Remove Libraries Remove Metadata Remove Security
article thumbnail

Security Affairs newsletter Round 218 – News of the week

Security Affairs

The best news of the week with Security Affairs. Shanghai Jiao Tong University data leak – 8.4TB in email metadata exposed. Google expert disclosed details of an unpatched flaw in SymCrypt library. Microsoft Patch Tuesday security updates for June 2019 fix 88 flaws. Kindle Edition. Paper Copy. Once again thank you!

Security 222
article thumbnail

A Microsoft 365 feature can ransom files on SharePoint and OneDriveCould

Security Affairs

The infection sequence can be carried out using a combination of Microsoft APIs, command-line interface (CLI) scripts, and PowerShell scripts, the enterprise security firm added. The versioning settings are under list settings for each document library. . ” continues the report. ” continues the report. Pierluigi Paganini.

Libraries 290
Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

Multiple malicious packages in PyPI repository found stealing AWS secrets

Security Affairs

The malicious packages, which were reported to PyPI, are: loglib-modules — appears to target developers familiar with the legitimate ‘loglib’ library. pyg-modules — appears to target developers familiar with the legitimate ‘pyg’ library. ” reads the post published by Sonatype. com:8000/upload.

Libraries 246
article thumbnail

A flaw in the R programming language could allow code execution

Security Affairs

Since then, it has gained popularity among statisticians and data miners for its powerful features and extensive libraries for data manipulation, visualization, and statistical analysis. It was initially developed by Ross Ihaka and Robert Gentleman at the University of Auckland, New Zealand, in the early 1990s.

Metadata 346
article thumbnail

Apache OpenOffice is currently impacted by a remote code execution flaw

Security Affairs

Security researcher Eugene Lim ( @spaceraccoonsec ) recently revealed technical details about a remote code execution flaw, tracked as CVE-2021-33035, (CVE-2021-33035) that impacts OpenOffice (AOO). The header includes a prefix that describes the dBase database version, the last update timestamp, and other metadata. Pierluigi Paganini.

Metadata 346
article thumbnail

PyTorch compromised to demonstrate dependency confusion attack on Python environments

Security Affairs

“ PyTorch is a machine learning framework based on the Torch library, used for applications such as computer vision and natural language processing, originally developed by Meta AI and now part of the Linux Foundation umbrella. BleepingComputer first reported that the individuals behind the domain h4ck[.]cfd Pierluigi Paganini.

Metadata 246
article thumbnail

Malicious file analysis – Example 01

Security Affairs

Cyber Security Specialist Zoziel Pinto Freire shows an example of malicious file analysis presented during his lecture on BSides-Vitória 2022. From a security point of view files of the types DOC, DOCX, XLS, XLSX, and XLSM, have a common issue, they can contain macros which are embedded scripts that are executed inside the file.

Libraries 275