home.social

#denialofservice — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #denialofservice, aggregated by home.social.

fetched live
  1. Citrix NetScaler Flaw Exposes Pre-Auth Path to Shellcode Execution

    A critical flaw in Citrix NetScaler appliances, tracked as CVE-2026-88772, has been patched after being exploited in the wild, allowing for remote code execution or denial-of-service attacks. This severe vulnerability, with a CVSS score of 9.5, was caused by a memory overflow in Datagram Transport Layer Security…

    osintsights.com/citrix-netscal

    #Cve202688772 #CitrixNetscaler #RemoteCodeExecution #Denialofservice #MemoryOverflow

  2. CISA issued ICSA-26-272-04 for CVE-2026-96274, an uncaught-exception flaw in Baicells Nova 430H eNodeB (pBS3101SH). It can be triggered from radio range to disrupt cellular service, exposing small-cell deployments to remote DoS. Operators should review affected BaiBLQ versions and apply CISA guidance. #Baicells #TelecomSecurity #DenialOfService

    cyberworldops.eu/en/radio-rang

  3. CISA issued ICSA-26-272-04 for CVE-2026-96274, an uncaught-exception flaw in Baicells Nova 430H eNodeB (pBS3101SH). It can be triggered from radio range to disrupt cellular service, exposing small-cell deployments to remote DoS. Operators should review affected BaiBLQ versions and apply CISA guidance. #Baicells #TelecomSecurity #DenialOfService

    cyberworldops.eu/en/radio-rang

  4. CISA issued ICSA-26-272-04 for CVE-2026-96274, an uncaught-exception flaw in Baicells Nova 430H eNodeB (pBS3101SH). It can be triggered from radio range to disrupt cellular service, exposing small-cell deployments to remote DoS. Operators should review affected BaiBLQ versions and apply CISA guidance. #Baicells #TelecomSecurity #DenialOfService

    cyberworldops.eu/en/radio-rang

  5. 📡🎓 Oh no, the University of Wisconsin campus was drowned in a tsunami of packets because some genius decided their routers should never sleep! Who knew asking for the time could turn into the world's lamest denial-of-service attack? #Netgear is now sending an #SOS 🚨 to their own devices—spoiler alert: they don't have a watch. 🕰️🤦‍♂️
    pages.cs.wisc.edu/~plonka/netg #UniversityOfWisconsin #NetworkFail #DenialOfService #PacketTsunami #HackerNews #ngated

  6. 📡🎓 Oh no, the University of Wisconsin campus was drowned in a tsunami of packets because some genius decided their routers should never sleep! Who knew asking for the time could turn into the world's lamest denial-of-service attack? #Netgear is now sending an #SOS 🚨 to their own devices—spoiler alert: they don't have a watch. 🕰️🤦‍♂️
    pages.cs.wisc.edu/~plonka/netg #UniversityOfWisconsin #NetworkFail #DenialOfService #PacketTsunami #HackerNews #ngated

  7. 📡🎓 Oh no, the University of Wisconsin campus was drowned in a tsunami of packets because some genius decided their routers should never sleep! Who knew asking for the time could turn into the world's lamest denial-of-service attack? #Netgear is now sending an #SOS 🚨 to their own devices—spoiler alert: they don't have a watch. 🕰️🤦‍♂️
    pages.cs.wisc.edu/~plonka/netg #UniversityOfWisconsin #NetworkFail #DenialOfService #PacketTsunami #HackerNews #ngated

  8. 📡🎓 Oh no, the University of Wisconsin campus was drowned in a tsunami of packets because some genius decided their routers should never sleep! Who knew asking for the time could turn into the world's lamest denial-of-service attack? #Netgear is now sending an #SOS 🚨 to their own devices—spoiler alert: they don't have a watch. 🕰️🤦‍♂️
    pages.cs.wisc.edu/~plonka/netg #UniversityOfWisconsin #NetworkFail #DenialOfService #PacketTsunami #HackerNews #ngated

  9. Cisco confirmed active exploitation of CVE-2026-20349, a high-severity flaw (CVSS 8.6) in ASA and FTD firewalls. Insufficient error handling in HTTP processing allows an unauthenticated remote attacker to trigger a device reboot via the Remote Access SSL VPN service, resulting in denial of service.

