#threatintelligence bot tweeting latest Common Vulnerabilities and Exposures published or modified today in realtime from @NISTCyber.threatintelcenter.com WorldwideJoined September 2017
🚨 NEW: CVE-2022-47311 🚨 A proprietary protocol for iBoot devices is used for control and keepalive commands. The function compares the username and password; it also contains the configuration data for the user spe... (click for more) nvd.nist.gov/vuln/detail/CV…
🚨 NEW: CVE-2022-46658 🚨 The affected product is vulnerable to a stack-based buffer overflow which could lead to a denial of service or remote code execution. nvd.nist.gov/vuln/detail/CV…
🚨 NEW: CVE-2022-46738 🚨 The affected product exposes multiple sensitive data fields of the affected product. An attacker can use the SNMP command to get device mac address and login as admin. nvd.nist.gov/vuln/detail/CV…
🚨 NEW: CVE-2022-47320 🚨 The iBoot device’s basic discovery protocol assists in initial device configuration. The discovery protocol shows basic information about devices on the network and allows users to perform c... (click for more) nvd.nist.gov/vuln/detail/CV…
🚨 NEW: CVE-2023-25832 🚨 There is a cross-site-request forgery vulnerability in Esri Portal for ArcGIS Versions 11.0 and below that may allow an attacker to trick an authorized user into executing unwanted actions. Severity: HIGH nvd.nist.gov/vuln/detail/CV…
🚨 NEW: CVE-2022-4945 🚨 The Dataprobe cloud usernames and passwords are stored in plain text in a specific file. Any user able to read this specific file from the device could compromise other devices connected to ... (click for more) nvd.nist.gov/vuln/detail/CV…
🚨 NEW: CVE-2023-25834 🚨 Changes to user permissions in Portal for ArcGIS 10.9.1 and below are incompletely applied in specific use cases. This issue may allow users to access content that they are no longer privile... (click for more) Severity: MEDIUM nvd.nist.gov/vuln/detail/CV…
🚨 NEW: CVE-2023-2504 🚨
Files present on firmware images could allow an attacker to gain unauthorized access as a root user using hard-coded credentials.
nvd.nist.gov/vuln/detail/CV…
🚨 NEW: CVE-2023-25833 🚨 There is an HTML injection vulnerability in Esri Portal for ArcGIS versions 11.0 and below that may allow a remote, authenticated attacker to create a crafted link which when clicked could r... (click for more) Severity: MEDIUM nvd.nist.gov/vuln/detail/CV…
🚨 NEW: CVE-2023-2505 🚨
The affected products have a CSRF vulnerability that could allow an attacker to execute code and upload malicious files.
nvd.nist.gov/vuln/detail/CV…
🚨 NEW: CVE-2023-31816 🚨 IT Sourcecode Content Management System Project In PHP and MySQL With Source Code 1.0.0 is vulnerable to Cross Site Scripting (XSS) via /ecodesource/search_list.php. nvd.nist.gov/vuln/detail/CV…
🚨 NEW: CVE-2023-25183 🚨
In Snap One OvrC Pro versions prior to 7.2, when logged into the superuser account, a new functionality appears that could allow users to execute arbitrary c... (click for more) nvd.nist.gov/vuln/detail/CV…
🚨 NEW: CVE-2023-31193 🚨
Snap One OvrC Pro versions prior to 7.3 use HTTP connections when downloading a program from their servers. Because they do not use HTTPS, OvrC Pro devices are susceptible to ex... (click for more) nvd.nist.gov/vuln/detail/CV…
🚨 NEW: CVE-2023-28386 🚨
Snap One OvrC Pro devices versions 7.2 and prior do not validate firmware updates correctly. The device only calculates the MD5 hash of the firmware and does not check using... (click for more) nvd.nist.gov/vuln/detail/CV…
🚨 NEW: CVE-2023-28412 🚨
When supplied with a random MAC address, Snap One OvrC cloud servers will return information about the device. The MAC address of devices can be enumerated in an attack and the OvrC... (click for more) nvd.nist.gov/vuln/detail/CV…
🚨 NEW: CVE-2023-28649 🚨
The Hub in the Snap One OvrC cloud platform is a device used to centralize and manage nested devices connected to it. A vulnerability exists in which an attacker could impersonate a hub and... (click for more) nvd.nist.gov/vuln/detail/CV…
462 Followers 1K FollowingUpdates about all things threat intelligence & updates about stuffs going on in the cybersec, ransomware, OSINT, SOCMINT, and hacking communities #threatintel
0 Followers 24 FollowingBinary Manipulation & Reverse Engineering. 🔬 Building MADEC: an immuno-inspired engine to neutralize AI-driven threats. I architect the attack to engineer the
254K Followers 205 FollowingBreaking cybersecurity and technology news, guides, and tutorials that help you get the most from your computer. DMs are open, so send us those tips!
