-
CVE-2021-20326 Performing a specific type of find query in MongoDB may trigger a denial of service. 10th May 2021
Preface: The term ‘NoSQL’ means ‘non-relational’. It means that MongoDB isn’t based on the table like relational database structure. Background: MongoDB storage format called BSON. It is similar to JSON format. Traditional database store data in tabular format. In a MongoDB database, data is stored in collections and a collection has documents. A document has…
-
Cyber attack shuts down U.S. fuel pipeline ‘jugular,’ said Headline News – 9th May 2021
Preface: The hacker group claimed that its ransomware attacks were only used for “right targets.” The organization claimed that they only targeted ransomware attacks and large profitable companies to “make the world a better place.” Background: Cyber attacks in the oil and gas industry can threaten an organisation’s information technology (IT), its operational technology (OT)…
-
VMware vRealize Business for Cloud updates address a remote code execution vulnerability (CVE-2021-21984) – 5th May 2021
Preface: vSphere 6.5 – introduction of several new REST APIs included in the vCenter Server Appliance (VCSA). Background: You can use vRealize Business for Cloud to manage the following VMware products and services: vCenter Server,vCloud Director,vRealize Automation & vRealize Operations Manage. Through the REST API. To get access VCSA appliance. The corresponding API endpoint for…
-
Dell patches 12-year-old driver vulnerability impacting millions of PCs – 5th May 2021
Background: DBUtil_2_3. Sys is a Windows driver. A driver is a small software program that allows your computer to communicate withhardware or connected devices. This means that a driver has direct access to the internals of the operating system,hardware etc. Vulnerability details: Dell dbutil_2_3.sys driver contains an insufficient access control vulnerability which may lead to…
-
In normal circumstances, IT team will be avoid people scanning their site. Perhaps sometimes this check will be avoided of the careless mistake. 4th May 2021
Preface: US Homeland security urge their local country computer users should stay alert of multiple vulnerabilities matter on Pulse Secure product. Perhaps all the world should be aware of it. Synopsis: As times goes by, Pulse secure acquired juniper SSL VPN product for few years. Perhaps we can remember that Juniper is the active player…
-
Samba Releases Security Updates – 30th APr 2021
Technical background: A Samba file server enables file sharing across different operating systems over a network. It lets you access your desktop files from a laptop and share files with Windows and macOS users. Vulnerability details: Unprivileged users can delete files in network shares that they shouldn’t access. However, vendor stated that they conduct analysis…
-
CISA urge to public that to aware of Codecov software vulnerability – 30th Apr, 2021
Preface: CISA is aware of a compromise of the Codecov software supply chain in which a malicious threat actor made unauthorized alterations of Codecov’s Bash Uploader script, beginning on January 31, 2021. Background: A Supply Chain Attack Gone Undetected for 2 Months.Codecov has over 29,000 enterprise customers, including reputed names like Atlassian, Washington Post, GoDaddy,…
-
Another wave of IoT vulnerability storm – CISA releases ICS advisory on RTOS vulnerabilities – 29th Apr 2021
Preface: People say that when you walk through rough roads. A brand new road is waiting for you. Synopsis: Due to the small size of IoT devices, the main component chips will include memory and storage. Even WiFi function. Technically, hardware resembles a car. Therefore, the software (OS) is equivalent a car driver. If the…
-
Are you a victim of this newly discovered vulnerability (CVE-2021-25216)? – 28th Apr, 2021
Preface: BIND is the most commonly used DNS software on the Internet today. DNS servers that use BIND as server software account for about 90% of all DNS servers. BIND is now developed and maintained by the ISC(Internet Systems Consortium). Background: The ISC BIND server contained the vulnerable code within the Simple and Protected GSSAPI…
-
CVE-2021-29200 – Apache OFBiz has unsafe deserialization prior to 17.12.07 version An unauthenticated user can perform an RCE attack (27th Apr 2021)
Preface: According to market statistic, 152 companies that use Apache OFBiz. The companies using Apache OFBiz are most often found in United States and in the Computer Software industry. Background: Apache OFBiz is a suite of business applications flexible enough to be used across any industry. OFBiz is an open source enterprise resource planning (ERP)…