    #CVE202620349 #CiscoASA #FirewallSecurity #DenialOfService

    cyberworldops.eu/en/cisco-asa-

  10. Cisco confirmed active exploitation of CVE-2026-20349, a high-severity flaw (CVSS 8.6) in ASA and FTD firewalls. Insufficient error handling in HTTP processing allows an unauthenticated remote attacker to trigger a device reboot via the Remote Access SSL VPN service, resulting in denial of service.

    #CVE202620349 #CiscoASA #FirewallSecurity #DenialOfService

    cyberworldops.eu/en/cisco-asa-

  11. [ Blog ] VMware vulnerability CVE-2025-41241

    A denial of service vulnerability, identified as CVE-2025-41241, has been discovered within VMware vCenter.

    Broadcom has evaluated this issue as having a moderate severity rating, with a CVSSv3 base score of 4.4. While this isn't a high-severity critical flaw, it's still an issue that could lead rviv.ly/iHTpuX

  12. [ Blog ] VMware vulnerability CVE-2025-41241

    A denial of service vulnerability, identified as CVE-2025-41241, has been discovered within VMware vCenter.

    Broadcom has evaluated this issue as having a moderate severity rating, with a CVSSv3 base score of 4.4. While this isn't a high-severity critical flaw, it's still an issue that could lead rviv.ly/iHTpuX

  13. [ Blog ] VMware vulnerability CVE-2025-41241

    A denial of service vulnerability, identified as CVE-2025-41241, has been discovered within VMware vCenter.

    Broadcom has evaluated this issue as having a moderate severity rating, with a CVSSv3 base score of 4.4. While this isn't a high-severity critical flaw, it's still an issue that could lead rviv.ly/iHTpuX

  14. [ Blog ] VMware vulnerability CVE-2025-41241

    A denial of service vulnerability, identified as CVE-2025-41241, has been discovered within VMware vCenter.

    Broadcom has evaluated this issue as having a moderate severity rating, with a CVSSv3 base score of 4.4. While this isn't a high-severity critical flaw, it's still an issue that could lead rviv.ly/iHTpuX

  15. [ Blog ] VMware vulnerability CVE-2025-41241

    A denial of service vulnerability, identified as CVE-2025-41241, has been discovered within VMware vCenter.

    Broadcom has evaluated this issue as having a moderate severity rating, with a CVSSv3 base score of 4.4. While this isn't a high-severity critical flaw, it's still an issue that could lead rviv.ly/iHTpuX

  16. [ Blog ] VMware vulnerability CVE-2025-41241

    A denial of service vulnerability, identified as CVE-2025-41241, has been discovered within VMware vCenter.

    Broadcom has evaluated this issue as having a moderate severity rating, with a CVSSv3 base score of 4.4. While this isn't a high-severity critical flaw, it's still an issue that could lead rviv.ly/iHTpuX

  17. DOS by CloudFlare

    People pay for this. I find it an odd choice of disposing of money, but good for them.

    #DenialofService

  18. DOS by CloudFlare

    People pay for this. I find it an odd choice of disposing of money, but good for them.

    #DenialofService

  19. [ Blog ] VMware vulnerability CVE-2025-41241

    A denial of service vulnerability, identified as CVE-2025-41241, has been discovered within VMware vCenter.

    Broadcom has evaluated this issue as having a moderate severity rating, with a CVSSv3 base score of 4.4. While this isn't a high-severity critical flaw, it's still an issue that could lead rviv.ly/GqTV8p

  20. [ Blog ] VMware vulnerability CVE-2025-41241

    A denial of service vulnerability, identified as CVE-2025-41241, has been discovered within VMware vCenter.

