Apache OFBiz Update Fixes High-Severity Flaw Leading to Remote Code Execution

A new security flaw has been addressed in the Apache OFBiz open-source enterprise resource planning (ERP) system that, if successfully exploited, could lead to unauthenticated remote code execution on Linux and Windows.
The high-severity vulnerability, tracked as CVE-2024-45195 (CVSS score: 7.5), affects all versions of the software before 18.12.16.

“An attacker with no valid

The Hacker News – ​Read More

What is the Shared Fate Model?

New threats, an overburdened workforce, and regulatory pressures mean cloud service providers need a more resilient model than the shared responsibility framework. That’s where “shared fate” comes in.

darkreading – ​Read More

RansomHub Claims Planned Parenthood Hack, Steals 93GB of Sensitive Data

RansomHub claims to have breached Intermountain Planned Parenthood, stealing 93GB of data. The healthcare provider is investigating the…

Hackread – Latest Cybersecurity, Tech, Crypto & Hacking News – ​Read More

How AI can help fix this global healthcare challenge

Singapore’s health minister discusses aging populations and how AI can prepare nations for the inevitable.

Latest stories for ZDNET in Security – ​Read More

HackerOne Appoints Kara Sprague As CEO

Post Content

darkreading – ​Read More

China’s ‘Earth Lusca’ Propagates Multiplatform Backdoor

The malware, KTLVdoor, has already been found on more than 50 command-and-control servers and enables full control of any environment it compromises.

darkreading – ​Read More

Chinese ‘Tropic Trooper’ APT Targets Mideast Governments

In the past, the group has targeted different sectors in East and Southeast Asia, but recently has pivoted its focus to the Middle East, specifically to entities that publish human rights studies.

darkreading – ​Read More

Malvertising Campaign Builds a Phish for Lowe’s Employees

Retail employees are being duped into divulging their credentials by typosquatting malvertisements.

darkreading – ​Read More