199K Followers 6K FollowingThe leading provider of crowdsourced cybersecurity solutions purpose-built to secure the digitally connected world...Unleash Ingenuity™
198K Followers 14K FollowingWe help professionals acquire the skills, knowledge and certificates by teaching defense through offense to advance their careers in cybersecurity.
112K Followers 2 FollowingMonitor your external network, search the Internet of Things and perform empirical market research. You can also find us on https://t.co/nPLFbFy8R5
58K Followers 3 FollowingOfficial account maintained by the CVE™ Program to notify the community of new CVE IDs. Posts contain abbreviated details. Full CVE Records on https://t.co/ALn4YvUtom
1.2M Followers 159 FollowingWe're a community of millions of people who are building new skills and getting new jobs together. A 501(c)(3) public charity. Tweets by @abbeyrenn.
360K Followers 653 FollowingFull Stack Web Developer & Educator.
- Check out all of my courses at https://t.co/F56FYSu1Sq
- Sign up for early access at our new platform https://t.co/Af4fqM0Ct7
317K Followers 3K FollowingThe Twitter account that launched https://t.co/TJyCu2S5ZF. Built on @forem 🌱
On Bluesky @/https://t.co/TJyCu2S5ZF
No DMs — please email us for support!
596K Followers 176 FollowingSharing links, news, and humor about JS, TypeScript, and related front-end stuff 💛
Not affiliated with Oracle or Larry Ellison.
1K Followers 628 FollowingA 501(c)(3) shared community space promoting and encouraging technical, scientific and artistic skills through individual projects, collaboration and education.
111K Followers 104 FollowingThe world's leading Digital Forensics and Incident Response provider. This feed updates you on latest DFIR news, events, and training.
71K Followers 79 FollowingThis is Cyber National Mission Force’s alert mechanism to contribute to our shared global cybersecurity (Following, retweets and links do not equal endorsement)
114K Followers 340 FollowingINTERPOL Global Cybercrime Programme aims to reduce the global impact of cybercrime and protect communities for a safer world.
22K Followers 93 FollowingMISP - Threat Sharing. An open source software and standards to share, create and validate threatintel and intelligence.
Mastodon @[email protected]
836 Followers 258 FollowingThis account was retired on January 1st 2025. Please find us on Bluesky or Mastodon if you'd like to continue to receive updates.
216K Followers 525 FollowingWe improve the security of apps with community-led open source projects, 260 local chapters, and tens of thousands of members worldwide. Famous for OWASP Top 10
1K Followers 0 FollowingI exist for one purpose, to extract IOCs from Remote Access Trojans. And share them with the security community.
Managed by @kevthehermit
331K Followers 2K FollowingIndependent investigative journalist. Author of 'Spam Nation,' a NYT bestseller. Former Washington Post reporter. Mastodon: https://t.co/fTKNavlMwp
886 Followers 2K Following#Cyber hunter with my navigation on and trying to find my next thrill (views expressed are my own) #threatintel #OSINT #malware #infosec #phishing
19K Followers 9 FollowingAccount is no longer active: 2022-Oct-17.
Follow @ExploitDB
Google Hacking Database - queries to uncover interesting, usually sensitive, public information.
5K Followers 9 FollowingAccount is no longer active: 2022-Oct-17.
Follow @ExploitDB
The Paper Database – ultimate archive of Security #Papers and #eZines from @ExploitDB.