Security News

Crowdfense launches $15M 0-day 2019 global Acquisition Program
2019-03-11 01:00

Crowdfense announces the launch of a $15M global Acquisition Program dedicated to the purchase and further refinement of zero-day vulnerabilities for the most popular software platforms, including...

At least Sony offered a t-shirt, says macOS flaw finder: Bug bounties now for Macs if you want this 0-day, Apple
2019-02-07 01:41

Cupertino's tight-wads called out by fella who found password, private key leak Vid The bloke who found a password-spaffing bug in macOS says he won't divulge details on the flaw to Apple until...

0-Days Found in iPhone X, Samsung Galaxy S9, Xiaomi Mi6 Phones
2018-11-15 11:48

At Pwn2Own 2018 mobile hacking competition held in Tokyo on November 13-14, white hat hackers once again demonstrated that even the fully patched smartphones running the latest version of software...

63 New Flaws (Including 0-Days) Windows Users Need to Patch Now
2018-11-14 10:03

It's Patch Tuesday once again…time for another round of security updates for the Windows operating system and other Microsoft products. This month Windows users and system administrators need to...

Week in review: VirtualBox 0day, GPU side channel attacks, vulnerable self-encrypting SSDs
2018-11-11 18:41

Here’s an overview of some of last week’s most interesting news and articles: Five key considerations when developing a Security Operations Center Organizations should start with the following...

VirtualBox Guest-to-Host escape 0day and exploit released online
2018-11-07 13:07

Independent vulnerability researcher Sergey Zelenyuk has made public a zero-day vulnerability he discovered in VirtualBox, the popular open source virtualization software developed by Oracle....

Magecart Cybergang Targets 0days in Third-Party Magento Extensions
2018-10-24 20:17

Over two dozen third-party ecommerce plugins contain zero-day vulnerabilities being exploited in a recent Magecart campaign.

Another Windows 0-day flaw has been published on Twitter
2018-10-24 15:50

And on GitHub there's a proof-of-concept that'll render your system unbootable.

Popular website plugin harboured a serious 0-day for years
2018-10-22 12:22

The flaw in the popular file uploader allows an attacker to upload files and run their own command line shell on any affected server.

0-Day in jQuery Plugin Impacts Thousands of Applications
2018-10-19 18:09

Thousands of projects are possibly impacted by a jQuery File Upload plugin vulnerability that has been actively exploited in the wild, a security researcher has discovered. read more