Tag: open-source
-
Android Linux Wi-Fi Vulnerabilities: Protect Devices Today!
Recent cybersecurity research has unveiled critical vulnerabilities in open-source Wi-Fi software, impacting a wide range of devices, including Androi… First seen on securityboulevard.com Jump to article: securityboulevard.com/2024/03/android-linux-wi-fi-vulnerabilities-protect-devices-today/
-
Hackers Abuse QEMU Hardware Emulator for Stealthy C2 Communication
QEMU is an open-source platform that provides a secure and private virtualized space for trying out malicious codes, exploits, and attacks on their ow… First seen on gbhackers.com Jump to article: gbhackers.com/hackers-qemu-data-exfiltration/
-
RiskInDroid: Open-source risk analysis of Android apps
RiskInDroid (Risk Index for Android) is an open-source tool for quantitative risk analysis of Android applications based on machine learning technique… First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2024/03/06/riskindroid-open-source-risk-analysis-android-apps/
-
New Wi-Fi Vulnerabilities Expose Android and Linux Devices to Hackers
Tags: android, authentication, cybersecurity, flaw, hacker, linux, open-source, software, vulnerability, wifiCybersecurity researchers have identified two authentication bypass flaws in open-source Wi-Fi software found in Android, Linux, and ChromeOS devices … First seen on thehackernews.com Jump to article: thehackernews.com/2024/02/new-wi-fi-vulnerabilities-expose.html
-
Open-Source Xeno RAT Trojan Emerges as a Potent Threat on GitHub
An intricately designed remote access trojan (RAT) called Xeno RAT has been made available on GitHub, making it easily accessible to other a… First seen on thehackernews.com Jump to article: thehackernews.com/2024/02/open-source-xeno-rat-trojan-emerges-as.html
-
Cybercriminals Weaponizing Open-Source SSH-Snake Tool for Network Attacks
A recently open-sourced network mapping tool called SSH-Snake has been repurposed by threat actors to conduct malicious activities.SSH-Snake… First seen on thehackernews.com Jump to article: thehackernews.com/2024/02/cybercriminals-weaponizing-open-source.html
-
PyRIT: Open-source framework to find risks in generative AI systems
Python Risk Identification Tool (PyRIT) is Microsoft’s open-source automation framework that enables security professionals and machine learning engin… First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2024/03/04/pyrit-microsoft-framework-find-risks-generative-ai-systems/
-
How we applied advanced fuzzing techniques to cURL
By Shaun Mirani Near the end of 2022, Trail of Bits was hired by the Open Source Technology Improvement Fund (OSTIF) to perform a security assessment … First seen on securityboulevard.com Jump to article: securityboulevard.com/2024/03/how-we-applied-advanced-fuzzing-techniques-to-curl/
-
Synopsys Open Source Security and Risk Analysis (OSSRA) 2024 – 74% aller Codebasen enthalten kritische Open-Source-Schwachstellen
First seen on security-insider.de Jump to article: www.security-insider.de/ossra-bericht-2024-analyse-open-source-schwachstellen-a-32a4aa310378fe1c995de9527c699836/
-
BobTheSmuggler: Open-source tool for undetectable payload delivery
BobTheSmuggler is an open-source tool designed to easily compress, encrypt, and securely transport your payload. It basically enables you to hide a pa… First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2024/02/29/bobthesmuggler-open-source-tool-undetectable-payload-delivery/
-
Synopsys Report: 74% of Codebases Harbour High-Risk Open Source Vulnerabilities, Up 54%
Synopsys has unveiled the ninth edition of its annual >>Open Source Security and Risk Analysis
-
Most Commercial Code Contains High-Risk Open Source Bugs
First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/commercial-code-highrisk-open/
-
Web Check: Open-source intelligence for any website
Web Check offers thorough open-source intelligence and enables users to understand a website’s infrastructure and security posture, equipping them wit… First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2024/02/26/web-check-website-open-source-intelligence/
-
Bitwarden’s new auto-fill option adds phishing resistance
The Bitwarden open-source password management service has introduced a new inline auto-fill menu that addresses the risk of user credentials being sto… First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/bitwardens-new-auto-fill-option-adds-phishing-resistance/
-
6 Best Open Source IAM Tools in 2024
Explore the top open source IAM (Identity and Access Management) tools, their features and how they can enhance your organization’s security and acces… First seen on techrepublic.com Jump to article: www.techrepublic.com/article/best-open-source-iam-tools/
-
Multiple FreeImage Vulnerabilities Fixed in Ubuntu
Multiple vulnerabilities were discovered in FreeImage, an open-source support library for graphic image formats. These vulnerabilities, when left unad… First seen on securityboulevard.com Jump to article: securityboulevard.com/2024/02/multiple-freeimage-vulnerabilities-fixed-in-ubuntu/
-
New Malicious PyPI Packages Use DLL Sideloading In A Supply Chain Attack
Researchers have discovered that threat actors have been using open-source platforms and codes for several purposes, such as hosting C2 infrastructure… First seen on gbhackers.com Jump to article: gbhackers.com/malicious-pypi-packages-dll-sideloading/
-
TruffleHog: Open-source solution for scanning secrets
TruffleHog is an open-source scanner that identifies and addresses exposed secrets throughout your entire technology stack. >>TruffleHog was originall… First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2024/02/21/trufflehog-open-source-solution-for-scanning-secrets/
-
LogMeOnce vs Bitwarden (2024): Which Password Manager is Better?
