CVE-2018-2879 – Vulnerability in Oracle Access Manager can let attackers impersonate any user account

Haythem Elmir

Security researchers have discovered a security vulnerability in Oracle Access Manager that can be exploited by a remote attacker to bypass the authentication and take over the account of any user. Security researcher Wolfgang Ettlinger from SEC Consult Vulnerability Lab has discovered a security vulnerability in Oracle Access Manager that can be […]

La plus grande banque d’Australie reconnait la perte des données de 20 millions de clients

Haythem Elmir

La plus grande banque d’Australie, la Commonwealth Bank, a admis jeudi avoir perdu les données financières d’environ 20 millions de clients tout en assurant qu’il n’y avait pas matière à s’inquiéter. Le premier prêteur d’Australie et sa première entreprise par la capitalisation boursière a reconnu ne pas être en mesure […]

New Hacking Tool Lets Users Access a Bunch of DVRs and Their Video Feeds

Haythem Elmir

An Argentinian security researcher named Ezequiel Fernandez has published a powerful new tool yesterday that can easily extract plaintext credentials for various DVR brands and grant attackers access to those systems, and inherently the video feeds they’re supposed to record. The tool, named getDVR_Credentials, is a proof-of-concept for CVE-2018-9995, a vulnerability discovered […]