PRニュースワイヤーのアジア太平洋ネットワーク概要 AsiaNet 94049 (0103) 【香港…
サイバーセキュリティと安全保障 「サイバースペースにおける日本の防御は強力ではない」
世界はサイバー攻撃を国家間の安全保障上の問題として捉えている。ロンドンを拠点とする国際戦略研究所(I…
超軽量肉抜きマウスがASUSからも登場!「TUF GAMING M4 Air」発表!
PCでゲームをする時に必須なデバイスの1つといえばマウスですね。スイッチやセンサーの性能はもちろんで…
世界初のゲーミングピーナッツバター!?JOBBIE × ZOTAC「PONG – Berry Matrix Peanut Energy Crunch」登場!
現代はゲームに使用するデバイスだけでなく、世の中でゲーミング化されていないものはないのではないかと思…
[io.jenkins:configuration-as-code] Observable Discrepancy and Observable Timing Discrepancy in Jenkins Configuration as Code Plugin
Jenkins Configuration as Code Plugin 1.55 and earlier used a non-constant time comparison function when validating an authentication token allowing attackers to use statistical methods to obtain a valid authentication token.
References
https://nvd.nis…
[onionshare-cli] Improper Access Control in Onionshare
Between September 26, 2021 and October 8, 2021, Radically Open Security conducted a penetration test of OnionShare 2.4, funded by the Open Technology Fund’s Red Team lab. This is an issue from that penetration test.
Vulnerability ID: OTF-004
Vulnerabi…
[onionshare-cli] Improper Access Control in Onionshare
Between September 26, 2021 and October 8, 2021, Radically Open Security conducted a penetration test of OnionShare 2.4, funded by the Open Technology Fund’s Red Team lab. This is an issue from that penetration test.
Vulnerability ID: OTF-003
Vulnerabi…
[onionshare-cli] Path traversal in Onionshare
Between September 26, 2021 and October 8, 2021, Radically Open Security conducted a penetration test of OnionShare 2.4, funded by the Open Technology Fund’s Red Team lab. This is an issue from that penetration test.
Vulnerability ID: OTF-013
Vulnerabi…
[onionshare-cli] Incorrect Permission Assignment for Critical Resource in OnionShare
Between September 26, 2021 and October 8, 2021, Radically Open Security conducted a penetration test of OnionShare 2.4, funded by the Open Technology Fund’s Red Team lab. This is an issue from that penetration test.
Vulnerability ID: OTF-006
Vulnerabi…
[onionshare-cli] Improper Access Control in Onionshare
Between September 26, 2021 and October 8, 2021, Radically Open Security conducted a penetration test of OnionShare 2.4, funded by the Open Technology Fund’s Red Team lab. This is an issue from that penetration test.
Vulnerability ID: OTF-009
Vulnerabi…