Malware Devil

Friday, June 25, 2021

Amazon Acquires Secure Messaging Platform Wickr

Subscribe to Newsletters

White Papers

Video

Cartoon

Current Issue

The State of Cybersecurity Incident ResponseIn this report learn how enterprises are building their incident response teams and processes, how they research potential compromises, how they respond to new breaches, and what tools and processes they use to remediate problems and improve their cyber defenses for the future.

Flash Poll


How Enterprises are Developing Secure Applications
Recent breaches of third-party apps are driving many organizations to think harder about the security of their off-the-shelf software as they continue to move left in secure software development practices.

Twitter Feed

Bug Report

Enterprise Vulnerabilities
From DHS/US-CERT’s National Vulnerability Database
CVE-2021-25654
PUBLISHED: 2021-06-25

An arbitrary code execution vulnerability was discovered in Avaya Aura Device Services that may potentially allow a local user to execute specially crafted scripts. Affects 7.0 through 8.1.4.0 versions of Avaya Aura Device Services.

CVE-2021-35502
PUBLISHED: 2021-06-25

app/View/Elements/genericElements/IndexTable/Fields/generic_field.ctp in MISP 2.4.144 does not sanitize certain data related to generic-template:index.

CVE-2021-1073
PUBLISHED: 2021-06-25

NVIDIA GeForce Experience, all versions prior to 3.23, contains a vulnerability where, if a user clicks on a maliciously formatted link that opens the GeForce Experience login page in a new browser tab instead of the GeForce Experience application and enters their login information, the malicious si…

CVE-2021-33530
PUBLISHED: 2021-06-25

In Weidmueller Industrial WLAN devices in multiple versions an exploitable command injection vulnerability exists in encrypted diagnostic script functionality of the devices. A specially crafted diagnostic script file can cause arbitrary busybox commands to be executed, resulting in remote control o…

CVE-2021-33531
PUBLISHED: 2021-06-25

In Weidmueller Industrial WLAN devices in multiple versions an exploitable use of hard-coded credentials vulnerability exists in multiple iw_* utilities. The device operating system contains an undocumented encryption password, allowing for the creation of custom diagnostic scripts. An attacker can …

The post Amazon Acquires Secure Messaging Platform Wickr appeared first on Malware Devil.



https://malwaredevil.com/2021/06/25/amazon-acquires-secure-messaging-platform-wickr-2/?utm_source=rss&utm_medium=rss&utm_campaign=amazon-acquires-secure-messaging-platform-wickr-2

No comments:

Post a Comment

Barbary Pirates and Russian Cybercrime

In 1801, the United States had a small Navy. Thomas Jefferson deployed almost half that Navy—three frigates and a schooner—to the Barbary C...