Dark Reading is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them.Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.

Comments
Name That Toon: The Advanced Persistent Threat
Newest First  |  Oldest First  |  Threaded View
<<   <   Page 2 / 7   >   >>
Joe Stanganelli
0%
100%
Joe Stanganelli,
User Rank: Ninja
3/30/2019 | 10:06:42 PM
js0316
"Hey, if you want to be the one to deny his request for a new phone, be my guest."
Joe Stanganelli
0%
100%
Joe Stanganelli,
User Rank: Ninja
3/30/2019 | 10:03:46 PM
js0315
"Have you traced the intrusion yet?"
Joe Stanganelli
0%
100%
Joe Stanganelli,
User Rank: Ninja
3/30/2019 | 10:02:25 PM
js0314
"They used to fire CISOs. Now it's much worse."
Joe Stanganelli
0%
100%
Joe Stanganelli,
User Rank: Ninja
3/30/2019 | 10:00:02 PM
js0313
"Are you calling in sick for tomorrow's 'Take Your Child to Work Day'?"
Joe Stanganelli
100%
0%
Joe Stanganelli,
User Rank: Ninja
3/30/2019 | 9:56:40 PM
js0312
"I liked it better when robots were taking our jobs."
Joe Stanganelli
0%
100%
Joe Stanganelli,
User Rank: Ninja
3/30/2019 | 9:54:47 PM
js0311
"Turns out Sam was using spaces instead of tabs. Next thing you know..."
Kristendean80
100%
0%
Kristendean80,
User Rank: Strategist
3/30/2019 | 11:17:26 AM
Re: Name That Toon
Your Low On Ink light is on again
eschulz809
0%
100%
eschulz809,
User Rank: Apprentice
3/29/2019 | 12:19:44 PM
Name That Toon
"Ya, it's new.  It's called the 20,000 Leagues Under the Sea Virus.
Joe Stanganelli
0%
100%
Joe Stanganelli,
User Rank: Ninja
3/29/2019 | 12:51:56 AM
js0310
"I dunno. Check the READMESEYMOUR file."
Joe Stanganelli
0%
100%
Joe Stanganelli,
User Rank: Ninja
3/29/2019 | 12:48:05 AM
js0309
"Open your ears, Frank! I said that red team has to think like enemy -- not the anemone."
<<   <   Page 2 / 7   >   >>


When It Comes To Security Tools, More Isn't More
Lamont Orange, Chief Information Security Officer at Netskope,  1/11/2021
Register for Dark Reading Newsletters
White Papers
Video
Cartoon
Current Issue
2020: The Year in Security
Download this Tech Digest for a look at the biggest security stories that - so far - have shaped a very strange and stressful year.
Flash Poll
Assessing Cybersecurity Risk in Today's Enterprises
Assessing Cybersecurity Risk in Today's Enterprises
COVID-19 has created a new IT paradigm in the enterprise -- and a new level of cybersecurity risk. This report offers a look at how enterprises are assessing and managing cyber-risk under the new normal.
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2021-23836
PUBLISHED: 2021-01-15
An issue was discovered in flatCore before 2.0.0 build 139. A stored XSS vulnerability was identified in the prefs_smtp_psw HTTP request body parameter for the acp interface. An admin user can inject malicious client-side script into the affected parameter without any form of input sanitization. The...
CVE-2021-23837
PUBLISHED: 2021-01-15
An issue was discovered in flatCore before 2.0.0 build 139. A time-based blind SQL injection was identified in the selected_folder HTTP request body parameter for the acp interface. The affected parameter (which retrieves the file contents of the specified folder) was found to be accepting malicious...
CVE-2021-23838
PUBLISHED: 2021-01-15
An issue was discovered in flatCore before 2.0.0 build 139. A reflected XSS vulnerability was identified in the media_filter HTTP request body parameter for the acp interface. The affected parameter accepts malicious client-side script without proper input sanitization. For example, a malicious user...
CVE-2020-35581
PUBLISHED: 2021-01-15
A stored cross-site scripting (XSS) issue in Envira Gallery Lite before 1.8.3.3 allows remote attackers to inject arbitrary JavaScript/HTML code via a POST /wp-admin/admin-ajax.php request with the meta[title] parameter.
CVE-2020-35582
PUBLISHED: 2021-01-15
A stored cross-site scripting (XSS) issue in Envira Gallery Lite before 1.8.3.3 allows remote attackers to inject arbitrary JavaScript/HTML code via a POST /wp-admin/post.php request with the post_title parameter.