Security CERT Global
- CVE-2023-0467 (wp_dark_mode)
- CVE-2023-0335 (wp_shamsi)
- CVE-2023-0441 (simply_gallery_blocks_with_lightbox)
- CVE-2023-0336 (ooohboi_steroids_for_elementor)
- CVE-2023-0395 (menu_shortcode)
- CVE-2023-0241 (pgadmin_4)
- CVE-2023-28844
- CVE-2023-24824
- CVE-2023-28845
- CVE-2022-47192
- CVE-2022-47188
- CVE-2022-47191
- CVE-2022-47189
- CVE-2023-26485
- CVE-2022-47190
- CVE-2023-28645
- Samba Releases Security Updates for Multiple Versions of Samba
- Mozilla Releases Security Update for Thunderbird 102.9.1
- CERTFR-2023-ALE-003 : Compromission de l’application 3CX Desktop App (31 mars 2023)
- CERTFR-2023-AVI-0278 : Multiples vulnérabilités dans le noyau Linux d’Ubuntu (31 mars 2023)
- CERTFR-2023-AVI-0277 : Multiples vulnérabilités dans le noyau Linux de SUSE (31 mars 2023)
- CERTFR-2023-AVI-0279 : Multiples vulnérabilités dans le noyau Linux de RedHat (31 mars 2023)
- CERTFR-2023-AVI-0275 : Multiples vulnérabilités dans GitLab (31 mars 2023)
- CERTFR-2023-AVI-0276 : Multiples vulnérabilités dans les produits IBM (31 mars 2023)
- CERT-SE:s veckobrev v.13
- Sårbarhet i VoIP-tjänsten 3CX utnyttjas för angrepp mot kunder
- Campaña de distribución de software troyanizado contra 3CX DesktopApp
- Campaña de distribución de software troyanizado contra 3CX DesktopApp
- JVN: Hitachi Energy製IEC 61850 MMS-Serverにおけるリソースの不適切なシャットダウンまたはリリースの脆弱性
- ESB-2023.1905 - [Win][UNIX/Linux] GitLab: CVSS (Max): 3.8*
- ESB-2023.1904 - [Ubuntu] musl: CVSS (Max): 9.8
- CVE-2023-1745
- CVE-2023-25587
- CVE-2023-1742
- CVE-2023-1744
- CVE-2023-1741
- CVE-2023-1746
- CVE-2023-1743
- CVE-2023-1670
- CONPROSYS HMI System(CHS) vulnerable to SQL injection
- JTEKT ELECTRONIC Screen Creator Advance 2 vulnerable to improper restriction of operations within the bounds of a memory buffer
- JVN: セイコーソリューションズ製 SkyBridge MB-A100/A110/A200/A130 および SkySpider MB-R210 における複数の脆弱性
- JVN: HAProxy における HTTP リクエストスマグリングの脆弱性
- JVN: ジェイテクトエレクトロニクス製Screen Creator Advance 2におけるメモリバッファエラーの脆弱性
- JVN: コンテック製CONPROSYS HMI System(CHS)におけるSQLインジェクションの脆弱性
- ESB-2023.1903 - [Win][UNIX/Linux] Ruby: CVSS (Max): 7.5
- ESB-2023.1898 - [Debian] libmicrohttpd: CVSS (Max): 5.9
- ESB-2023.1900 - [Debian] joblib: CVSS (Max): 9.8
- ESB-2023.1901 - [Appliance] Hitachi Energy IEC 61850 MMS-Server: CVSS (Max): 5.9
- ESB-2023.1902 - [Win][UNIX/Linux] Ruby: CVSS (Max): None
MGS+ ICS Security Report June 2017
MGS+ ICS Security Report June 2017: Editor Picks: News Intelligence Alerts Report
Why Future Emphasis Should be on Algorithms – Not Code
We are all now in what’s called the “big data era,” and we’ve been here for quite some time. Once upon a time we were only just starting to piece together dialogue. Then when one group of people had learned this dialogue, it was up to them t pass it on the next group and so on and so on. However, as more people began to fill the Earth, more information was learned and gathered, making it too difficult to pass on in the form of dialogue. Instead, we needed to codify this information to share it all.
Source: http://trendintech.com/2017/03/26/why-future-emphasis-should-be-on-algorithms-not-code/
The previous industrial revolutions broke the environment. Can the current one fix it?
We live in a world that was largely shaped by industrialists, but which is increasingly being transformed by technologists. Innovations are getting faster and more efficient, technology is becoming more and more interconnected, and we are starting to see a merging of our digital and physical realms. This is the Fourth Industrial Revolution
Source: https://www.weforum.org/agenda/2017/04/fix-the-environment-there-s-an-app-for-that/
Artificial Intelligence Tech Will Arrive in Three Waves
I’ve done a lot of writing and research recently about the bright future of AI: that it’ll be able to analyze human emotions, understand social nuances, conduct medical treatments and diagnoses that overshadow the best human physicians, and in general make many human workers redundant and unnecessary.
Source: https://futurism.com/artificial-intelligence-tech-will-arrive-in-three-waves/
How Singapore Is Creating More Land for Itself
The island off the southern tip of Malaysia reveals the future of building in an epoch of dwindling territory.
Source: https://www.nytimes.com/2017/04/20/magazine/how-singapore-is-creating-more-land-for-itself.html
US energy systems at the mercy of cyberattack, warns report
The digital systems that run the electricity grid, gas pipelines and other critical infrastructure in the US have 25 years’ worth of fundamental weaknesses to hacking that need fixing.
Source: https://www.newscientist.com/article/2126050-us-energy-systems-at-the-mercy-of-cyberattack-warns-report/#.WNqYlDKUNek.twitter
America’s $4tn infrastructure time bomb
Source: http://www.bbc.com/news/world-us-canada-39410561
3,000 Industrial Plants Per Year Infected with Malware
Targeted industrial control systems-themed malware is less prevalent yet persistent, including one variant posing as Siemens PLC firmware that has been in action since 2013, researchers find.
Source: http://www.darkreading.com/threat-intelligence/3000-industrial-plants-per-year-infected-with-malware-/d/d-id/1328444
Australia’s bold plan for cybersecurity growth
Australian Cyber Security Growth Network has set its goals, fleshed out its board, and announced a detailed plan for success.
Source: http://www.zdnet.com/article/australias-bold-plan-for-cybersecurity-growth/
Source: Machine Learning For Cybersecurity Not Cybercrime
Cybercriminals have yet to adopt machine learning for offensive attack strategies – and they probably won’t for a long time.
Source: http://www.darkreading.com/partner-perspectives/bitdefender/machine-learning-for-cybersecurity-not-cybercrime/a/d-id/1327904
Cloud Security & IoT: A Look At What Lies Ahead
In the brave new world of cloud, security teams must be as agile as possible. This means leveraging proactive monitoring tools, locking down access points, and forecasting requirements
Source: http://www.darkreading.com/cloud/cloud-security-and-iot-a-look-at-what-lies-ahead/a/d-id/1327900
2017 Security 100: 25 Coolest Network Security Vendors
Source: http://www.crn.com/slide-shows/security/300084000/2017-security-100-25-coolest-network-security-vendors.htm
20 Questions To Explore With Security-as-a-Service Providers
This list will help you leverage the niche expertise of security-as-a-service providers, and assess which vendor can best meet your needs
Source: http://www.darkreading.com/vulnerabilities—threats/20-questions-to-explore-with-security-as-a-service-providers/a/d-id/1327101