DevTestSecOps
149 subscribers
512 photos
34 videos
37 files
720 links
Forwards and notes on development, testing, security, and operations from @q587p.

About me: studied as System Architect, worked as a SysAdmin, working now as an Test Automation Engineer. Also, I'm interested in hacking (and everything related to it).

జ్
Download Telegram
Forwarded from Deleted Account
#security #CVE #proxy

A critical security vulnerability has been disclosed in HAProxy, a widely used open-source load balancer and proxy server, that could be abused by an adversary to possibly smuggle HTTP requests, resulting in unauthorized access to sensitive data and execution of arbitrary commands, effectively opening the door to an array of attacks.

https://thehackernews.com/2021/09/haproxy-found-vulnerable-to-critical.html
For the new era - the new type of information's source!

Receive #CVE Trends from Twitter in one dashboard - https://cvetrends.com/

"CVE Trends gathers crowdsourced intel about CVEs from Twitter's filtered stream API and combines it with data from NIST's NVD and GitHub APIs."
#security #LLM #way

Researchers at JFrog analyzed 55 vulnerability reports regarding #SQLite that were recently published. Based on the data from these reports, MITRE assigned #CVE identifiers to all of the issues. Three issues were classified as critical, and Red Hat assigned the most dangerous vulnerability (CVE-2026-51302) a severity score of 10 out of 10 in its databases, while SUSE rated it 9.8 out of 10. A detailed analysis of the reported vulnerabilities revealed that 54 of the 55 vulnerabilities, including the one marked as critical, are fictitious and caused by hallucinations from the AI model:

https://research.jfrog.com/post/sqlite-critical-cves-or-llm-slops/
🤣5👏3😨2