L'actu de la sécu


Les dernières news:

  • [remote] HTMLDOC 1.9.13 - Stack Buffer Overflow
    Publié le Sept. 16, 2025

    Source: ExploitDB

    HTMLDOC 1.9.13 - Stack Buffer Overflow

    Lien
  • Giglio - 1,026,468 breached accounts
    Publié le Sept. 1, 2025

    Source: HaveIBeenPwnd

    In August 2025, over 1M unique email addresses appeared in a breach allegedly obtained from Italian fashion designer Giglio. The data also included names, phone numbers and physical addresses. Giglio did not respond to repeated attempts to disclose the incident.

    Lien
  • TheSqua.re - 107,041 breached accounts
    Publié le Aug. 27, 2025

    Source: HaveIBeenPwnd

    In June 2025, 107k unique customer email addresses were allegedly obtained from TheSqua.re, the "easiest way to find your next serviced apartment". The data also included names, phone numbers and cities which were subsequently posted to a popular hacking forum. TheSqua.re did not respond to repeated attempts to disclose the incident, however multiple impacted HIBP subscribers confirmed the legitimacy and accuracy of the data.

    Lien
  • [remote] GeoVision ASManager Windows Application 6.1.2.0 - Remote Code Execution (RCE)
    Publié le Aug. 26, 2025

    Source: ExploitDB

    GeoVision ASManager Windows Application 6.1.2.0 - Remote Code Execution (RCE)

    Lien
  • [local] GeoVision ASManager Windows Application 6.1.2.0 - Credentials Disclosure
    Publié le Aug. 26, 2025

    Source: ExploitDB

    GeoVision ASManager Windows Application 6.1.2.0 - Credentials Disclosure

    Lien
  • [webapps] StoryChief Wordpress Plugin 1.0.42 - Arbitrary File Upload
    Publié le Aug. 26, 2025

    Source: ExploitDB

    StoryChief Wordpress Plugin 1.0.42 - Arbitrary File Upload

    Lien
  • [remote] Ivanti Endpoint Manager Mobile 12.5.0.0 - Authentication Bypass
    Publié le Aug. 26, 2025

    Source: ExploitDB

    Ivanti Endpoint Manager Mobile 12.5.0.0 - Authentication Bypass

    Lien
  • [webapps] Lingdang CRM 8.6.4.7 - SQL Injection
    Publié le Aug. 26, 2025

    Source: ExploitDB

    Lingdang CRM 8.6.4.7 - SQL Injection

    Lien
  • Allianz Life - 1,115,061 breached accounts
    Publié le Aug. 18, 2025

    Source: HaveIBeenPwnd

    In July 2025,

    Lien