Aggregator
CVE-2025-43236 | Apple macOS up to 13.7.6/14.7.6/15.5 type confusion
Китайские ученые создали одежду из кордицепса. Главное теперь не стать зомби прямо на презентации
What the identity attack surface looks like when trust becomes the target
In this Help Net Security video, Joel Moses, VP, Strategic Engineering at F5, explains how attackers use identity instead of breaking through it. He walks through MFA fatigue, session token theft, and consent given to malicious applications, using the 2022 Uber breach as an example. He also covers how cloud and on-premises trust relationships give attackers a path between environments. Moses suggests number matching, FIDO2 keys, periodic reviews of third party application access, and watching … More →
The post What the identity attack surface looks like when trust becomes the target appeared first on Help Net Security.
CVE-2026-43370 | Linux Kernel up to 6.19.8 cmpxchg use after free (WID-SEC-2026-1454)
CVE-2026-43369 | Linux Kernel up to 6.18.18/6.19.8 amdgpu_device_fini_hw null pointer dereference (WID-SEC-2026-1454)
CVE-2026-43367 | Linux Kernel up to 6.18.18/6.19.8 null pointer dereference (WID-SEC-2026-1454)
CVE-2026-43368 | Linux Kernel up to 6.6.129/6.12.77/6.18.18/6.19.8 gem_mmap_offset data authenticity (WID-SEC-2026-1454)
CVE-2026-43366 | Linux Kernel up to 6.19.8 buffer_list buffer overflow (Nessus ID 313455 / WID-SEC-2026-1454)
CVE-2026-43365 | Linux Kernel up to 6.19.8 xfs privilege escalation (Nessus ID 313444 / WID-SEC-2026-1454)
CVE-2026-43364 | Linux Kernel up to 6.18.19/6.19.8 ublk ublk_ctrl_set_size null pointer dereference (Nessus ID 313443 / WID-SEC-2026-1454)
CVE-2026-43363 | Linux Kernel up to 6.19.8 lapic_resume initialization (Nessus ID 326222 / WID-SEC-2026-1454)
CVE-2026-43362 | Linux Kernel up to 6.6.129/6.12.77/6.18.18/6.19.8 smb SMB2_write out-of-bounds write (Nessus ID 321065 / WID-SEC-2026-1454)
CVE-2026-43361 | Linux Kernel up to 6.19.8 inode_owner_or_capable privilege escalation (Nessus ID 321690 / WID-SEC-2026-1454)
CVE-2026-43360 | Linux Kernel up to 6.19.8 btrfs out-of-bounds (Nessus ID 313447 / WID-SEC-2026-1454)
CVE-2026-43359 | Linux Kernel up to 6.19.8 integer underflow (Nessus ID 321690 / WID-SEC-2026-1454)
Product showcase: LastPass Authenticator brings Face ID, Apple Watch, and cloud backup to 2FA
LastPass Authenticator is a free app that provides two-factor authentication (2FA) for accounts and any service that supports time-based one-time passwords (TOTP). It supports push notifications for one-tap approvals and generates six-digit verification codes for online accounts. The app is available for iPhone, iPad, Apple Watch, and Android devices. Getting started Adding a new account takes only a few steps. Users can scan a QR code, import one from an image saved in Photos, or … More →
The post Product showcase: LastPass Authenticator brings Face ID, Apple Watch, and cloud backup to 2FA appeared first on Help Net Security.