    Broadcom has evaluated this issue as having a moderate severity rating, with a CVSSv3 base score of 4.4. While this isn't a high-severity critical flaw, it's still an issue that could lead rviv.ly/GqTV8p

  21. Am I a target?

    I keep getting traffic from the same server. It's a Hetzner Online server (supposedly) which has geodata linking it to the UAE. I've blocked the traffic, but I'm getting hella suspicious. Anyway I've been live monitoring all my traffic and I'm blocking anything that I think is even the tiniest bit sus.I'm not really thrilled to be blocking a hetzner IP, since there's so many mastodon servers hosted on hetzner IPs, but like if y'all can't fucking behave you're not welcome at the party. Love […]

    snowebell.cc/am-i-a-target/

  22. Am I a target?

    I keep getting traffic from the same server. It's a Hetzner Online server (supposedly) which has geodata linking it to the UAE. I've blocked the traffic, but I'm getting hella suspicious. Anyway I've been live monitoring all my traffic and I'm blocking anything that I think is even the tiniest bit sus.I'm not really thrilled to be blocking a hetzner IP, since there's so many mastodon servers hosted on hetzner IPs, but like if y'all can't fucking behave you're not welcome at the party. Love […]

    snowebell.cc/am-i-a-target/

  23. [ Blog ] VMware vulnerability CVE-2025-41241

    A denial of service vulnerability, identified as CVE-2025-41241, has been discovered within VMware vCenter.

    Broadcom has evaluated this issue as having a moderate severity rating, with a CVSSv3 base score of 4.4. While this isn't a high-severity critical flaw, it's still an issue that could lead rviv.ly/GqTV8p

  24. [ Blog ] VMware vulnerability CVE-2025-41241

    A denial of service vulnerability, identified as CVE-2025-41241, has been discovered within VMware vCenter.

    Broadcom has evaluated this issue as having a moderate severity rating, with a CVSSv3 base score of 4.4. While this isn't a high-severity critical flaw, it's still an issue that could lead rviv.ly/GqTV8p

  25. [ Blog ] VMware vulnerability CVE-2025-41241

    A denial of service vulnerability, identified as CVE-2025-41241, has been discovered within VMware vCenter.

    Broadcom has evaluated this issue as having a moderate severity rating, with a CVSSv3 base score of 4.4. While this isn't a high-severity critical flaw, it's still an issue that could lead rviv.ly/GqTV8p

  26. [ Blog ] VMware vulnerability CVE-2025-41241

    A denial of service vulnerability, identified as CVE-2025-41241, has been discovered within VMware vCenter.

    Broadcom has evaluated this issue as having a moderate severity rating, with a CVSSv3 base score of 4.4. While this isn't a high-severity critical flaw, it's still an issue that could lead rviv.ly/GqTV8p

  27. [ Blog ] VMware vulnerability CVE-2025-41241

    A denial of service vulnerability, identified as CVE-2025-41241, has been discovered within VMware vCenter.

    Broadcom has evaluated this issue as having a moderate severity rating, with a CVSSv3 base score of 4.4. While this isn't a high-severity critical flaw, it's still an issue that could lead rviv.ly/GqTV8p

  28. [ Blog ] VMware vulnerability CVE-2025-41241

    A denial of service vulnerability, identified as CVE-2025-41241, has been discovered within VMware vCenter.

    Broadcom has evaluated this issue as having a moderate severity rating, with a CVSSv3 base score of 4.4. While this isn't a high-severity critical flaw, it's still an issue that could lead rviv.ly/GqTV8p

  29. [ Blog ] VMware vulnerability CVE-2025-41241

    A denial of service vulnerability, identified as CVE-2025-41241, has been discovered within VMware vCenter.

    Broadcom has evaluated this issue as having a moderate severity rating, with a CVSSv3 base score of 4.4. While this isn't a high-severity critical flaw, it's still an issue that could lead rviv.ly/GqTV8p

  30. CISA Flags SolarWinds Serv-U Flaw as Actively Exploited

    A critical flaw in SolarWinds Serv-U is being actively exploited, allowing attackers to crash the service with a specially crafted POST request - no authentication required. This denial-of-service vulnerability, tracked as CVE-2026-28318, can be triggered by a simple HTTP POST request with a malicious Content-Encoding header.

