#threatintelligence bot tweeting latest Common Vulnerabilities and Exposures published or modified today in realtime from @NISTCyber.threatintelcenter.com WorldwideJoined September 2017
🚨 NEW: CVE-2022-47311 🚨 A proprietary protocol for iBoot devices is used for control and keepalive commands. The function compares the username and password; it also contains the configuration data for the user spe... (click for more) nvd.nist.gov/vuln/detail/CV…
🚨 NEW: CVE-2022-46658 🚨 The affected product is vulnerable to a stack-based buffer overflow which could lead to a denial of service or remote code execution. nvd.nist.gov/vuln/detail/CV…
🚨 NEW: CVE-2022-46738 🚨 The affected product exposes multiple sensitive data fields of the affected product. An attacker can use the SNMP command to get device mac address and login as admin. nvd.nist.gov/vuln/detail/CV…
🚨 NEW: CVE-2022-47320 🚨 The iBoot device’s basic discovery protocol assists in initial device configuration. The discovery protocol shows basic information about devices on the network and allows users to perform c... (click for more) nvd.nist.gov/vuln/detail/CV…
🚨 NEW: CVE-2023-25832 🚨 There is a cross-site-request forgery vulnerability in Esri Portal for ArcGIS Versions 11.0 and below that may allow an attacker to trick an authorized user into executing unwanted actions. Severity: HIGH nvd.nist.gov/vuln/detail/CV…
🚨 NEW: CVE-2022-4945 🚨 The Dataprobe cloud usernames and passwords are stored in plain text in a specific file. Any user able to read this specific file from the device could compromise other devices connected to ... (click for more) nvd.nist.gov/vuln/detail/CV…
🚨 NEW: CVE-2023-25834 🚨 Changes to user permissions in Portal for ArcGIS 10.9.1 and below are incompletely applied in specific use cases. This issue may allow users to access content that they are no longer privile... (click for more) Severity: MEDIUM nvd.nist.gov/vuln/detail/CV…
🚨 NEW: CVE-2023-2504 🚨
Files present on firmware images could allow an attacker to gain unauthorized access as a root user using hard-coded credentials.
nvd.nist.gov/vuln/detail/CV…
🚨 NEW: CVE-2023-25833 🚨 There is an HTML injection vulnerability in Esri Portal for ArcGIS versions 11.0 and below that may allow a remote, authenticated attacker to create a crafted link which when clicked could r... (click for more) Severity: MEDIUM nvd.nist.gov/vuln/detail/CV…
🚨 NEW: CVE-2023-2505 🚨
The affected products have a CSRF vulnerability that could allow an attacker to execute code and upload malicious files.
nvd.nist.gov/vuln/detail/CV…
🚨 NEW: CVE-2023-31816 🚨 IT Sourcecode Content Management System Project In PHP and MySQL With Source Code 1.0.0 is vulnerable to Cross Site Scripting (XSS) via /ecodesource/search_list.php. nvd.nist.gov/vuln/detail/CV…
🚨 NEW: CVE-2023-25183 🚨
In Snap One OvrC Pro versions prior to 7.2, when logged into the superuser account, a new functionality appears that could allow users to execute arbitrary c... (click for more) nvd.nist.gov/vuln/detail/CV…
🚨 NEW: CVE-2023-31193 🚨
Snap One OvrC Pro versions prior to 7.3 use HTTP connections when downloading a program from their servers. Because they do not use HTTPS, OvrC Pro devices are susceptible to ex... (click for more) nvd.nist.gov/vuln/detail/CV…
🚨 NEW: CVE-2023-28386 🚨
Snap One OvrC Pro devices versions 7.2 and prior do not validate firmware updates correctly. The device only calculates the MD5 hash of the firmware and does not check using... (click for more) nvd.nist.gov/vuln/detail/CV…
🚨 NEW: CVE-2023-28412 🚨
When supplied with a random MAC address, Snap One OvrC cloud servers will return information about the device. The MAC address of devices can be enumerated in an attack and the OvrC... (click for more) nvd.nist.gov/vuln/detail/CV…
🚨 NEW: CVE-2023-28649 🚨
The Hub in the Snap One OvrC cloud platform is a device used to centralize and manage nested devices connected to it. A vulnerability exists in which an attacker could impersonate a hub and... (click for more) nvd.nist.gov/vuln/detail/CV…
239 Followers 1K Followinghttps://t.co/xEqOcTQXpL is a EU platform dedicated to delivering high-quality, informative content on cybersecurity, awareness, promoting best practices.