While LogMeOnce features a useful password scoring system, Bitwarden’s more polished user interface and open source software make it a better pick for… First seen on techrepublic.com Jump to article: www.techrepublic.com/article/logmeonce-vs-bitwarden/
-
CVE Prioritizer: Open-source tool to prioritize vulnerability patching
CVE Prioritizer is an open-source tool designed to assist in prioritizing the patching of vulnerabilities. It integrates data from CVSS, EPSS, and CIS… First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2024/02/19/cve-prioritizer-open-source-vulnerability-patching/
-
Critical PixieFail Vulnerabilities Lead to RCE and DoS Attacks
A set of critical security vulnerabilities has been found in the TCP/IP network protocol stack of an open-source reference implementation of the Unifi… First seen on securityboulevard.com Jump to article: securityboulevard.com/2024/02/critical-pixiefail-vulnerabilities-lead-to-rce-and-dos-attacks/
-
Fabric: Open-source framework for augmenting humans using AI
Fabric is an open-source framework, created to enable users to granularly apply AI to everyday challenges. Key features >>I created it to enable human… First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2024/02/14/fabric-open-source-ai-framework/
-
SiCat: Open-source exploit finder
SiCat is an open-source tool for exploit research designed to source and compile information about exploits from open channels and internal databases…. First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2024/02/12/sicat-open-source-exploit-finder/
-
Cyber Resilience Act: Open-Source-Entwickler bedanken sich bei EU für Einlenken
First seen on golem.de Jump to article: www.golem.de/news/cyber-resilience-act-open-source-entwickler-bedanken-sich-bei-eu-fuer-einlenken-2402-181869.html
-
Anzeige: Datenschutzkonforme Webanalyse mit Matomo
Tags: open-sourceMatomo als führende Open-Source-Lösung für Webanalytik ermöglicht eine effektive Überwachung der Website-Leistung und detaillierte Analysen, wie der O… First seen on golem.de Jump to article: www.golem.de/news/anzeige-datenschutzkonforme-webanalyse-mit-matomo-2402-181908.html
-
Open-Source ist die IT-Achillesferse der Lieferkette
Damit die virtuellen Türen zu ihrem Netzwerk fest verschlossen bleiben, sollten Unternehmen DevSecOps automatisieren. Das stellt sicher, dass Sicherhe… First seen on infopoint-security.de Jump to article: www.infopoint-security.de/open-source-ist-die-it-achillesferse-der-lieferkette/a33050/
-
Sysdig entdeckt Gefahr für Linux-Distributionen durch Open-Source-Tool PRoot
Gegen diese neue Bedrohung gibt es allerdings auch eine klare Sicherheitsstrategie: Eine Laufzeiterkennungsschicht wie Falco, die dieses Verhalten erk… First seen on infopoint-security.de Jump to article: www.infopoint-security.de/sysdig-entdeckt-gefahr-fuer-linux-distributionen-durch-open-source-tool-proot/a32906/
-
Bedrohungserkennung: Open-Source Security-Tool Untitled Goose nimmt Fahrt auf
Untitled Goose Tool wurde entwickelt, um den Zugriff auf die Protokolle zu automatisieren, die Verteidiger benötigen, um einen potenziellen Angriff au… First seen on infopoint-security.de Jump to article: www.infopoint-security.de/bedrohungserkennung-open-source-security-tool-untitled-goose-nimmt-fahrt-auf/a34033/
-
JFrog entdeckt bösartige NuGet-Pakete
Die Ergebnisse dieser Untersuchung beweisen, dass kein Open-Source-Software-Repository für immer sicher ist. Obwohl im NuGet-Repository keine früheren… First seen on infopoint-security.de Jump to article: www.infopoint-security.de/jfrog-entdeckt-boesartige-nuget-pakete/a33853/
-
Sysdig gratuliert Wireshark zum 25. Geburtstag
Tags: open-sourceGerald Combs, der Erfinder und Projektleiter von Wireshark, schloss sich im Januar 2022 Sysdig an und ist seitdem Teil des Open-Source-Teams von Sysdi… First seen on infopoint-security.de Jump to article: www.infopoint-security.de/sysdig-gratuliert-wireshark-zum-25-geburtstag/a34817/

