-
Apache Releases Security Advisory for Apache Tomcat (26th Jun 2020)
Preface: As of June 2020, Apache is used by 37.7% of all the websites. Versions Affected:Apache Tomcat 10.0.0 – M1 to 10.0.0 – M5Apache Tomcat 9.0.0. M1 to 9.0.35Apache Tomcat 8.5.0 to 8.5.55 Impact: An attacker could exploit this vulnerability to cause a denial-of-service condition. Background: HTTP/2 uses header compression which requires a strict commitment…
-
VMware conducted remedy in EGCI and xHCI controller. It let us know more about the impact of USB. (25th Jun 2020)
Preface: If you don’t use the VMware 3D graphics feature. Perhaps the remedy solution this week by vendors in 3D features fixed will not your focus. But how about USB feature? Background: To enable PCI devices to interrupt the CPU, all PCI devices on the PCI bus are assigned an IRQ number. The VMkernel uses…
-
Magento users stay alert – 24th Jun 2020
Background: Magento is an e-commerce platform written in PHP atop the zend-framework, available under both open-source and commercial licenses. It is written in an advanced object-oriented idiom that uses the MVC pattern and XML configuration files, aiming for flexibility and extensibility. Vulnerabilities announced this week – HintsVendor have the right to remain vulnerability details and…
-
Australia (ACSC) urges local citizens to be vigilant against cyber attacks. The so-called copy-paste compromises – 18th June 2020
Preface: Australia’s government and institutions are being targeted by ongoing sophisticated state-based cyber hacks, Prime Minister Scott Morrison says. Mr Morrison did not name specific cases but said it had spanned “government, industry, political organizations, education, health, essential service providers and operators of other critical infrastructure”. 19th June 2020 Technical details: Long story short. The…
-
Win 10 Spatial Data Service Elevation of Privilege vulnerability – 17th Jun 2020
Preface: On Jul 2019, found vulnerability in the Windows Spatial Data Service could allow file deletion in arbitrary locations on Windows system found The official announcement this week state that Windows Spatial Data Service improperly handles objects in memory causes elevation of Privilege Vulnerability. Background: The Spatial Data Service is running as NT AUTHORITY\LocalService in…
-
US Homeland security urge public alert on “Ripple20” Vulnerabilities (16th June 2020)
Preface: Baxter US, Caterpillar, Digi International, Hewlett Packard Enterprise, Intel, Rockwell Automation, Schneider Electric and Trek are impact by this vulnerability.There are more vendor which do not know the actual status. Vulnerability details:An attacker from outside the network taking control over a device within the network, if internet facing. There are more ways to exploit…
-
intel new processor embedded anti malware feature – 15th june 2020
Preface: Starting with Oracle 11g release 1 (11.1), there is a just-in-time (JIT) compiler for Oracle JVM environment. A JIT compiler for Oracle JVM enables much faster execution because, it manages the invalidation, recompilation, and storage of code without an external mechanism. Background: A way to prevent attack code execution by stack and heap. It…
-
Archaeologist & Artificial intelligence – 14th Jun 2020
Preface: The traditional workforce faces the challenge of automation. Myth and Science: Archeologist don’t understand why Pyramids of Giza directions to Orion’s belt in the sky.Archeologist do not understand why Pyramids of Giza directions to Orion’s belt in the sky. So far, it has quite a lot of assumptions. The Myth mentioned that it let…
-
Perhaps this way come true – VMware horizon client for windows vulnerability (cve-2020-3961) 12th Jun 2020
Preface: In order to avoid the impact of the vulnerability. VMware do not provide the details for CVE-2020-3961. Synopsis: This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system. Vulnerability details: VMware Horizon Client for Windows contains a privilege escalation vulnerability due to folder permission configuration and…
-
us homeland security alert – design weakness of universal plug and play – 9th jun 2020
Preface: Universal Plug and Play (UPnP) is a set of networking protocols that permits networked devices, such as personal computers, printers, Internet gateways, Wi-Fi … Review historical event: Mirai is an IoT botnet that was designed to exploit vulnerabilities in IoT devices for use in large-scale DDoS attacks.In September 2016, the Mirai malware launched a DDoS…