← Back to feed
general Help Net Security

Pre-auth RCE in enterprise Java hits Bonita and OFBiz servers

Help Net Security Oracle

An attacker sends a single web request to a Bonita server and lands inside an internal API that assumed nobody could reach it. The request arrives unauthenti...

Read the full story Help Net Security →

Related Coverage

general EvilTokens made phishing-as-a-service look easy. Then it got taken down Security Affairs · Sep 23 general Chrome 154 Patches 108 Vulnerabilities SecurityWeek · Sep 23 general Microsoft Warns of EvilTokens AI Phishing Service Hijacking Thousands of Accounts GBHackers · Sep 23