📡
finiweb
エンジニア向け情報収集ダッシュボード
Hackers abuse Faronics Deploy admin tool to install ScreenConnect
Securitybleepingcomputer9/2 05:53
Aesto Health says data breach affects over 9.5 million patients
Securitybleepingcomputer9/2 04:28
Critical Langflow flaw exploited to steal OpenAI and AWS keys
Securitybleepingcomputer9/2 02:54
Hackers push malicious Virtualizor update in BGP hijacking attack
Securitybleepingcomputer9/1 23:45
Novocure data breach affects more than 1,400 cancer patients
Securitybleepingcomputer9/1 23:28
Attackers Pounce on Critical Artifactory Flaw Following Disclosure
Securitydarkreading9/2 06:05
Stronger Security Drives Ransomware Groups to Recruit From Within
Securitydarkreading9/2 06:03
Critical Langflow Flaw Exploited as Attacks on AI Platform Rise
Securitydarkreading9/2 05:48
AI Model Evaluator METR Hit by Credential Theft, Probing
Securitydarkreading9/2 05:13
ClickFix Campaign Compromises 31 Orgs, Abuses Polygon Blockchain
Securitydarkreading9/1 22:56
[CVE-2026-77348] Wallos is an open-source, self-hostable personal subscription tracker. Prior to version 5.0.0, the fix for CVE-2026-3340
SecuritynvdCVSS 8.28/31 22:17
[CVE-2026-82393] pnpm is a package manager. Prior to 10.34.5 and 11.11.0, pnpm accepts a scoped path traversal in a tarball dependency's
SecuritynvdCVSS 7.58/31 22:17
[CVE-2026-82397] Tornado is a Python web framework and asynchronous networking library. Prior to 6.5.8, Tornado parses application/x-www-
SecuritynvdCVSS 7.58/31 22:17
[CVE-2026-82882] Devtron through 2.2.0 fails to enforce authorization checks on the GET /orchestrator/api-token/webhook endpoint, allowin
SecuritynvdCVSS 8.88/31 22:17
[CVE-2026-82921] A weakness has been identified in ShopEx ECShop up to 2.5.1. This affects the function check_img_type of the file admin/
SecuritynvdCVSS 7.38/31 22:17