024/04/debian-12-redefining-stability-and-innovation-in-open-source-operating-systems/
-
Grafana Tool Vulnerability Let Attackers Inject SQL Queries
The popular open-source platform Grafana, widely used for monitoring and observability, has been found to contain a severe SQL injection vulnerability… First seen on gbhackers.com Jump to article: gbhackers.com/grafana-tool-vulnerability/
-
Die 10 größten Open-Source-Risiken
Quelloffene Komponenten richtig abzusichern, wird immer wichtiger. Dieses OWASP-Ranking hilft, die wesentlichen Open-Source-Risiken im Blick zu behalt… First seen on csoonline.com Jump to article: www.csoonline.com/de/a/die-10-groessten-open-source-risiken
-
LSA Whisperer: Open-source tools for interacting with authentication packages
LSA Whisperer consists of open-source tools designed to interact with authentication packages through their unique messaging protocols. Support is cur… First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2024/04/26/lsa-whisperer-open-source-tools-for-interacting-with-authentication-packages/
-
Microsoft Releases New-Open Source Tool for OT Security
ICSpector Is Now on GitHub, Scans PLCs, Extracts Info and Detects Malicious Code. Microsoft has released a new open-source security tool to close gaps… First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/microsoft-releases-new-open-source-tool-for-ot-security-a-24961
-
Europe’s Cyber Resilience Act: Redefining open source
Amid an increasingly complex threat landscape, we find ourselves at a crossroads where law, technology and community converge. As such, cyber resilien… First seen on securityintelligence.com Jump to article: securityintelligence.com/news/cyber-resilience-act-open-source/
-
Open-Source Software Security
Open-source software security is crucial in today’s cloud-native world. Learn about vulnerabilities, dependencies, and tools to improve security in th… First seen on securityboulevard.com Jump to article: securityboulevard.com/2024/04/open-source-software-security/
-
Quick Guide to the OWASP OSS Risk Top 10
There’s more to open source risk than CVEs! The post more to open source risk than CVEs! The post more to open source risk than CVEs! The post more to… First seen on securityboulevard.com Jump to article: securityboulevard.com/2024/04/quick-guide-to-the-owasp-oss-risk-top-10/
-
Manipulationsversuche bei Open Source-Projekten – OpenSSF und OpenJS warnen vor Cyberattacken
First seen on security-insider.de Jump to article: www.security-insider.de/warnung-vor-uebernahme-angriffen-bei-open-source-projekten-a-c875e4e517e7ea27ef3103be4555fc15/
-
Open Source Tool Looks for Signals in Noisy AWS Cloud Logs
Permiso Security announced Cloud Console Cartographer during Black Hat Asia to help defenders look inside Amazon Web Services events logs for signs of… First seen on darkreading.com Jump to article: www.darkreading.com/cloud-security/open-source-tool-looks-signals-in-noisy-aws-cloud-logs
-
6 Top Open-Source Vulnerability Scanners Tools
Open-source vulnerability scanners identify security vulnerabilities in apps, networks, and systems. Compare features and functionalities with our gui… First seen on esecurityplanet.com Jump to article: www.esecurityplanet.com/applications/open-source-vulnerability-scanners/
-
Critical Apache HugeGraph Flaw Let Attackers Execute Remote Code
Security researchers have identified a critical vulnerability in Apache HugeGraph, an open-source graph database tool. This flaw, if exploited, could … First seen on gbhackers.com Jump to article: gbhackers.com/critical-apache-hugegraph-flaw/
-
Cloud Console Cartographer: Open-source tool helps security teams transcribe log activity
Cloud Console Cartographer is an open-source tool that maps noisy log activity into highly consolidated, succinct events to help security practitioner… First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2024/04/22/cloud-console-cartographer-open-source-tool/
-
Report: Russian Hackers Targeting Ukrainian Soldiers on Apps
Russian Hackers Using Open-Source Malware on Popular Messaging Apps, Report Says. Ukraine’s Computer Emergency Response Team is warning in an April re… First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/report-russian-hackers-targeting-ukrainian-soldiers-on-apps-a-24919
-
Protobom: Open-source software supply chain tool
Protobom is an open-source software supply chain tool that enables all organizations, including system administrators and software development communi… First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2024/04/19/protobom-open-source-software-supply-chain-tool/