    osintsights.com/cisa-flags-sol

    #Solarwinds #Servu #Cve202628318 #DenialOfService #Contentencoding

  31. Hackers Actively Exploit SolarWinds Serv-U Flaw to Crash Servers

    SolarWinds has issued an emergency hotfix to address a critical flaw in its Serv-U file transfer product, which hackers are actively exploiting to crash servers with specially crafted POST requests. A denial-of-service vulnerability, tracked as CVE-2026-28318, can be triggered without authentication, posing a significant threat to…

    osintsights.com/hackers-active

    #Cve202628318 #Solarwinds #Servu #DenialOfService #ManagedFileTransfer

  32. Codex Agent Uncovers Lethal HTTP/2 DoS Exploit

    A home computer on a typical 100Mbps connection can cripple a vulnerable server in mere seconds with the HTTP/2 Bomb, a potent DoS exploit that combines two decade-old attack techniques. This devastating attack exhausts server memory by sending tiny, compressed HTTP/2 header fragments and holding connections open, taking the service offline.

    osintsights.com/codex-agent-un

    #Http2DosExploit #DenialOfService #Hpack #Slowloris #Cve20166581

  33. HTTP/2 Bomb Attack Disrupts Web Servers in Seconds

    A home computer on a typical 100Mbps connection can cripple a vulnerable server in mere seconds using a new technique called the HTTP/2 Bomb, which cleverly combines two known weaknesses in HTTP/2 server configurations. This potent attack can be unleashed quickly, leaving servers inaccessible.

    osintsights.com/http2-bomb-att

    #Http2Bomb #DenialOfService #Hpack #Slowloris #WebServers

  34. HTTP/2 Bomb Vulnerability Targets Major Web Servers with Remote DoS Exploit

    A newly discovered HTTP/2 Bomb vulnerability can be exploited to launch a remote Denial of Service (DoS) attack on major web servers, taking advantage of a weakness in the default HTTP/2 configuration. This flaw cleverly combines a compression bomb and a Slowloris-style hold to target HPACK, HTTP/2's header-compression…

    osintsights.com/http2-bomb-vul

    #Http2Bomb #DenialOfService #RemoteExploit #Vulnerability #WebServers

  35. GNU SASL <2.2.3 is vulnerable (CVE-2026-48829): HIGH severity NULL pointer dereference in DIGEST-MD5 can crash clients/servers (DoS risk). No patch yet — consider disabling DIGEST-MD5 for now. radar.offseq.com/threat/cve-20 #OffSeq #GNU #Vuln #DenialOfService

  36. GNU SASL <2.2.3 is vulnerable (CVE-2026-48829): HIGH severity NULL pointer dereference in DIGEST-MD5 can crash clients/servers (DoS risk). No patch yet — consider disabling DIGEST-MD5 for now. radar.offseq.com/threat/cve-20 #OffSeq #GNU #Vuln #DenialOfService

  37. NGINX Vulnerability Exposes Servers to DoS, Potential Code Execution

    A critical vulnerability, CVE-2026-42945, has been lurking in NGINX's code for 18 years, exposing servers to potential DoS attacks and code execution - and affecting a staggering third of the top-ranked websites. This heap buffer overflow flaw, rated 9.2 in severity, is a wake-up call for NGINX users to take immediate action.

    osintsights.com/nginx-vulnerab

    #Cve202642945 #Nginx #WebServer #HeapBufferOverflow #DenialOfService

  38. Cisco Discloses High-Severity DoS Flaw Requiring Manual Reboot

    Beware: a high-severity flaw in Cisco's system could allow attackers to overwhelm your network, causing a manual reboot to regain control. This vulnerability can be exploited remotely with ease, putting your connection resources at risk of exhaustion and leaving you vulnerable to a denial-of-service condition.

    osintsights.com/cisco-disclose

    #DenialOfService #Cisco #Cve202620188 #NetworkVulnerability #EmergingThreats

  39. Apache HTTP Server Flaw Enables DoS and Potential RCE Attacks

    A critical flaw in the Apache HTTP Server, known as CVE-2026-23918, can be exploited to launch devastating denial-of-service (DoS) and potential remote code execution (RCE) attacks, putting your online security at risk. This high-severity bug has been patched in Apache HTTP Server version 2.4.67, so updating is crucial to prevent…

    osintsights.com/apache-http-se

    #ApacheHttpServer #Cve202623918 #DenialOfService #RemoteCodeExecution #Http2