Remove sites default files binary-data-1.png
article thumbnail

*bleed continues: 18 byte file, $14k bounty, for leaking private Yahoo! Mail images

Scary Beasts Security

Presented here is Yahoobleed #1 (YB1), a way to slurp other users' private Yahoo! This vulnerability is now a so-called 1-day, because I promptly reported it to upstream ImageMagick and provided a 1-line patch to resolve the issue, which landed here. In image #1, you can see the capital letter A inside a black circle.

article thumbnail

Meet the GoldenJackal APT group. Don’t expect any howls

SecureList

The fake Skype installer was a.NET executable file named skype32.exe It’s worth noting that the first description of the Follina vulnerability was published on May 29, 2022 and this document appears to have been modified on June 1, two days after publication, and was first detected on June 2.

Malware 117