Malware Devil

Wednesday, July 29, 2020

11 Security Tools to Expect at the Black Hat USA 2020 Arsenal Virtual Event

Register for Dark Reading Newsletters

Subscribe to Newsletters

White Papers
Video
Cartoon Contest
Current Issue
imageSpecial Report: Computing’s New Normal, a Dark Reading PerspectiveThis special report examines how IT security organizations have adapted to the “new normal” of computing and what the long-term effects will be. Read it and get a unique set of perspectives on issues ranging from new threats & vulnerabilities as a result of remote working to how enterprise security strategy will be affected long term.
image

Flash Poll

The Threat from the Internet--and What Your Organization Can Do About It
The Threat from the Internet–and What Your Organization Can Do About It
This report describes some of the latest attacks and threats emanating from the Internet, as well as advice and tips on how your organization can mitigate those threats before they affect your business. Download it today!
image
Twitter Feed
Dark Reading - Bug Report

Bug Report

Enterprise Vulnerabilities
From DHS/US-CERT’s National Vulnerability Database
CVE-2020-16135
PUBLISHED: 2020-07-29
libssh 0.9.4 has a NULL pointer dereference in tftpserver.c if ssh_buffer_new returns NULL.
CVE-2017-18923
PUBLISHED: 2020-07-29
beroNet VoIP Gateways before 3.0.16 have a PHP script that allows downloading arbitrary files, including ones with credentials.
CVE-2020-14308
PUBLISHED: 2020-07-29
In grub2 versions before 2.06 the grub memory allocator doesn’t check for possible arithmetic overflows on the requested allocation size. This leads the function to return invalid memory allocations which can be further used to cause possible integrity, confidentiality and availability impacts durin…

CVE-2020-5761
PUBLISHED: 2020-07-29
Grandstream HT800 series firmware version 1.0.17.5 and below is vulnerable to CPU exhaustion due to an infinite loop in the TR-069 service. Unauthenticated remote attackers can trigger this case by sending a one character TCP message to the TR-069 service.
CVE-2020-5762
PUBLISHED: 2020-07-29
Grandstream HT800 series firmware version 1.0.17.5 and below is vulnerable to a denial of service attack against the TR-069 service. An unauthenticated remote attacker can stop the service due to a NULL pointer dereference in the TR-069 service. This condition is triggered due to mishandling of the …


https://www.malwaredevil.com/2020/07/29/11-security-tools-to-expect-at-the-black-hat-usa-2020-arsenal-virtual-event/?utm_source=rss&utm_medium=rss&utm_campaign=11-security-tools-to-expect-at-the-black-hat-usa-2020-arsenal-virtual-event

No comments:

Post a Comment

Barbary Pirates and Russian Cybercrime

In 1801, the United States had a small Navy. Thomas Jefferson deployed almost half that Navy—three frigates and a schooner—to the Barbary C...