@mherckis.bsky.social
Reposted
#IngressNightmare: Wiz Research uncovers a critical vulnerability in Ingress-NGINX 🚨

Wiz Research found a novel attack vector in one of Kubernetes's most fundamental projects, Ingress-NGINX, which is rated CVSS 9.8.
March 25, 2025 at 11:52 AM
Reposted
Our dev team discovered a Nuclei signature verification bypass enabling code execution - while only practically exploitable in very specific usecases, the vulnerability itself is interesting and the write-up from Guy is really good:

🚨 Wiz uncovered CVE-2024-43405, a bypass in #Nuclei enabling code execution. Fixed with #ProjectDiscovery. Update to v3.3.2+, Run tools in isolated environments!

🔗 Learn more
www.wiz.io/blog/nuclei-...
January 3, 2025 at 3:41 PM
Reposted
Questions today about vaccines might just be a product of their success. Here’s what people should know about six once-common illnesses that vaccines have contained for decades.
Six Childhood Scourges We’ve Forgotten About, Thanks to Vaccines
Most Americans, including doctors, have no memory of the devastating diseases that routinely threatened children until the 1960s.
www.nytimes.com
December 13, 2024 at 5:36 PM