5 Followers 101 FollowingFreelance writer & editor passionate about wellness & self-improvement. Creating informative content to help readers improve their lives. I enjoy family time.
51 Followers 989 FollowingAll about the hunt! Looking to improve infosec through the sharing and application of knowledge. You only know as much as you want to. Opinions vary, but mine.
418 Followers 6K FollowingHave you heard the story 'bout the man on the moon? He was so lonely, you could see on the news Everyone loved him but he never knew Reminds me of you ⚖️
240K Followers 200 FollowingBreaking cybersecurity and technology news, guides, and tutorials that help you get the most from your computer. DMs are open, so send us those tips!
187K Followers 6K FollowingThe leading provider of crowdsourced cybersecurity solutions purpose-built to secure the digitally connected world...Unleash Ingenuity™
195K Followers 14K FollowingWe help professionals acquire the skills, knowledge and certificates by teaching defense through offense to advance their careers in cybersecurity.
108K Followers 2 FollowingMonitor your external network, search the Internet of Things and perform empirical market research. You can also find us on https://t.co/nPLFbFy8R5
56K Followers 3 FollowingOfficial account maintained by the CVE™ Program to notify the community of new CVE IDs. Posts contain abbreviated details. Full CVE Records on https://t.co/ALn4YvUtom
946K Followers 158 FollowingWe're a community of millions of people who are building new skills and getting new jobs together. A 501(c)(3) public charity. Tweets by @abbeyrenn.
353K Followers 634 FollowingFull Stack Web Developer & Educator.
Check out all of my courses at https://t.co/F56FYStu2S
1000+ free tutorials at https://t.co/TLuSqAVNpG
316K Followers 3K FollowingThe Twitter account that launched https://t.co/TJyCu2S5ZF. Built on @forem 🌱
On Bluesky @/https://t.co/TJyCu2S5ZF
No DMs — please email us for support!
601K Followers 176 FollowingSharing links, news, and humor about JS, TypeScript, and related front-end stuff 💛
Not affiliated with Oracle or Larry Ellison.
1K Followers 631 FollowingA 501(c)(3) shared community space promoting and encouraging technical, scientific and artistic skills through individual projects, collaboration and education.
109K Followers 98 FollowingThe world's leading Digital Forensics and Incident Response provider. This feed updates you on latest DFIR news, events, and training.
70K Followers 80 FollowingThis is Cyber National Mission Force’s alert mechanism to contribute to our shared global cybersecurity (Following, retweets and links do not equal endorsement)
115K Followers 346 FollowingINTERPOL Global Cybercrime Programme aims to reduce the global impact of cybercrime and protect communities for a safer world.
23K Followers 95 FollowingMISP - Threat Sharing. An open source software and standards to share, create and validate threatintel and intelligence.
Mastodon @[email protected]
857 Followers 262 FollowingThis account was retired on January 1st 2025. Please find us on Bluesky or Mastodon if you'd like to continue to receive updates.
213K Followers 532 FollowingWe improve the security of apps with community-led open source projects, 260 local chapters, and tens of thousands of members worldwide. Famous for OWASP Top 10
1K Followers 0 FollowingI exist for one purpose, to extract IOCs from Remote Access Trojans. And share them with the security community.
Managed by @kevthehermit
333K Followers 2K FollowingIndependent investigative journalist. Author of 'Spam Nation,' a NYT bestseller. Former Washington Post reporter. Mastodon: https://t.co/fTKNavlMwp
905 Followers 2K Following#Cyber hunter with my navigation on and trying to find my next thrill (views expressed are my own) #threatintel #OSINT #malware #infosec #phishing
19K Followers 9 FollowingAccount is no longer active: 2022-Oct-17.
Follow @ExploitDB
Google Hacking Database - queries to uncover interesting, usually sensitive, public information.
5K Followers 9 FollowingAccount is no longer active: 2022-Oct-17.
Follow @ExploitDB
The Paper Database – ultimate archive of Security #Papers and #eZines from @ExploitDB.
No recent Favorites. New Favorites will appear here.