#dll-hijacking

[ follow ]
Information security
fromThe Hacker News
1 week ago

Silver Fox Targets Indian Users With Tax-Themed Emails Delivering ValleyRAT Malware

Silver Fox uses income-tax-themed phishing in India to deliver modular ValleyRAT via DLL hijacking and NSIS installers, ensuring persistence and expanding target sectors.
fromTechzine Global
2 months ago

Docker fixes serious vulnerabilities in Compose and Desktop Installer

The bug in Docker Compose was found in October by security researcher Ron Masas of Imperva. Compose is a tool that converts YAML configurations into running container environments and is an important part of countless development and CI/CD processes. Masas discovered that the recent support for OCI-based Compose artifacts did not perform sufficient checks on file locations. When processing these artifacts, Compose relied entirely on the instructions in the so-called layer annotations, which specify where files should be placed.
Information security
[ Load more ]