March 15, 2024 at 11:55AM

Zero-Day: A team of researchers from IBM and the VU Amsterdam university in the Netherlands on Tuesday disclosed the details of a new type of data leakage attack impacting all major CPU makers, as well as some widely used software. https://download.vusec.net/papers/ghostrace_sec24.pdf https://www.securityweek.com/major-cpu-software-vendors-impacted-by-new-ghostrace-attack https://t.me/cKure/13652

March 15, 2024 at 12:05AM

■■□□□ Kubernetes Vulnerability Allows Remote Code Execution on Windows Endpoints. A high-severity Kubernetes vulnerability tracked as CVE-2023-5528 can be exploited to execute arbitrary code on Windows endpoints. https://www.securityweek.com/kubernetes-vulnerability-allows-remote-code-execution-on-windows-endpoints/ https://t.me/cKure/13649

March 15, 2024 at 12:03AM

■■■□□ An EXIF Analysis on Conti Ransomware Gang’s Publicly Accessible Internally Leaked Marketing and Advertising Creative – An Analysis. https://ddanchev.blogspot.com/2024/03/an-exif-analysis-on-conti-ransomware.html https://t.me/cKure/13648

March 14, 2024 at 06:16PM

■■■■■ [Tool] Ip2region (2.0 – xdb): Offline IP address manager framework and locator, support billions of data segments, 10 ms searching performance. https://github.com/lionsoul2014/ip2region https://t.me/cKure/13646

March 14, 2024 at 04:25PM

■■■■□ Security Flaws within ChatGPT Allowed Access to Accounts On Third-Party Websites and Sensitive Data. https://salt.security/blog/security-flaws-within-chatgpt-extensions-allowed-access-to-accounts-on-third-party-websites-and-sensitive-data https://t.me/cKure/13645